TW202103031A - System for using network identification to identify via telecommunication server and method thereof - Google Patents

System for using network identification to identify via telecommunication server and method thereof Download PDF

Info

Publication number
TW202103031A
TW202103031A TW108123201A TW108123201A TW202103031A TW 202103031 A TW202103031 A TW 202103031A TW 108123201 A TW108123201 A TW 108123201A TW 108123201 A TW108123201 A TW 108123201A TW 202103031 A TW202103031 A TW 202103031A
Authority
TW
Taiwan
Prior art keywords
data
user
mobile device
server
network
Prior art date
Application number
TW108123201A
Other languages
Chinese (zh)
Other versions
TWI780341B (en
Inventor
林志能
連子清
Original Assignee
臺灣網路認證股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 臺灣網路認證股份有限公司 filed Critical 臺灣網路認證股份有限公司
Priority to TW108123201A priority Critical patent/TWI780341B/en
Publication of TW202103031A publication Critical patent/TW202103031A/en
Application granted granted Critical
Publication of TWI780341B publication Critical patent/TWI780341B/en

Links

Images

Landscapes

  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Traffic Control Systems (AREA)
  • Telephonic Communication Services (AREA)

Abstract

A system for using a network identification to identify via a telecommunication server and a method thereof are provided. By obtaining a network identification of a mobile and user data, using mobile communication network to transmitting the network identification and the user data from the mobile to a service server, transmitting the network identification and the user data from the service server to a telecommunication server, generating a result based on the network identification and the user data by the telecommunication server, and transmitting the result from the telecommunication server to the service server, the system and the method can achieve the effect of using only mobile to complete identify .

Description

以網路識別資料透過電信伺服器識別身份之系統及方法System and method for identifying identity through telecommunication server using network identification data

一種身份識別系統及其方法,特別係指一種以網路識別資料透過電信伺服器識別身份之系統及方法。An identity recognition system and method, in particular, refers to a system and method that uses network identification data to identify an identity through a telecommunication server.

近年來,由於通訊及網路相關產業的高度發展,人們對各種服務電子化與行動化的需求日益升高,這樣的需求也反映在金融業與政府公部門上,舉例來說,券商、銀行、保險公司、投顧公司、政府單位除了提供網路服務之外,也開始提供行動應用程式(APP),使用者可以使用手機或平板等各種的行動裝置執行行動應用程式,行動應用程式通過網際網路連線到對應的服務主機(或稱為應用主機)後,使用者可以操作行動裝置進行證券交易、轉帳、投保、申請文件等行動服務。如此,使用者可以不需要離開所在位置,即可進行所需的行動服務。In recent years, due to the rapid development of communications and network-related industries, people’s demand for the electronic and mobile services of various services has been increasing. Such demand is also reflected in the financial industry and the government and public departments. For example, securities companies, banks In addition to providing Internet services, insurance companies, investment advisory companies, and government agencies have also begun to provide mobile applications (APP). Users can use mobile devices such as mobile phones or tablets to execute mobile applications. After the network is connected to the corresponding service host (or called the application host), the user can operate the mobile device to perform mobile services such as securities transactions, transfers, insurance, and application documents. In this way, the user can perform the required mobile services without leaving the location.

使用者在使用網路服務或行動服務時,通常需要先進行身份辨識。目前,透過網路進行身份辨識的方式,大多需要使用硬體載具來辨識使用者的身份,例如,使用特定的USB隨身碟或智慧卡(晶片卡)儲存使用者的憑證資料,藉以在使用者進行行動服務時,透過連接儲存憑證資料的USB隨身碟或智慧卡來進行身份辨識。When users use network services or mobile services, they usually need to identify themselves first. At present, most of the methods of identification through the Internet require the use of hardware vehicles to identify the user’s identity, for example, using a specific USB flash drive or smart card (chip card) to store the user’s credential data for use When performing mobile services, the identification can be performed by connecting a USB flash drive or smart card that stores the certificate data.

然而,使用硬體載具來辨識使用者身份的方式,大多只能在電腦上進行,主要原因是硬體載具需要透過USB等連接插槽與電腦連接,或透過如讀卡機等外接裝置讀取,但目前的行動裝置大多沒有設置可以與硬體載具連接的連接插槽,或使用者需另備外接裝置讀取硬體載具,因此,大部分的行動裝置並無法連接硬體載具,如此,導致使用者無法使用行動裝置進行身份辨識,以至於無法使用行動服務,造成使用者的不便。However, most methods of using hardware carriers to identify users can only be done on a computer. The main reason is that the hardware carrier needs to be connected to the computer through a USB connection slot, or through an external device such as a card reader. However, most of the current mobile devices do not have a connection slot that can be connected to the hardware carrier, or users need to prepare an external device to read the hardware carrier. Therefore, most mobile devices cannot connect to the hardware Vehicles, in this way, cause users to be unable to use mobile devices for identification, so that they cannot use mobile services, causing inconvenience to users.

綜上所述,可知先前技術中長期以來一直存在行動裝置不易連接硬體載具以辨識使用者身份的問題,因此有必要提出改進的技術手段,來解決此一問題。In summary, it can be seen that in the prior art, there has always been a problem in the prior art that it is difficult for mobile devices to connect to a hardware carrier to identify the user's identity. Therefore, it is necessary to propose improved technical means to solve this problem.

有鑒於先前技術存在行動裝置不易連接硬體載具以辨識使用者身份的問題,本發明遂揭露一種以網路識別資料透過電信伺服器識別身份之系統及方法,其中:In view of the problem in the prior art that it is difficult for mobile devices to connect to a hardware carrier to identify a user's identity, the present invention discloses a system and method for identifying a user's identity through a telecommunication server using network identification data, in which:

本發明所揭露之以網路識別資料透過電信伺服器識別身份之系統,至少包含:服務伺服器、行動裝置、電信伺服器,其中,行動裝置用以執行身份識別元件,身份識別元件包含:獲取使用者資料及網路識別資料的資料取得模組,以及透過行動通訊網路與該服務伺服器連接並傳送網路識別資料及使用者資料至服務伺服器的通訊模組;電信伺服器,用以接收服務伺服器所傳送之網路識別資料及使用者資料,及用以依據網路識別資料及使用者資料產生身份辨識結果,並傳送身份辨識結果至服務伺服器。The system for identifying an identity through a telecommunication server using network identification data disclosed in the present invention at least includes: a service server, a mobile device, and a telecommunication server. The mobile device is used to execute an identity recognition component, and the identity recognition component includes: obtaining A data acquisition module for user data and network identification data, and a communication module that connects to the service server through a mobile communication network and transmits network identification data and user data to the service server; a telecommunication server for Receive the network identification data and user data sent by the service server, and use it to generate identification results based on the network identification data and user data, and send the identification results to the service server.

本發明所揭露之以網路識別資料透過電信伺服器識別身份之方法,其步驟至少包括:行動裝置透過行動通訊網路連線至服務伺服器;行動裝置取得網路識別資料及使用者資料;行動裝置傳送網路識別資料及使用者資料至服務伺服器;服務伺服器傳送網路識別資料與使用者資料至電信伺服器;電信伺服器依據網路識別資料及使用者資料產生身份辨識結果,並傳送身份辨識結果至服務伺服器。The method for identifying identity through a telecommunication server using network identification data disclosed in the present invention includes at least the steps of: a mobile device connects to a service server through a mobile communication network; the mobile device obtains network identification data and user data; The device sends network identification data and user data to the service server; the service server sends network identification data and user data to the telecommunications server; the telecommunications server generates identification results based on the network identification data and user data, and Send the identification result to the service server.

本發明所揭露之系統與方法如上,與先前技術之間的差異在於本發明透過行動裝置所執行之身分識別元件取得網路識別資料及使用者資料後,透過行動通訊網路傳送網路識別資料及使用者資料至服務伺服器,並由服務伺服器傳送網路識別資料以及使用者資料至電信伺服器,使得電信伺服器依據網路識別資料及使用者資料產生身份辨識結果並傳送身份辨識結果給服務伺服器,藉以解決先前技術所存在的問題,並可以達成單獨使用行動裝置完成身份辨識的技術功效。The system and method disclosed in the present invention are as above. The difference with the prior art is that the present invention transmits network identification data and user data through the mobile communication network after obtaining network identification data and user data through the identity identification component executed by the mobile device. The user data is sent to the service server, and the service server sends the network identification data and the user data to the telecommunication server, so that the telecommunication server generates the identification result based on the network identification data and the user data and sends the identification result to The service server solves the problems of the prior art and can achieve the technical effect of using mobile devices alone to complete identity recognition.

以下將配合圖式及實施例來詳細說明本發明之特徵與實施方式,內容足以使任何熟習相關技藝者能夠輕易地充分理解本發明解決技術問題所應用的技術手段並據以實施,藉此實現本發明可達成的功效。In the following, the features and implementation of the present invention will be described in detail with the drawings and embodiments. The content is sufficient to enable any person familiar with the relevant art to easily and fully understand the technical means used by the present invention to solve the technical problems and implement them accordingly. The achievable effect of the present invention.

本發明可以在行動裝置與服務伺服器透過行動通訊網路連接後,由服務伺服器連線到電信伺服器進行行動裝置之使用者的身份識別,並由電信伺服器將身份辨識結果傳回服務伺服器。其中,行動通訊網路例如4G、5G網路等,但本發明並不以此為限。After the mobile device is connected to the service server through the mobile communication network, the present invention can connect the service server to the telecommunications server to identify the user of the mobile device, and the telecommunications server sends the identity recognition result back to the service server Device. Among them, mobile communication networks such as 4G, 5G networks, etc., but the present invention is not limited to this.

以下先以「第1A圖」與「第1B圖」本發明所提之以網路識別資料透過電信伺服器識別身份之系統架構圖來說明本發明的系統運作。如「第1A圖」所示,本發明之系統含有應用主機111、身份識別主機112、身份驗證伺服器113、行動裝置120、以及電信伺服器130。其中,應用主機111、身份識別主機112、身份驗證伺服器113、行動裝置120、電信伺服器130都是計算設備。Hereinafter, the system structure diagrams of the system of identifying the identity through the telecommunication server through the network identification data mentioned in the "Figure 1A" and "Figure 1B" of the present invention are used to illustrate the operation of the system of the present invention. As shown in "FIG. 1A", the system of the present invention includes an application host 111, an identity recognition host 112, an identity verification server 113, a mobile device 120, and a telecommunication server 130. Among them, the application host 111, the identity recognition host 112, the identity verification server 113, the mobile device 120, and the telecommunications server 130 are all computing devices.

本發明所提之計算設備包含但不限於一個或多個處理器、一個或多個記憶體模組、以及連接不同元件(包括記憶體模組和處理器)的匯流排等元件。透過所包含之多個元件,計算設備可以載入並執行作業系統,使作業系統在計算設備上運行,也可以執行軟體或程式。另外,計算設備也包含一個外殼,上述之各個元件設置於外殼內。The computing device mentioned in the present invention includes, but is not limited to, one or more processors, one or more memory modules, and components such as buses connecting different components (including memory modules and processors). Through the contained multiple components, the computing device can load and execute the operating system, make the operating system run on the computing device, and can also execute software or programs. In addition, the computing device also includes a housing, and the above-mentioned components are arranged in the housing.

本發明所提之計算設備的匯流排可以包含一種或多個類型,例如包含資料匯流排(data bus)、位址匯流排(address bus)、控制匯流排(control bus)、擴充功能匯流排(expansion bus)、及/或局域匯流排(local bus)等類型的匯流排。計算設備的匯流排包括但不限於並列的工業標準架構(ISA)匯流排、周邊元件互連(PCI)匯流排、視頻電子標準協會(VESA)局域匯流排、以及串列的通用序列匯流排(USB)、快速周邊元件互連(PCI-E)匯流排等。The bus of the computing device mentioned in the present invention may include one or more types, for example, including data bus, address bus, control bus, extended function bus ( expansion bus), and/or local bus (local bus). The bus of computing equipment includes, but is not limited to, parallel industry standard architecture (ISA) bus, peripheral component interconnect (PCI) bus, Video Electronics Standards Association (VESA) local bus, and serial universal serial bus (USB), PCI-E bus, etc.

本發明所提之計算設備的處理器與匯流排耦接。處理器包含暫存器(Register)組或暫存器空間,暫存器組或暫存器空間可以完全的被設置在處理晶片上,或全部或部分被設置在處理晶片外並經由專用電氣連接及/或經由匯流排耦接至處理器。處理器可為處理單元、微處理器或任何合適的處理元件。若計算設備為多處理器設備,也就是計算設備包含多個處理器,則計算設備所包含的處理器都相同或類似,且透過匯流排耦接與通訊。處理器可以解釋一連串的多個指令以進行特定的運算或操作,例如,數學運算、邏輯運算、資料比對、複製/移動資料等,藉以運行作業系統或執行各種程式、模組、及/或元件。The processor of the computing device provided by the present invention is coupled to the bus. The processor contains a register group or register space. The register group or register space can be completely set on the processing chip, or all or part of it can be set outside the processing chip and connected via a dedicated electrical connection. And/or coupled to the processor via the bus. The processor may be a processing unit, a microprocessor, or any suitable processing element. If the computing device is a multi-processor device, that is, the computing device includes multiple processors, the processors included in the computing device are all the same or similar, and they are coupled and communicated through a bus. The processor can interpret a series of multiple instructions to perform specific operations or operations, such as mathematical operations, logical operations, data comparison, copy/move data, etc., to run the operating system or execute various programs, modules, and/or element.

計算設備的處理器可以與晶片組耦接或透過匯流排與晶片組電性連接。晶片組是由一個或多個積體電路(IC)組成,包含記憶體控制器以及周邊輸出入(I/O)控制器,也就是說,記憶體控制器以及周邊輸出入控制器可以包含在一個積體電路內,也可以使用兩個或更多的積體電路實現。晶片組通常提供了輸出入和記憶體管理功能、以及提供多個通用及/或專用暫存器、計時器等,其中,上述之通用及/或專用暫存器與計時器可以讓耦接或電性連接至晶片組的一個或多個處理器存取或使用。The processor of the computing device can be coupled to the chipset or electrically connected to the chipset through a bus. The chipset is composed of one or more integrated circuits (ICs), including a memory controller and peripheral input/output (I/O) controllers, that is to say, the memory controller and peripheral input/output controllers can be included in In an integrated circuit, it can also be realized by using two or more integrated circuits. Chipsets usually provide I/O and memory management functions, as well as multiple general-purpose and/or special-purpose registers, timers, etc., among which the aforementioned general-purpose and/or special-purpose registers and timers can be coupled or One or more processors electrically connected to the chipset are accessed or used.

計算設備的處理器也可以透過記憶體控制器存取安裝於計算設備上的記憶體模組和大容量儲存區中的資料。上述之記憶體模組包含任何類型的揮發性記憶體(volatile memory)及/或非揮發性(non-volatile memory, NVRAM)記憶體,例如靜態隨機存取記憶體(SRAM)、動態隨機存取記憶體(DRAM)、快閃記憶體(Flash)、唯讀記憶體(ROM)等。上述之大容量儲存區可以包含任何類型的儲存裝置或儲存媒體,例如,硬碟機、光碟片、隨身碟(快閃記憶體)、記憶卡(memory card)、固態硬碟(Solid State Disk, SSD)、或任何其他儲存裝置等。也就是說,記憶體控制器可以存取靜態隨機存取記憶體、動態隨機存取記憶體、快閃記憶體、硬碟機、固態硬碟中的資料。The processor of the computing device can also access the data in the memory module and the mass storage area installed on the computing device through the memory controller. The above-mentioned memory modules include any type of volatile memory (volatile memory) and/or non-volatile memory (NVRAM), such as static random access memory (SRAM), dynamic random access Memory (DRAM), flash memory (Flash), read-only memory (ROM), etc. The above-mentioned large-capacity storage area can include any type of storage device or storage medium, such as hard disk drives, optical discs, flash drives (flash memory), memory cards, and solid state disks (Solid State Disk, SSD), or any other storage device, etc. In other words, the memory controller can access data in static random access memory, dynamic random access memory, flash memory, hard disk drives, and solid state drives.

計算設備的處理器也可以透過周邊輸出入控制器經由周邊輸出入匯流排與周邊輸出裝置、周邊輸入裝置、通訊介面、以及GPS接收器等周邊裝置或介面連接並通訊。周邊輸入裝置可以是任何類型的輸入裝置,例如鍵盤、滑鼠、軌跡球、觸控板、搖桿等,周邊輸出裝置可以是任何類型的輸出裝置,例如顯示器、印表機等,周邊輸入裝置與周邊輸出裝置也可以是同一裝置,例如觸控螢幕等。通訊介面可以包含無線通訊介面及/或有線通訊介面,無線通訊介面可以包含支援Wi-Fi、Zigbee等無線區域網路、藍牙、紅外線、近場通訊(NFC)、3G/4G/5G等行動通訊網路或其他無線資料傳輸協定的介面,有線通訊介面可為乙太網路裝置、非同步傳輸模式(ATM)裝置、DSL數據機、纜線(Cable)數據機等。處理器可以週期性地輪詢(polling)各種周邊裝置與介面,使得計算設備能夠透過各種周邊裝置與介面進行資料的輸入與輸出,也能夠與具有上面描述之元件的另一個計算設備進行通訊。The processor of the computing device can also connect and communicate with peripheral output devices, peripheral input devices, communication interfaces, and GPS receivers and other peripheral devices or interfaces through the peripheral I/O bus through the peripheral I/O controller. The peripheral input device can be any type of input device, such as a keyboard, mouse, trackball, touchpad, joystick, etc. The peripheral output device can be any type of output device, such as a display, a printer, etc., a peripheral input device It can also be the same device as the peripheral output device, such as a touch screen. The communication interface can include a wireless communication interface and/or a wired communication interface. The wireless communication interface can include a mobile communication network that supports Wi-Fi, Zigbee and other wireless local area networks, Bluetooth, infrared, near field communication (NFC), 3G/4G/5G, etc. The wired communication interface can be an Ethernet device, Asynchronous Transfer Mode (ATM) device, DSL modem, cable modem, etc. The processor can periodically poll various peripheral devices and interfaces, so that the computing device can input and output data through various peripheral devices and interfaces, and can also communicate with another computing device having the above-described components.

行動裝置120可以透過有線或無線網路與應用主機111連接。行動裝置120可以接收應用主機111所傳送的資料或訊號,並可以傳送資料或訊號給應用主機111。The mobile device 120 can be connected to the application host 111 via a wired or wireless network. The mobile device 120 can receive data or signals sent by the application host 111 and can send the data or signals to the application host 111.

行動裝置120負責使用應用主機111所提供的應用服務,並負責在應用服務需要進行身份識別時,透過電信伺服器130完成身份識別。其中,本發明所提之應用服務通常為需要確認行動裝置120之使用者身份的服務,例如:網路下單、網路銀行、線上投保、報稅繳費等,但本發明並不以此為限。The mobile device 120 is responsible for using the application service provided by the application host 111, and is responsible for completing the identity recognition through the telecommunication server 130 when the application service requires identity recognition. Among them, the application service mentioned in the present invention is usually a service that needs to confirm the user identity of the mobile device 120, such as online ordering, online banking, online insurance, tax filing, etc., but the present invention is not limited to this. .

行動裝置120更可以如「第2圖」所示,包含資料取得模組220、通訊模組280,以及可附加的偵測模組230、資料輸入模組240、驗證模組250、網路判斷模組260。在部分的實施例中,行動裝置120可以執行身份識別元件200以產生本發明所提之各模組。其中,身份識別元件200可以是獨立運作的應用程式,並可以被網頁瀏覽程式所呼叫;身份識別元件200也可以是包含在網頁瀏覽程式中的一個模組或元件。The mobile device 120 may further include a data acquisition module 220, a communication module 280, and an additional detection module 230, a data input module 240, a verification module 250, and a network judgment as shown in "Figure 2". Module 260. In some embodiments, the mobile device 120 can execute the identity recognition component 200 to generate the modules mentioned in the present invention. Wherein, the identity recognition component 200 can be an independently operated application program and can be called by a web browser program; the identity recognition component 200 can also be a module or component included in a web browser program.

資料取得模組220負責取得網路識別資料。一般而言,網路識別資料為行動裝置120當前所使用的網路位址,資料取得模組220可以偵測行動裝置120之行動通訊介面當前所使用的網路位址以取得網路識別資料。但本發明所提之網路識別資料並不以上述為限,凡可以使電信伺服器130分辨行動裝置120的資料都可以作為本發明所提之網路識別資料。The data acquisition module 220 is responsible for acquiring network identification data. Generally speaking, the network identification data is the network address currently used by the mobile device 120, and the data acquisition module 220 can detect the network address currently used by the mobile communication interface of the mobile device 120 to obtain the network identification data. . However, the network identification data mentioned in the present invention is not limited to the above. Any data that can enable the telecommunication server 130 to distinguish the mobile device 120 can be used as the network identification data mentioned in the present invention.

資料取得模組220也負責取得使用者資料。資料取得模組220所獲取的使用者資料包含與安裝於行動裝置120中之用戶識別模組對應的門號資訊以及使用者的身份識別資料,在部分的實施例中,使用者資料還可以包含使用者的生日,但本發明所提之使用者資料並不以上述為限,例如,使用者資料也可以包含性別、地址等。其中,本發明所提之身份識別資料通常為唯一值,也就是不同的使用者有不同的資料,包含但不限於使用者的身份證號、護照號碼等;門號資訊包含門號以及擁有門號之電信機構/單位的名稱等訊息。The data acquisition module 220 is also responsible for acquiring user data. The user data acquired by the data acquisition module 220 includes the door number information corresponding to the user identification module installed in the mobile device 120 and the user's identification data. In some embodiments, the user data may also include The birthday of the user, but the user data mentioned in the present invention is not limited to the above. For example, the user data can also include gender, address, and so on. Among them, the identification data mentioned in the present invention is usually a unique value, that is, different users have different data, including but not limited to the user's ID number, passport number, etc.; the door number information includes the door number and the possession door. Information such as the name of the telecommunication organization/unit of the number

一般而言,資料取得模組220可以由行動裝置120的記憶單元中讀出使用者已輸入的使用者資料,但使用者資料中的部分項目,例如門號,資料取得模組220可以透過偵測模組230取得。Generally speaking, the data acquisition module 220 can read the user data entered by the user from the memory unit of the mobile device 120. However, for some items in the user data, such as door numbers, the data acquisition module 220 can detect Obtained by the test module 230.

偵測模組230可以偵測安裝於行動裝置120中的用戶識別模組(Subscriber Identity Module, SIM),也可以取得用戶識別模組中所儲存的資料,例如門號等。偵測模組230所偵測的用戶識別模組包含卡片式的用戶識別模組(在本發明中將以「SIM卡」表示)以及內嵌式的用戶識別模組(Embedded-SIM,在本發明中將以「eSIM」表示)。The detection module 230 can detect a Subscriber Identity Module (SIM) installed in the mobile device 120, and can also obtain data stored in the subscriber identity module, such as a door number. The user identification module detected by the detection module 230 includes a card-type user identification module (in the present invention will be referred to as "SIM card") and an embedded-type user identification module (Embedded-SIM, in this invention). In the invention, it will be denoted as "eSIM").

在部分的實施例中,若偵測模組230偵測到行動裝置120上有兩個或更多用戶識別模組,例如行動裝置120安裝兩張SIM卡、或安裝一張SIM卡且設置一個eSIM,則在資料取得模組220取得使用者資料時,資料取得模組220可以先提示使用者確認使用者資料中的門號資訊與當前設定行動裝置120連接行動通訊網路所使用之用戶識別模組相對應,並在使用者確認後再取得使用者資料,否則等待使用者修改使用者資料中的門號資訊。例如,當行動裝置120上安裝一張SIM卡且包含一個eSIM,當行動裝置120使用SIM卡連接行動通訊網路時,資料取得模組220可以透過行動裝置120的周邊輸出裝置提示使用者確認使用者資料中的門號資訊是否與SIM卡對應的門號一致。In some embodiments, if the detection module 230 detects that there are two or more user identification modules on the mobile device 120, for example, the mobile device 120 has two SIM cards installed, or one SIM card is installed and one is installed. eSIM, when the data acquisition module 220 acquires user data, the data acquisition module 220 can first prompt the user to confirm that the door number information in the user data is the same as the user identification model used by the currently set mobile device 120 to connect to the mobile communication network. Corresponding to the group, and obtain the user data after the user confirms, otherwise wait for the user to modify the door number information in the user data. For example, when a SIM card is installed on the mobile device 120 and contains an eSIM, when the mobile device 120 uses the SIM card to connect to the mobile communication network, the data acquisition module 220 can prompt the user to confirm the user through the peripheral output device of the mobile device 120 Whether the door number information in the data is consistent with the door number corresponding to the SIM card.

資料輸入模組240可以透過行動裝置120的周邊輸入裝置提供使用者輸入使用者資料。更詳細的說,資料輸入模組240可以提供輸入使用者資料的使用者介面,並可以將使用者所輸入的使用者資料儲存到行動裝置120的記憶單元中。The data input module 240 can provide the user to input user data through peripheral input devices of the mobile device 120. In more detail, the data input module 240 can provide a user interface for inputting user data, and can store the user data input by the user in the memory unit of the mobile device 120.

在部分的實施例中,若偵測模組230偵測到行動裝置120上有兩個或兩個以上的用戶識別模組,則當資料輸入模組240在提供使用者輸入使用者資料時,可以提示使用者在使用者資料中輸入與當前設定行動裝置120連接行動通訊網路所使用之用戶識別模組相對應的門號資訊。例如,當行動裝置120上安裝一張SIM卡且包含一個eSIM,當行動裝置120使用SIM卡連接行動通訊網路時,資料輸入模組240可以透過行動裝置120的周邊輸出裝置提示使用者在使用者資料中輸入與SIM卡對應的門號資訊。In some embodiments, if the detection module 230 detects that there are two or more user identification modules on the mobile device 120, when the data input module 240 provides the user to input user data, The user can be prompted to enter the door number information corresponding to the user identification module used by the currently configured mobile device 120 to connect to the mobile communication network in the user data. For example, when a SIM card is installed on the mobile device 120 and includes an eSIM, when the mobile device 120 uses the SIM card to connect to the mobile communication network, the data input module 240 can prompt the user to inform the user through the peripheral output device of the mobile device 120 Enter the door number information corresponding to the SIM card in the data.

驗證模組250可以透過裝置解鎖資料驗證使用者身份。其中,本發明所提之裝置解鎖資料可以是指紋、聲紋、人臉等生物資料,也可以是使用者設定的密碼或手勢,但本發明並不以上述為限。The verification module 250 can verify the user's identity through the device unlocking data. Among them, the device unlocking data mentioned in the present invention can be biometric data such as fingerprints, voiceprints, and faces, and can also be passwords or gestures set by the user, but the present invention is not limited to the above.

更詳細的說,驗證模組250可以依據執行於行動裝置120中之作業系統的類型與版本選擇透過裝置解鎖資料驗證使用者身份的方式,例如:驗證模組250可以選擇要求使用者透過行動裝置120的輸入單元輸入裝置解鎖資料,並呼叫執行於行動裝置120中之作業系統確認被輸入的裝置解鎖資料是否正確以驗證使用者身份;也可以選擇呼叫執行於行動裝置120中之作業系統所提供的螢幕解鎖應用程式介面以提供使用者輸入裝置解鎖資料,並透過螢幕解鎖應用程式介面判斷被輸入的裝置解鎖資料是否正確以驗證使用者身份;或可以選擇關閉螢幕等待使用者開啟螢幕並輸入裝置解鎖資料完成螢幕解鎖以確認使用者身份等,但驗證模組250的選擇驗證使用者身份的方式並不以上述為限。In more detail, the verification module 250 can select the method of verifying the user's identity through the device unlocking data according to the type and version of the operating system running on the mobile device 120. For example, the verification module 250 can choose to require the user to use the mobile device to verify the identity of the user. The input unit of 120 inputs the device unlocking data, and calls the operating system running on the mobile device 120 to confirm whether the entered device unlocking data is correct to verify the identity of the user; you can also choose to call the operating system running on the mobile device 120 provided by the operating system The screen unlocking application interface of the to provide the user to input the device unlocking data, and through the screen unlocking application interface to determine whether the entered device unlocking data is correct to verify the user's identity; or you can choose to close the screen and wait for the user to turn on the screen and enter the device The unlocking data completes the screen unlocking to confirm the user's identity, etc., but the method of the verification module 250 to verify the user's identity is not limited to the above.

網路判斷模組260可以判斷行動裝置120當前是否選擇使用行動通訊網路,並可以在判斷行動裝置120當前未選擇使用行動通訊網路時,例如當前使用如WiFi等無線區域網路時,透過行動裝置120的周邊輸出裝置提示使用者將行動裝置120改為使用行動通訊網路。The network judging module 260 can judge whether the mobile device 120 currently chooses to use the mobile communication network, and can judge whether the mobile device 120 currently chooses to use the mobile communication network, for example, when the mobile device 120 is currently using a wireless local area network such as WiFi, through the mobile device The peripheral output device of 120 prompts the user to change the mobile device 120 to use the mobile communication network.

在部分的實施例中,網路判斷模組260也可以在判斷行動裝置120當前未使用行動通訊網路時,透過行動裝置120的周邊輸出裝置提示使用者行動裝置120將被改為使用行動通訊網路,並將行動裝置120切換為使用行動通訊網路。In some embodiments, the network determining module 260 may also notify the user that the mobile device 120 will be changed to use the mobile communication network through the peripheral output device of the mobile device 120 when it determines that the mobile device 120 is not currently using the mobile communication network. , And switch the mobile device 120 to use the mobile communication network.

通訊模組280負責驅動行動裝置120上所安裝的用戶識別模組,藉以透過行動通訊網路與應用主機111連接。一般而言,通訊模組280可以驅動用戶識別模組,並透過用戶識別模組獲得行動通訊網路的使用權。The communication module 280 is responsible for driving the user identification module installed on the mobile device 120 to connect to the application host 111 through the mobile communication network. Generally speaking, the communication module 280 can drive the user identification module and obtain the right to use the mobile communication network through the user identification module.

通訊模組280也負責透過行動通訊網路與應用主機111連接,並負責將資料取得模組220所取得的網路識別資料以及使用者資料傳送至應用主機111,在部分的實施例中,通訊模組280也可以接收應用主機111所傳送的身份辨識結果。The communication module 280 is also responsible for connecting with the application host 111 through the mobile communication network, and is responsible for transmitting the network identification data and user data obtained by the data acquisition module 220 to the application host 111. In some embodiments, the communication module The group 280 may also receive the identity recognition result transmitted by the application host 111.

應用主機111可以透過有線或無線網路與身份識別主機112連接,也可以提供行動裝置120透過行動通訊網路連接。其中,應用主機111可以接收所連接之行動裝置120及/或身份識別主機112所傳送的資料或訊號,並可以傳送資料或訊號給所連接之行動裝置120及/或身份識別主機112。The application host 111 can be connected to the identification host 112 via a wired or wireless network, and can also provide the mobile device 120 to be connected via a mobile communication network. The application host 111 can receive data or signals transmitted by the connected mobile device 120 and/or the identification host 112, and can transmit the data or signals to the connected mobile device 120 and/or the identification host 112.

應用主機111負責提供應用服務給行動裝置120,並可以在行動裝置請求特定的作業時,要求行動裝置120進行身份識別,例如,在行動裝置120請求註冊時等。The application host 111 is responsible for providing application services to the mobile device 120, and can request the mobile device 120 to perform identity recognition when the mobile device requests a specific operation, for example, when the mobile device 120 requests registration.

應用主機111也負責接收行動裝置120所傳送的網路識別資料以及使用者資料,並將所接收到的網路識別資料以及使用者資料傳送給身份識別主機112。The application host 111 is also responsible for receiving the network identification data and user data sent by the mobile device 120, and sends the received network identification data and user data to the identification host 112.

應用主機111也負責接收身份識別主機112所傳送的身份辨識結果,並依據所接收到的身份辨識結果選擇是否執行行動裝置120所請求的作業,也就是說,應用主機111可以在身份辨識結果表示身份辨識成功時,執行行動裝置120所請求的作業,並可以在身份辨識結果表示身份辨識失敗時,拒絕執行行動裝置120所請求的作業。The application host 111 is also responsible for receiving the identity recognition result sent by the identity recognition host 112, and selects whether to perform the operation requested by the mobile device 120 according to the received identity recognition result. In other words, the application host 111 can indicate in the identity recognition result When the identity recognition is successful, the operation requested by the mobile device 120 is performed, and when the identity recognition result indicates that the identity recognition has failed, the operation requested by the mobile device 120 may be refused to be performed.

身份識別主機112可以透過有線或無線網路分別與應用主機111以及身份驗證伺服器113連接,也可以接收應用主機111及/或身份驗證伺服器113所傳送的資料或訊號,並可以傳送資料或訊號給應用主機111及/或身份驗證伺服器113。The identification host 112 can be connected to the application host 111 and the authentication server 113 through a wired or wireless network, and can also receive data or signals sent by the application host 111 and/or the authentication server 113, and can send data or The signal is sent to the application host 111 and/or the authentication server 113.

身份識別主機112負責接收應用主機111所傳送的網路識別資料以及使用者資料,並將所接收到的網路識別資料以及使用者資料傳送給身份驗證伺服器113。身份識別主機112也負責接收身份驗證伺服器113所傳送的身份辨識結果,並將所接收到的身份辨識結果傳送給應用主機111。The identification host 112 is responsible for receiving the network identification data and user data sent by the application host 111, and sends the received network identification data and user data to the authentication server 113. The identity recognition host 112 is also responsible for receiving the identity recognition result sent by the identity verification server 113, and transmits the received identity recognition result to the application host 111.

身份驗證伺服器113可以透過有線或無線網路分別與身份識別主機112以及電信伺服器130連接,也可以接收身份識別主機112及/或電信伺服器130所傳送的資料或訊號,並可以傳送資料或訊號給身份識別主機112及/或電信伺服器130。The identity verification server 113 can be respectively connected to the identity recognition host 112 and the telecommunication server 130 through a wired or wireless network, and can also receive data or signals sent by the identity recognition host 112 and/or the telecommunication server 130, and can transmit data Or a signal to the identification host 112 and/or the telecommunication server 130.

身份驗證伺服器113負責接收身份識別主機112所傳送的網路識別資料以及使用者資料,並將所接收到的網路識別資料以及使用者資料傳送給電信伺服器130。身份驗證伺服器113也負責接收電信伺服器130所傳送的身份辨識結果,並將所接收到的身份辨識結果傳送給身份識別主機112。The identity verification server 113 is responsible for receiving the network identification data and user data sent by the identity recognition host 112, and transmits the received network identification data and user data to the telecommunication server 130. The identity verification server 113 is also responsible for receiving the identity recognition result sent by the telecommunication server 130 and sending the received identity recognition result to the identity recognition host 112.

在部分的實施例中,應用主機111、身份識別主機112、身份驗證伺服器113可以包含在服務伺服器110中,如「第1B圖」所示。其中,服務伺服器110可以包含應用主機111、身份識別主機112、以及身份驗證伺服器113等實體的計算裝置,例如刀鋒伺服器等;服務伺服器110也可以是整合應用主機111對行動裝置120之所有功能以及身份驗證伺服器113對電信伺服器130之所有功能的伺服器。也就是說,服務伺服器110可以透過有線或無線網路與電信伺服器130連接,也可以提供行動裝置120透過有線或無線網路連接。其中,服務伺服器110可以接收所連接之行動裝置120及/或電信伺服器130所傳送的資料或訊號,並可以傳送資料或訊號給所連接之行動裝置120及/或電信伺服器130。如此,服務伺服器110可以提供行動裝置120應用服務,並可以將行動裝置120所傳送的網路識別資料與使用者資料傳送至電信伺服器130。In some embodiments, the application host 111, the identity recognition host 112, and the identity verification server 113 may be included in the service server 110, as shown in "Figure 1B". The service server 110 may include physical computing devices such as the application host 111, the identification host 112, and the authentication server 113, such as a blade server, etc.; the service server 110 may also be an integrated application host 111 to the mobile device 120 All functions and all functions of the identity verification server 113 to the telecommunications server 130. In other words, the service server 110 can be connected to the telecommunication server 130 through a wired or wireless network, and can also provide the mobile device 120 to be connected through a wired or wireless network. The service server 110 can receive data or signals sent by the connected mobile device 120 and/or the telecommunication server 130, and can send the data or signals to the connected mobile device 120 and/or the telecommunication server 130. In this way, the service server 110 can provide application services of the mobile device 120, and can send the network identification data and user data transmitted by the mobile device 120 to the telecommunication server 130.

另外,在部分的實施例中,也可以選擇整合應用主機111與身份識別主機112,使得行動裝置120將網路識別資料與使用者資料透過整合後的計算裝置與身份驗證伺服器傳送給電信伺服器130,或可以選擇整合身份識別主機112與身份驗證伺服器113,使得行動裝置120將網路識別資料與使用者資料透過應用主機111與整合後的計算裝置傳送給電信伺服器130,本發明不多加贅述。In addition, in some embodiments, the application host 111 and the identification host 112 may also be integrated, so that the mobile device 120 sends the network identification data and user data to the telecommunication server through the integrated computing device and the authentication server. The mobile device 130 may choose to integrate the identity recognition host 112 and the identity verification server 113, so that the mobile device 120 transmits network identification data and user data to the telecommunications server 130 through the application host 111 and the integrated computing device. The present invention Not much to repeat.

電信伺服器130可以透過有線或無線網路與身份驗證伺服器113連接,也可以接收身份驗證伺服器113所傳送的資料或訊號,並可以傳送資料或訊號給身份驗證伺服器113。The telecommunication server 130 can be connected to the identity verification server 113 through a wired or wireless network, can also receive data or signals sent by the identity verification server 113, and can send data or signals to the identity verification server 113.

電信伺服器130也負責接收身份驗證伺服器113所傳送的網路識別資料以及使用者資料,並負責依據所接收到的網路識別資料及使用者資料產生身份辨識結果,並傳送身份辨識結果至服務伺服器110或身份驗證伺服器113。The telecommunication server 130 is also responsible for receiving the network identification data and user data sent by the identity verification server 113, and is responsible for generating the identification result based on the received network identification data and user data, and sending the identification result to The service server 110 or the authentication server 113.

電信伺服器130可以依據所接收到的網路識別資料是否為電信伺服器130所發出、使用者資料中的門號是否屬於電信伺服器130所屬的電信單位/機構、使用者資料中的門號資料是否與網路識別資料對應、及使用者資料中的門號是否與使用者資料中的身份識別資料對應進行判斷,並可以在判斷後產生相對應的身份辨識結果。例如,電信單位或電信機構為電信公司且網路識別資料為網路位址時,電信伺服器130可以判斷所接收到的網路識別資料是否被所屬電信公司預先建立之資料記錄所涵蓋(如資料記錄中記載網路識別資料或資料記錄所記載之網段包含網路識別資料等),藉以判斷網路識別資料是否為電信伺服器130所屬之電信單位或電信機構所擁有,也就是判斷網路識別資料是否為電信伺服器130所發出,但電信伺服器130判斷網路識別資料是否為電信伺服器130所發出的方式並不以上述為限;相似的,電信伺服器130可以判斷所接收到的門號是否被所屬電信公司預先建立之資料記錄所涵蓋(如資料記錄中記載門號或門號落在資料記錄所記載之門號範圍內等),藉以判斷門號是否為電信伺服器130所屬之電信單位或電信機構所擁有,但電信伺服器130判斷門號是否屬於電信伺服器130所屬的電信單位/機構的方式並不以上述為限;另外,電信伺服器130也可以搜尋是否儲存包含所接收到之門號資料中的門號與網路識別資料的資料,若是,表示門號資料與網路識別資料對應,若否,則表示門號資料未與網路識別資料對應。其中,電信伺服器130在上述任一項目判斷為否時,可以產生表示辨識失敗的身份辨識結果;而當電信伺服器130在上述所有項目都判斷為是時,可以產生表示辨識成功的身份辨識結果。也就是說,當身份辨識結果表示身份辨識成功時,也就表示電信伺服器130判斷行動裝置120之使用者與電信伺服器130所記錄之資料相符,可以確認行動裝置120之使用者的身份;而當身份辨識結果表示身份辨識失敗時,表示電信伺服器130無法確認行動裝置之使用者的身份。The telecommunications server 130 can be based on whether the received network identification data is sent by the telecommunications server 130, whether the door number in the user data belongs to the telecommunications unit/organization to which the telecommunications server 130 belongs, and the door number in the user data. Whether the data corresponds to the network identification data and whether the door number in the user data corresponds to the identification data in the user data is judged, and the corresponding identification result can be generated after the judgment. For example, when the telecommunications unit or telecommunications organization is a telecommunications company and the network identification data is a network address, the telecommunications server 130 can determine whether the received network identification data is covered by a data record pre-established by the telecommunications company (such as The network identification data recorded in the data record or the network segment recorded in the data record contains network identification data, etc.), to determine whether the network identification data is owned by the telecommunication unit or telecommunication organization to which the telecommunication server 130 belongs, that is, to determine the network Whether the path identification data is sent by the telecommunications server 130, but the way the telecommunications server 130 determines whether the network identification data is sent by the telecommunications server 130 is not limited to the above; similarly, the telecommunications server 130 can determine the received Whether the door number reached is covered by the data record created in advance by the telecommunications company (for example, the door number recorded in the data record or the door number falls within the door number range recorded in the data record, etc.), to determine whether the door number is a telecommunications server 130 belongs to the telecommunications unit or telecommunications organization, but the way the telecommunications server 130 determines whether the door number belongs to the telecommunications organization/organization to which the telecommunications server 130 belongs is not limited to the above; in addition, the telecommunications server 130 can also search for whether Store the data containing the house number and network identification data in the received house number data. If yes, it means that the house number data corresponds to the network identification data. If not, it means that the house number data does not correspond to the network identification data. Wherein, when the telecommunication server 130 judges no in any of the above items, it can generate an identity recognition result indicating that the identification fails; and when the telecommunication server 130 judges yes in all the above items, it can generate an identity recognition result indicating that the recognition is successful. result. That is, when the identity recognition result indicates that the identity recognition is successful, it means that the telecommunications server 130 determines that the user of the mobile device 120 matches the data recorded by the telecommunications server 130, and the identity of the user of the mobile device 120 can be confirmed; When the identity recognition result indicates that the identity recognition has failed, it means that the telecommunication server 130 cannot confirm the identity of the user of the mobile device.

接著以一個實施例來解說本發明的運作系統與方法,並請參照「第3A圖」本發明所提之以網路識別資料透過電信伺服器識別身份之方法流程圖。在本實施例中,假設行動裝置120為手機,且服務伺服器110由應用主機111、身份識別主機112、以及身份驗證伺服器113等計算設備組成,但本發明並不以此為限。Next, an embodiment is used to explain the operating system and method of the present invention, and please refer to "Figure 3A" for the flow chart of the method of identifying identity through a telecommunication server by using network identification data in the present invention. In this embodiment, it is assumed that the mobile device 120 is a mobile phone, and the service server 110 is composed of computing devices such as an application host 111, an identity recognition host 112, and an identity verification server 113, but the present invention is not limited to this.

當使用者操作行動裝置120開啟包含身份識別元件200之網頁瀏覽器後,使用者可以操作行動裝置120使用網頁瀏覽器透過行動通訊網路連線到服務伺服器110(步驟301),並向服務伺服器110請求下載網頁。When the user operates the mobile device 120 to open the web browser containing the identification component 200, the user can operate the mobile device 120 to use the web browser to connect to the service server 110 via the mobile communication network (step 301), and to the service server The device 110 requests to download a web page.

在行動裝置120中執行的網頁瀏覽器顯示所下載的網頁後,使用者可以操作行動裝置120在網頁瀏覽器所顯示之網頁中點擊,藉以執行網頁瀏覽器所顯示之網頁中的各種功能。在本實施例中,假設服務伺服器110為政府機關所架設,且網頁瀏覽器所顯示之網頁中包含使用者註冊的功能,或是需要使用者先行註冊的功能。After the web browser executed in the mobile device 120 displays the downloaded web page, the user can operate the mobile device 120 to click on the web page displayed by the web browser to execute various functions in the web page displayed by the web browser. In this embodiment, it is assumed that the service server 110 is set up by a government agency, and the web page displayed by the web browser includes the function of user registration or the function that requires the user to register first.

在使用者選擇執行使用者註冊的功能後,網頁瀏覽器可以顯示包含個人資料的授權條款並詢問使用者是否同意的網頁,使用者在操作行動裝置120在網頁瀏覽器所顯示的網頁中點選同意授權條款的選項後,網頁瀏覽器可以顯示包含輸入使用者資料的網頁。在本實施例中,假設使用者資料包含使用者在行動裝置120上所使用的門號、擁有門號之電信機構/單位的名稱、使用者的身份證號、使用者的生日、以及其他註冊時所需要的個人資料,例如,使用者的性別、電子郵件地址、戶籍地址、通信地址等。After the user chooses to perform the user registration function, the web browser can display the authorization terms containing personal data and ask the user whether to agree to the web page. The user clicks on the web page displayed on the web browser by operating the mobile device 120 After agreeing to the option of the license terms, the web browser can display a web page containing the entered user information. In this embodiment, it is assumed that the user data includes the house number used by the user on the mobile device 120, the name of the telecommunications organization/unit that owns the house number, the user’s ID number, the user’s birthday, and other registrations. Personal data required at the time, for example, the user’s gender, email address, household registration address, mailing address, etc.

在使用者完成使用者資料的輸入後,網頁瀏覽器可以呼叫身份識別元件200,使得身份識別元件200開始執行。在身份識別元件200執行後,身份識別元件200的資料取得模組220可以取得網路識別資料以及使用者資料(步驟330)。在本實施例中,假設網路識別資料為網路位址,資料取得模組220可以偵測行動裝置120所使用的網路位址,並可以取得使用者在網頁瀏覽器所顯示之網頁中所輸入的使用者資料。After the user completes the input of the user information, the web browser can call the identity recognition component 200 so that the identity recognition component 200 starts to execute. After the identification component 200 is executed, the data acquisition module 220 of the identification component 200 can acquire network identification data and user data (step 330). In this embodiment, assuming that the network identification data is a network address, the data obtaining module 220 can detect the network address used by the mobile device 120, and can obtain the web page displayed by the user in the web browser User data entered.

在身份識別元件200的資料取得模組220取得網路識別資料以及使用者資料(步驟330)後,身份識別元件200的通訊模組280可以透過行動通訊網路傳送資料取得模組220所取得之網路識別資料及使用者資料到服務伺服器110(步驟360)。在本實施例中,通訊模組280也就是將網路識別資料以及使用者資料傳送給應用主機111。After the data acquisition module 220 of the identification component 200 acquires the network identification data and user data (step 330), the communication module 280 of the identification component 200 can transmit the data acquired by the data acquisition module 220 through the mobile communication network. Route identification data and user data to the service server 110 (step 360). In this embodiment, the communication module 280 transmits the network identification data and user data to the application host 111.

另外,在本實施例中,若身份識別元件200包含驗證模組250,則在身份識別元件200的通訊模組280透過行動通訊網路傳送網路識別資料及使用者資料到服務伺服器110(步驟360)前,驗證模組250可以先呼叫行動裝置120的作業系統所提供的應用程式介面(API),使得行動裝置120的作業系統要求行動裝置120的使用者輸入裝置解鎖資料並驗證使用者輸入的裝置解鎖資料(步驟340),藉以驗證使用者身份。若驗證模組250判斷裝置解鎖資料沒有通過行動裝置120之作業系統的驗證,則通訊模組280可以不傳送網路識別資料及使用者資料,驗證模組250可以再次呼叫行動裝置120之作業系統所提供的應用程式介面;而當驗證模組250判斷裝置解鎖資料通過行動裝置120之作業系統的驗證後,通訊模組280才傳送網路識別資料及使用者資料至服務伺服器110(步驟360)。需要說明的是,身份識別元件200的資料取得模組220與驗證模組250並沒有執行先後次序的關係,但一般而言,驗證模組250通常可以在資料取得模組220取得網路識別資料以及使用者資料(步驟330)後,才呼叫行動裝置120之作業系統所提供的應用程式介面,使得行動裝置120的作業系統判斷使用者輸入的裝置解鎖資料是否通過驗證(步驟340)。In addition, in this embodiment, if the identity recognition component 200 includes the verification module 250, the communication module 280 of the identity recognition component 200 transmits the network identification data and user data to the service server 110 through the mobile communication network (step 360), the verification module 250 can first call the application programming interface (API) provided by the operating system of the mobile device 120, so that the operating system of the mobile device 120 requires the user of the mobile device 120 to input device unlock data and verify the user input The device unlocks the data (step 340) to verify the user's identity. If the verification module 250 determines that the device unlocking data has not passed the verification of the operating system of the mobile device 120, the communication module 280 may not transmit the network identification data and user data, and the verification module 250 can call the operating system of the mobile device 120 again The communication module 280 sends the network identification data and user data to the service server 110 only after the verification module 250 determines that the device unlocking data has passed the verification of the operating system of the mobile device 120 (step 360 ). It should be noted that the data acquisition module 220 of the identification component 200 and the verification module 250 do not have an execution sequence relationship, but generally speaking, the verification module 250 can usually obtain network identification data from the data acquisition module 220 And after the user data (step 330), the application program interface provided by the operating system of the mobile device 120 is called, so that the operating system of the mobile device 120 determines whether the device unlocking data input by the user is verified (step 340).

在服務伺服器110接收行動裝置120所傳送的網路識別資料以及使用者資料後,可以將所接收到的網路識別資料以及使用者資料傳送給電信伺服器130(步驟370)。在本實施例中,也就是應用主機111將網路識別資料以及使用者資料傳送給身份識別主機112,並由身份識別主機112透過身份驗證伺服器113將應用主機111所傳送的網路識別資料以及使用者資料轉送到電信伺服器130。After the service server 110 receives the network identification data and user data sent by the mobile device 120, it can send the received network identification data and user data to the telecommunication server 130 (step 370). In this embodiment, the application host 111 sends the network identification data and user data to the identification host 112, and the identification host 112 transmits the network identification data sent by the application host 111 through the authentication server 113 And the user data is forwarded to the telecommunication server 130.

在電信伺服器130接收到行動裝置120所傳送的網路識別資料以及使用者資料後,電信伺服器130可以依據所接收到的網路識別資料以及使用者資料產生身份辨識結果。在本實施例中,假設電信伺服器130可以先判斷所接收到的網路識別資料是否為電信伺服器130所屬之電信單位/機構所擁有,若否,則電信伺服器130可以產生表示辨識失敗的身份辨識結果;若是,電信伺服器130可以接著判斷所接收到之使用者資料中的門號是否包含於預先建立之資料記錄中,若否,則電信伺服器130可以產生表示辨識失敗的身份辨識結果;若是,電信伺服器130可以繼續判斷使用者資料中的門號是否與網路識別資料對應,若否,則電信伺服器130可以產生表示辨識失敗的身份辨識結果;若是,電信伺服器130再判斷門號與使用者資料中的身份識別資料是否對應,若否,則電信伺服器130可以產生表示辨識失敗的身份辨識結果;若是,電信伺服器130可以產生表示辨識成功的身份辨識結果。After the telecommunications server 130 receives the network identification data and user data sent by the mobile device 120, the telecommunications server 130 can generate an identity recognition result based on the received network identification data and user data. In this embodiment, it is assumed that the telecommunications server 130 can first determine whether the received network identification data is owned by the telecommunications unit/organization to which the telecommunications server 130 belongs, and if not, the telecommunications server 130 can generate an identification failure If yes, the telecommunications server 130 can then determine whether the door number in the received user data is included in the pre-established data record, if not, the telecommunications server 130 can generate an identity indicating that the identification has failed Identification result; if yes, the telecommunication server 130 can continue to determine whether the door number in the user data corresponds to the network identification data, if not, the telecommunication server 130 can generate an identity identification result indicating that the identification fails; if so, the telecommunication server 130 determines whether the door number corresponds to the identification data in the user data. If not, the telecommunication server 130 may generate an identification result indicating that the identification fails; if so, the telecommunication server 130 may generate an identification result indicating that the identification is successful .

在電信伺服器130依據所接收到的網路識別資料以及使用者資料產生身份辨識結果後,可以將所產生的身份辨識結果傳送給服務伺服器110(步驟380)。在本實施例中,電信伺服器130可以將身份辨識結果傳送給身份驗證伺服器113,並由身份識別主機112將身份驗證伺服器113所接收到的身份辨識結果轉送給應用主機111,使得應用主機111可以依據身份辨識結果選擇是否完成行動裝置120所請求的註冊作業。當身份辨識結果表示辨識失敗時,應用主機111可以判斷使用者資料中的門號並非由與使用者資料中之身份證號對應的使用者所使用,因此可以認定使用者的資料有誤,拒絕行動裝置120的註冊作業;而當身份辨識結果表示辨識成功時,應用主機111可以判斷使用者資料中的門號確實由與使用者資料中之身份證號對應的使用者所使用,因此,可以認定使用者身份為真,如此,應用主機111可以完成行動裝置120的註冊作業,也就是將所接收到的使用者資料寫入會員資料庫中。如此,透過本發明,服務伺服器110便可以透過電信伺服器130取得行動裝置120的身份辨識結果,藉以透過使用者資料的正確性確認註冊之使用者的身份。After the telecommunication server 130 generates an identity recognition result based on the received network identification data and user data, it may send the generated identity recognition result to the service server 110 (step 380). In this embodiment, the telecommunication server 130 may send the identity recognition result to the identity verification server 113, and the identity recognition host 112 forwards the identity recognition result received by the identity verification server 113 to the application host 111, so that the application The host 111 can choose whether to complete the registration operation requested by the mobile device 120 according to the identity recognition result. When the identification result indicates that the identification has failed, the application host 111 can determine that the door number in the user data is not used by the user corresponding to the ID number in the user data, so it can be determined that the user's data is incorrect and rejected The registration operation of the mobile device 120; and when the identification result indicates that the identification is successful, the application host 111 can determine that the door number in the user data is indeed used by the user corresponding to the ID number in the user data. Therefore, it can It is determined that the user identity is true. In this way, the application host 111 can complete the registration operation of the mobile device 120, that is, write the received user data into the member database. In this way, through the present invention, the service server 110 can obtain the identity recognition result of the mobile device 120 through the telecommunication server 130, thereby confirming the identity of the registered user through the correctness of the user data.

上述實施例中,若身份識別元件200還包含網路判斷模組260,則如「第3B圖」之流程所示,在身份識別元件200的資料取得模組220可以取得網路識別資料以及門號資料(步驟330)前,網路判斷模組260可以先判斷行動裝置120是否使用行動通訊網路(步驟321),若網路判斷模組260判斷行動裝置120當前使用行動通訊網路,則資料取得模組220可以取得網路識別資料以及門號資料(步驟330);而若網路判斷模組260判斷行動裝置120當前並非使用行動通訊網路,例如判斷當前使用WiFi等無線區域網路,則網路判斷模組260可以直接關閉行動裝置120的無線區域網路功能,藉以將行動裝置120設定為使用行動通訊網路,使得資料取得模組220可以取得行動通訊網路的網路識別資料;網路判斷模組260也可以在判斷行動裝置120當前並非使用行動通訊網路時,提示使用者將行動裝置120設定為使用行動通訊網路(步驟325),資料取得模組220可以在網路判斷模組260判斷行動裝置120被設定為使用行動通訊網路後才取得網路識別資料以及門號資料(步驟330)。In the above-mentioned embodiment, if the identity recognition component 200 further includes the network determination module 260, as shown in the process of "Figure 3B", the data acquisition module 220 of the identity recognition component 200 can obtain network identification data and gates. Before the number data (step 330), the network determination module 260 can first determine whether the mobile device 120 uses the mobile communication network (step 321). If the network determination module 260 determines that the mobile device 120 is currently using the mobile communication network, the data is obtained The module 220 can obtain network identification data and door number data (step 330); and if the network determination module 260 determines that the mobile device 120 is not currently using a mobile communication network, for example, if it determines that a wireless local area network such as WiFi is currently used, the network The path determination module 260 can directly turn off the wireless local area network function of the mobile device 120, thereby setting the mobile device 120 to use the mobile communication network, so that the data acquisition module 220 can obtain the network identification data of the mobile communication network; The module 260 may also prompt the user to set the mobile device 120 to use the mobile communication network when determining that the mobile device 120 is not currently using the mobile communication network (step 325). The data acquisition module 220 may determine in the network determination module 260 The mobile device 120 is configured to use the mobile communication network to obtain network identification data and door number data (step 330).

另外,上述實施例中,若身份識別元件200還包含資料輸入模組240,則包含身份識別元件200的網頁瀏覽器可以在網頁中需要進行登入的服務被使用者選擇或執行後,呼叫身份識別元件200,而不顯示輸入使用者資料的網頁。而在身份識別元件200執行後,資料輸入模組240可以提供使用者輸入使用者資料的使用者介面,如此,身份識別元件200的資料取得模組220同樣可以取得使用者輸入的使用者資料,同時,身份識別元件200也可以偵測行動裝置120所使用的網路識別資料(步驟330)。其中,在資料取得模組220取得使用者資料前,行動裝置120可以如「第3C圖」之流程所示,先由身份識別元件200的偵測模組230偵測行動裝置120上所安裝的用戶識別模組(步驟311),在資料取得模組220取得使用者資料時,資料取得模組220可以判斷偵測模組230是否偵測到兩個或兩個以上的用戶識別模組(步驟313),若否,則資料取得模組220可以直接取得網路識別資料以及使用者資料(步驟330);而若資料取得模組220偵測到多個用戶識別模組,則資料取得模組220可以提示使用者在使用者資料中輸入與行動裝置120當前用來使用之行動通訊網路之用戶識別模組對應的門號資料(步驟315),並在使用者確認後取得使用者資料,以及偵測取得網路識別資料(步驟330)。In addition, in the above-mentioned embodiment, if the identification component 200 further includes the data input module 240, the web browser containing the identification component 200 can call the identification after the service that needs to be logged in on the web page is selected or executed by the user. The component 200 does not display the web page for entering user information. After the identification component 200 is executed, the data input module 240 can provide a user interface for the user to input user data. In this way, the data acquisition module 220 of the identification component 200 can also acquire the user data entered by the user. At the same time, the identification component 200 can also detect the network identification data used by the mobile device 120 (step 330). Wherein, before the data acquisition module 220 acquires the user data, the mobile device 120 can first detect the mobile device 120 installed on the mobile device 120 by the detection module 230 of the identification component 200 as shown in the process shown in "Figure 3C". User identification module (step 311). When the data acquisition module 220 acquires user data, the data acquisition module 220 can determine whether the detection module 230 has detected two or more user identification modules (step 313). If not, the data acquisition module 220 can directly acquire network identification data and user data (step 330); and if the data acquisition module 220 detects multiple user identification modules, the data acquisition module 220 can prompt the user to enter the door number data corresponding to the user identification module of the mobile communication network currently used by the mobile device 120 in the user data (step 315), and obtain the user data after the user confirms, and Detect and obtain network identification data (step 330).

綜上所述,可知本發明與先前技術之間的差異在於具有行動裝置所執行之身分識別元件取得網路識別資料及使用者資料後,透過行動通訊網路傳送網路識別資料及使用者資料至服務伺服器,並由服務伺服器傳送網路識別資料以及使用者資料至電信伺服器,使得電信伺服器依據網路識別資料及使用者資料產生身份辨識結果並傳送身份辨識結果給服務伺服器之技術手段,藉由此一技術手段可以解決先前技術所存在行動裝置不易連接硬體載具以辨識使用者身份的問題,進而達成單獨使用行動裝置完成身份辨識的技術功效。To sum up, it can be seen that the difference between the present invention and the prior art is that after the identification component executed by the mobile device obtains the network identification data and user data, it transmits the network identification data and user data to the mobile communication network. Service server, and the service server sends network identification data and user data to the telecommunication server, so that the telecommunication server generates an identification result based on the network identification data and user data and sends the identification result to the service server Technical means, by means of this technical means, the problem that the mobile device in the prior art is difficult to connect to the hardware carrier to identify the user's identity can be solved, and the technical effect of using the mobile device alone to complete the identity identification can be achieved.

再者,本發明之以網路識別資料透過電信伺服器識別身份之方法,可實現於硬體、軟體或硬體與軟體之組合中,亦可在電腦系統中以集中方式實現或以不同元件散佈於若干互連之電腦系統的分散方式實現。Furthermore, the method of identifying identity through a telecommunication server using network identification data of the present invention can be implemented in hardware, software, or a combination of hardware and software, and can also be implemented in a centralized manner in a computer system or with different components Distributed in several interconnected computer systems.

雖然本發明所揭露之實施方式如上,惟所述之內容並非用以直接限定本發明之專利保護範圍。任何本發明所屬技術領域中具有通常知識者,在不脫離本發明所揭露之精神和範圍的前提下,對本發明之實施的形式上及細節上作些許之更動潤飾,均屬於本發明之專利保護範圍。本發明之專利保護範圍,仍須以所附之申請專利範圍所界定者為準。Although the embodiments of the present invention are disclosed as above, the content described is not intended to directly limit the scope of patent protection of the present invention. Any person with ordinary knowledge in the technical field to which the present invention belongs, without departing from the spirit and scope of the present invention, makes slight modifications to the form and details of the implementation of the present invention, all belong to the patent protection of the present invention. range. The scope of patent protection of the present invention shall still be determined by the scope of the attached patent application.

110:服務伺服器 111:應用主機 112:身份識別主機 113:身份驗證伺服器 120:行動裝置 130:電信伺服器 200:身份識別元件 220:資料取得模組 230:偵測模組 240:資料輸入模組 250:驗證模組 260:網路判斷模組 280:通訊模組 步驟301:行動裝置透過行動通訊網路連線至服務伺服器 步驟311:行動裝置偵測用戶識別模組 步驟313:行動裝置判斷是否偵測到多個網路識別資料 步驟315:行動裝置提示輸入與行動通訊網路對應之網路識別資料對應之門號 步驟321:行動裝置判斷是否使用行動通訊網路 步驟325:行動裝置提示改用行動通訊網路 步驟330:行動裝置取得網路識別資料及使用者資料 步驟340:行動裝置判斷裝置解鎖資料是否通過驗證 步驟360:行動裝置傳送網路識別資料及使用者資料至服務伺服器 步驟370:服務伺服器傳送網路識別資料與使用者資料至電信伺服器 步驟380:電信伺服器依據網路識別資料及使用者資料產生身份辨識結果,並傳送身份辨識結果至服務伺服器110: service server 111: Application host 112: identification host 113: authentication server 120: mobile device 130: Telecom Server 200: identification component 220: Data Acquisition Module 230: Detection Module 240: data input module 250: Verification Module 260: Network Judgment Module 280: Communication module Step 301: The mobile device connects to the service server through the mobile communication network Step 311: The mobile device detects the user identification module Step 313: The mobile device determines whether multiple network identification data is detected Step 315: The mobile device prompts to enter the door number corresponding to the network identification data corresponding to the mobile communication network Step 321: The mobile device determines whether to use a mobile communication network Step 325: The mobile device prompts to switch to the mobile communication network Step 330: The mobile device obtains network identification data and user data Step 340: The mobile device determines whether the device unlock data is verified Step 360: The mobile device sends network identification data and user data to the service server Step 370: The service server sends network identification data and user data to the telecommunications server Step 380: The telecommunication server generates an identification result based on the network identification data and user data, and sends the identification result to the service server

第1A圖為本發明所提之以網路識別資料透過電信伺服器識別身份之系統架構圖。 第1B圖為本發明所提之另一種以網路識別資料透過電信伺服器識別身份之系統架構圖。 第2圖為本發明所提之行動裝置之元件示意圖。 第3A圖為本發明所提之以網路識別資料透過電信伺服器識別身份之方法流程圖。 第3B圖為本發明所提之提示切換網路之方法流程圖。 第3C圖為本發明所提之提示輸入用以使用行動通訊網路之門號之方法流程圖。Figure 1A is a diagram of the system architecture of the invention using network identification data to identify identity through a telecommunication server. Figure 1B is a diagram of another system architecture that uses network identification data to identify an identity through a telecommunication server according to the present invention. Figure 2 is a schematic diagram of the components of the mobile device according to the present invention. Figure 3A is a flow chart of the method for identifying identity through a telecommunication server using network identification data according to the present invention. Figure 3B is a flow chart of the method for prompting to switch networks in the present invention. Fig. 3C is a flow chart of the method of prompt input for using the mobile communication network door number according to the present invention.

步驟301:行動裝置透過行動通訊網路連線至服務伺服器 Step 301: The mobile device connects to the service server through the mobile communication network

步驟330:行動裝置取得網路識別資料及使用者資料 Step 330: The mobile device obtains network identification data and user data

步驟340:行動裝置判斷裝置解鎖資料是否通過驗證 Step 340: The mobile device determines whether the device unlock data is verified

步驟360:行動裝置傳送網路識別資料及使用者資料至服務伺服器 Step 360: The mobile device sends network identification data and user data to the service server

步驟370:服務伺服器傳送網路識別資料與使用者資料至電信伺服器 Step 370: The service server sends network identification data and user data to the telecommunications server

步驟380:電信伺服器依據網路識別資料及使用者資料產生身份辨識結果,並傳送身份辨識結果至服務伺服器 Step 380: The telecommunication server generates an identification result based on the network identification data and user data, and sends the identification result to the service server

Claims (10)

一種以網路識別資料透過電信伺服器識別身份之方法,該方法至少包含下列步驟: 一行動裝置透過行動通訊網路連線至一服務伺服器; 該行動裝置取得一網路識別資料及一使用者資料; 該行動裝置傳送該網路識別資料及該使用者資料至該服務伺服器; 該服務伺服器傳送該網路識別資料與該使用者資料至一電信伺服器;及 該電信伺服器依據該網路識別資料及該使用者資料產生一身份辨識結果,並傳送該身份辨識結果至該服務伺服器。A method for identifying an identity through a telecommunication server using network identification data, the method at least including the following steps: A mobile device is connected to a service server through a mobile communication network; The mobile device obtains a network identification data and a user data; The mobile device sends the network identification data and the user data to the service server; The service server sends the network identification data and the user data to a telecommunication server; and The telecommunication server generates an identity recognition result based on the network identification data and the user data, and transmits the identity recognition result to the service server. 如申請專利範圍第1項所述之以網路識別資料透過電信伺服器識別身份之方法,其中該方法於該行動裝置傳送該網路識別資料及該使用者資料至該服務伺服器之步驟前,更包含該行動裝置判斷該行動裝置當前未使用行動通訊網路時,提示改用行動通訊網路之步驟。As described in the first item of the scope of patent application, the method of identifying identity through a telecommunication server using network identification data, wherein the method is before the step of transmitting the network identification data and the user data to the service server by the mobile device , It also includes the step of prompting to switch to the mobile communication network when the mobile device determines that the mobile device is not currently using the mobile communication network. 如申請專利範圍第1項所述之以網路識別資料透過電信伺服器識別身份之方法,其中該方法於該行動裝置傳送該網路識別資料及該使用者資料至該服務伺服器之步驟前,更包含該行動裝置提供輸入一裝置解鎖資料並驗證該裝置解鎖資料之步驟。As described in the first item of the scope of patent application, the method of identifying identity through a telecommunication server using network identification data, wherein the method is before the step of transmitting the network identification data and the user data to the service server by the mobile device , It further includes the steps of inputting a device unlocking data and verifying the device unlocking data provided by the mobile device. 如申請專利範圍第1項所述之以網路識別資料透過電信伺服器識別身份之方法,其中該方法於該行動裝置取得該網路識別資料及該使用者資料之步驟,更包含該行動裝置偵測所安裝之用戶識別模組(SIM),並於偵測到兩個或兩個以上之用戶識別模組時,提示於該使用者資料中輸入與當前用來使用行動通訊網路之用戶識別模組對應之門號之步驟。As described in the first item of the scope of patent application, the method of identifying the identity through the telecommunication server by using network identification data, wherein the method includes the steps of obtaining the network identification data and the user data from the mobile device. Detect the installed user identification module (SIM), and when two or more user identification modules are detected, prompt to enter the user identification in the user data that is currently used to use the mobile communication network Steps of the door number corresponding to the module. 如申請專利範圍第1項所述之以網路識別資料透過電信伺服器識別身份之方法,其中該行動裝置取得該使用者資料之步驟為該行動裝置讀取使用者所輸入之該使用者資料。As described in item 1 of the scope of patent application, the method of identifying identity through a telecommunication server using network identification data, wherein the step of obtaining the user data by the mobile device is that the mobile device reads the user data entered by the user . 一種以網路識別資料透過電信伺服器識別身份之系統,該系統至少包含: 一服務伺服器; 一行動裝置,用以執行一身份識別元件,該身份識別元件包含: 一資料取得模組,用以獲取一使用者資料及一網路識別資料;及 一通訊模組,用以透過行動通訊網路與該服務伺服器連接,並傳送該網路識別資料及該使用者資料至該服務伺服器;及 一電信伺服器,用以接收該服務伺服器所傳送之該網路識別資料及該使用者資料,及用以依據該網路識別資料及該使用者資料產生一身份辨識結果,並傳送該身份辨識結果至該服務伺服器。A system that uses network identification data to identify an identity through a telecommunication server. The system at least includes: A service server; A mobile device for executing an identification element, the identification element including: A data acquisition module for acquiring a user data and a network identification data; and A communication module for connecting with the service server through a mobile communication network, and transmitting the network identification data and the user data to the service server; and A telecommunication server for receiving the network identification data and the user data sent by the service server, and for generating an identification result based on the network identification data and the user data, and transmitting the identity Recognize the result to the service server. 如申請專利範圍第6項所述之以網路識別資料透過電信伺服器識別身份之系統,其中該身份識別元件更包含一網路判斷模組,用以判斷該行動裝置當前是否使用行動通訊網路。As described in item 6 of the scope of patent application, the system that uses network identification data to identify an identity through a telecommunication server, wherein the identity identification component further includes a network determination module to determine whether the mobile device is currently using a mobile communication network . 如申請專利範圍第6項所述之以網路識別資料透過電信伺服器識別身份之系統,其中該身份識別元件更包含一驗證模組,用以提供輸入一裝置解鎖資料並驗證該裝置解鎖資料。As described in item 6 of the scope of patent application, the system that uses network identification data to identify an identity through a telecommunication server, wherein the identification component further includes a verification module for inputting a device unlocking data and verifying the device unlocking data . 如申請專利範圍第6項所述之以網路識別資料透過電信伺服器識別身份之系統,其中該行動裝置更包含一偵測模組,用以偵測該行動裝置所安裝之用戶識別模組,該資料取得模組更用以於該偵測模組於偵測到兩個或兩個以上之用戶識別模組時,提示於該使用者資料中輸入與當前用來使用行動通訊網路之用戶識別模組對應之門號。As described in item 6 of the scope of patent application, the system that uses network identification data to identify identity through a telecommunication server, wherein the mobile device further includes a detection module to detect the user identification module installed on the mobile device , The data acquisition module is further used to prompt the user to enter the user data and the user currently used to use the mobile communication network when the detection module detects two or more user identification modules Identify the corresponding door number of the module. 如申請專利範圍第6項所述之以網路識別資料透過電信伺服器識別身份之系統,其中該資料取得模組是讀取使用者所輸入之該使用者資料以取得該使用者資料。As described in item 6 of the scope of patent application, the system uses network identification data to identify an identity through a telecommunication server, wherein the data acquisition module reads the user data entered by the user to obtain the user data.
TW108123201A 2019-07-02 2019-07-02 System for using network identification to identify via telecommunication server and method thereof TWI780341B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
TW108123201A TWI780341B (en) 2019-07-02 2019-07-02 System for using network identification to identify via telecommunication server and method thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
TW108123201A TWI780341B (en) 2019-07-02 2019-07-02 System for using network identification to identify via telecommunication server and method thereof

Publications (2)

Publication Number Publication Date
TW202103031A true TW202103031A (en) 2021-01-16
TWI780341B TWI780341B (en) 2022-10-11

Family

ID=75234545

Family Applications (1)

Application Number Title Priority Date Filing Date
TW108123201A TWI780341B (en) 2019-07-02 2019-07-02 System for using network identification to identify via telecommunication server and method thereof

Country Status (1)

Country Link
TW (1) TWI780341B (en)

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
FI20055091A0 (en) * 2005-02-24 2005-02-24 Nokia Corp Local Mobility Management in Mobile Internet Protocol Network
TWI400934B (en) * 2007-08-06 2013-07-01 Hsiu Ping Lin Location-based service method in a communication system
US10812964B2 (en) * 2012-07-12 2020-10-20 Blackberry Limited Address assignment for initial authentication
TWM580206U (en) * 2019-04-18 2019-07-01 臺灣網路認證股份有限公司 System for identifying identity through telecommunication server by identification data device

Also Published As

Publication number Publication date
TWI780341B (en) 2022-10-11

Similar Documents

Publication Publication Date Title
US20230334476A1 (en) Using a contactless card to securely share personal data stored in a blockchain
TWI754811B (en) System for using device identification to identify via telecommunication server and method thereof
US10664587B1 (en) Setting an authorization level at enrollment
TW201824130A (en) System for opening account and applying mobile banking account online and method thereof
TWM580206U (en) System for identifying identity through telecommunication server by identification data device
TWM592629U (en) System to obtain appended data and execute corresponding operation when identity is confirmed
TWM586494U (en) ID recognition system using network identification data through telecommunication server
TWI780341B (en) System for using network identification to identify via telecommunication server and method thereof
TWI704796B (en) System for using network identification to sign in service server via telecommunication server and method thereof
KR20110002967A (en) Method and system for providing authentication service by using biometrics and portable memory unit therefor
TWI724638B (en) System for using carrier to verity identity in machine for opening account and method thereof
TWM603573U (en) System generating authorization content during identity verification before transaction
TWI754812B (en) System for using a device identification to log in via telecommunication server and method thereof
TWI698823B (en) System for verifying user identity when processing digital signature and method thereof
TWM586390U (en) A system for performing identity verification according to the service instruction to execute the corresponding service
TWM588313U (en) System for confirming user identity through financial account information
TWM586495U (en) System using network identification data for login through telecommunication server
TWI745015B (en) System and method for providing authorized content generated during identity authentication for verifying transaction data before transaction
TW202125294A (en) System for combining architectures of fido and pki to identity user and method thereof
TWI729535B (en) System for using financial account to confirm identity and method thereof
TWI691859B (en) System for identifying according to instruction to execute service and method thereof
TWI757925B (en) System for making two applications run simultaneously by calling input program and method thereof
TWM580207U (en) System for logging in through telecommunication server by identification data device
TWI790495B (en) System for driving smart card by third-party device for identity verification and method thereof
TWI746920B (en) System for using certificate to verify identity from different domain through portal and method thereof

Legal Events

Date Code Title Description
GD4A Issue of patent certificate for granted invention patent