TWI539316B - Security verification system and its method - Google Patents

Security verification system and its method Download PDF

Info

Publication number
TWI539316B
TWI539316B TW100138213A TW100138213A TWI539316B TW I539316 B TWI539316 B TW I539316B TW 100138213 A TW100138213 A TW 100138213A TW 100138213 A TW100138213 A TW 100138213A TW I539316 B TWI539316 B TW I539316B
Authority
TW
Taiwan
Prior art keywords
verification
machine
password
user
information
Prior art date
Application number
TW100138213A
Other languages
Chinese (zh)
Other versions
TW201317826A (en
Inventor
Sheng-Hong Wang
Original Assignee
Int Games System Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Int Games System Co Ltd filed Critical Int Games System Co Ltd
Priority to TW100138213A priority Critical patent/TWI539316B/en
Publication of TW201317826A publication Critical patent/TW201317826A/en
Application granted granted Critical
Publication of TWI539316B publication Critical patent/TWI539316B/en

Links

Landscapes

  • Telephonic Communication Services (AREA)

Description

保密驗證系統及其方法Privacy verification system and method thereof

本發明係關於一種保密驗證系統及其方法,主要是令使用者能以一行動電子裝置擷取一驗證機台(如:遊戲機台)所產生的機台資訊,並於該行動電子裝置中輸入帳號及密碼,使該行動電子裝置將該帳號、密碼及機台資訊傳送至一驗證伺服器(如:遊戲伺服器),令該驗證機台通過該驗證伺服器的認證,藉此避免帳號及密碼的輸入過程被窺視,進而達到保密驗證的效果。The present invention relates to a security verification system and a method thereof, which are mainly for enabling a user to retrieve a machine information generated by a verification machine (such as a game machine) by using a mobile electronic device, and in the mobile electronic device. Entering an account number and password, so that the mobile electronic device transmits the account number, password and machine information to a verification server (such as a game server), so that the verification machine passes the authentication of the verification server, thereby avoiding the account number And the password input process is peeped, and the effect of confidentiality verification is achieved.

近年來,隨著生活品質提升,人們日漸重視休閒活動,期能透過休閒活動釋放生活中的壓力,並增進人與人之間的情感交流,目前有大多數的使用者(尤其是年輕族群),會選擇到遊樂場進行休閒活動,以體驗遊戲帶來的豐富視覺與聲音效果。隨著遊戲機台技術的發展,除了過去常見的單機遊戲機台外,尚有業者研發出能連接至網際網路進行連線遊戲的遊戲機台,以供使用者們在遊戲間交流互動。In recent years, with the improvement of the quality of life, people are paying more and more attention to leisure activities. During the period, they can release the pressure of life through leisure activities and enhance the emotional communication between people. At present, most users (especially young people) You will choose to go to the playground for leisure activities to experience the rich visual and sound effects of the game. With the development of game console technology, in addition to the common stand-alone game consoles in the past, there are still some players who have developed a game console that can connect to the Internet for connecting games, so that users can interact with each other in the game.

按,目前部分遊戲機台在使用者註冊遊戲帳號時,會要求使用者設定一定長度以上的遊戲密碼,且為提高密碼的安全性,尚會要求遊戲密碼必須由數字及英文大小寫所組成,以防止不肖人士輕易竊取。然而,卻有部分不肖人士會在使用者輸入遊戲帳號及遊戲密碼時,窺視使用者輸入遊戲帳號及遊戲密碼的過程,並逕自記下使用者的遊戲帳號及遊戲密碼,藉以盜取遊戲帳號內的虛擬貨幣或虛擬寶物,造成使用者的損失,甚至令使用者失去繼續進行遊戲的熱情。另一方面,隨著觸控面板的技術進展及單價下降,目前已有許多遊戲機台採用觸控螢幕作為遊戲機台的輸入手段,然而,由於使用者必須在遊戲機台的觸控螢幕上,以觸碰點擊的方式輸入遊戲帳號及遊戲密碼,此又提高了遊戲帳號及遊戲密碼被窺視竊取的機會,相當不理想。Press, at present, some game consoles require the user to set a game password of a certain length or longer when the user registers the game account, and in order to improve the security of the password, the game password must be composed of numbers and English capitalization. To prevent unscrupulous people from stealing easily. However, some unscrupulous people will peek into the process of entering the game account and game password when the user enters the game account and game password, and record the user's game account and game password by self-recording to steal the game account. The virtual currency or virtual treasure causes the user's loss, and even the user loses the enthusiasm to continue the game. On the other hand, with the technical progress of the touch panel and the decline in unit price, many game consoles have adopted the touch screen as the input means of the game machine. However, since the user must be on the touch screen of the game machine. Enter the game account and game password in a touch-and-click manner, which increases the chances of the game account and game password being sneaked and stolen, which is quite unsatisfactory.

此外,雖有業者為加強遊戲機台驗證的安全性,研發出利用卡片進行身份驗證的機制,其中遊戲機台能利用無線射頻辨識(Radio Frequency Identification,簡稱RFID)等無線傳輸技術或其他影像辨識技術,辨認卡片的真實性,再搭配使用者所輸入的遊戲帳號及遊戲密碼,以進行驗證程序。然而,若遊戲機台欲採用卡片驗證的機制,業者必須針對各種遊戲機台設計並製作卡片,此不僅會大幅增加遊戲機台的開發成本及營運成本,且使用者往往會發生忘記攜帶卡片,甚至是遺失卡片等情事,導致遊戲業者又必須處理卡片補發等程序,造成營運成本提高,非常不理想。再者,即便在遊戲機台上增設卡片驗證機制,使用者仍須在遊戲機台的觸控螢幕上,點擊輸入遊戲帳號及遊戲密碼,如此,不肖人士同樣能以窺視的方式,取得使用者的遊戲帳號及遊戲密碼,故利用卡片進行身份驗證的機制在實際使用上仍相當不理想。In addition, although the industry has developed a mechanism for authenticating the authentication of the game machine, the game machine can use wireless transmission technology such as Radio Frequency Identification (RFID) or other image recognition. Technology, identify the authenticity of the card, and then match the game account and game password entered by the user to perform the verification process. However, if the game machine wants to adopt the card verification mechanism, the operator must design and produce cards for various game machines, which not only greatly increases the development cost and operating cost of the game machine, but also users forget to carry cards. Even the loss of cards and other things, the game industry must deal with cards and other procedures, resulting in increased operating costs, very unsatisfactory. Furthermore, even if a card verification mechanism is added to the game console, the user still has to click on the game account and the game password on the touch screen of the game console. Thus, the unscrupulous person can also obtain the user by peeping. The game account and game password, so the mechanism of using the card for authentication is still quite unsatisfactory in practical use.

因此,如何改善習知遊戲機台驗證方式的諸多問題,以加強遊戲帳號及遊戲密碼的安全性,避免採用直接在觸控螢幕上輸入遊戲帳號及遊戲密碼的方式,以防止不肖人士輕易取得使用者的遊戲帳號及遊戲密碼,確保使用者的權益,並提高驗證的效率及便利性,即為本發明在此欲探討的一重要課題。Therefore, how to improve the problem of the authentication method of the game console to enhance the security of the game account and the game password, and avoid the use of the game account and the game password directly on the touch screen to prevent the use of the game. The user's game account and game password ensure the user's rights and interests, and improve the efficiency and convenience of verification, which is an important topic for the present invention.

有鑑於前揭習知技術的諸多問題,發明人經過長久努力研究與實驗,終於開發設計出本發明之保密驗證系統及其方法,以避免使用者在驗證機台(如:遊戲機台)上直接輸入帳號及密碼,防止輸入的過程被窺視,以確保驗證過程的隱密性及安全性,避免損及使用者的權益。In view of the many problems of the prior art, the inventors have finally worked hard to study and experiment, and finally developed and designed the confidential verification system and method thereof to avoid the user on the verification machine (such as a game machine). Enter the account number and password directly to prevent the input process from being peeked to ensure the privacy and security of the verification process and to avoid harming the user's rights.

本發明之一目的,係提供一種保密驗證系統,該系統包括一驗證機台、一行動電子裝置及一驗證伺服器(如:遊戲伺服器),其中該驗證機台能產生一機台資訊,且該機台資訊係對應於該驗證機台;該行動電子裝置能擷取該機台資訊,且接收使用者輸入的帳號及密碼,該行動電子裝置係透過網際網路與該驗證伺服器相連接,且將該帳號、密碼及該機台資訊傳送至該驗證伺服器;該驗證伺服器係透過網際網路與該驗證機台相連接,該驗證伺服器設有一儲存單元,且該儲存單元中儲存有一使用者資料庫,該使用者資料庫包括有複數筆使用者資料,各該使用者資料分別包括一使用者帳號及一使用者密碼,該驗證伺服器接收到該行動電子裝置傳來的帳號、密碼及該機台資訊後,便針對該帳號及密碼,與該使用者資料庫中的使用者帳號及使用者密碼進行比對,在該帳號及密碼分別與該使用者帳號及使用者密碼相符合的情況下,該驗證伺服器便根據該機台資訊,使對應於該機台資訊的驗證機台通過該驗證伺服器的驗證。藉由本發明之技術特徵,當使用者欲以驗證機台連線至驗證伺服器時,僅需以行動電子裝置擷取該機台資訊,並於該行動電子裝置輸入帳號及密碼,便能完成驗證程序,有效防止不肖人士窺視使用者輸入帳號及密碼的過程,有效增加驗證的安全性,並達到保密的效果。An object of the present invention is to provide a security verification system, which includes a verification machine, a mobile electronic device, and a verification server (eg, a game server), wherein the verification machine can generate a machine information. And the mobile device information is corresponding to the verification machine; the mobile electronic device can capture the information of the machine and receive an account and a password input by the user, and the mobile electronic device communicates with the verification server via the Internet. Connecting, and transmitting the account number, the password and the machine information to the verification server; the verification server is connected to the verification machine through the Internet, the verification server is provided with a storage unit, and the storage unit There is stored in the user database, the user database includes a plurality of user data, each of the user data includes a user account and a user password, and the verification server receives the mobile electronic device. After the account number, password and the information of the machine, the account and password are compared with the user account and the user password in the user database. The case where the ID and password are consistent with the user account number and user password, then the authentication server information table according to the machine, so that the machine table corresponding to the verification information to verify the authentication by machines server. According to the technical feature of the present invention, when the user wants to connect to the verification server by using the verification machine, the mobile device only needs to retrieve the information of the machine and input the account number and password to the mobile electronic device. The verification program effectively prevents unscrupulous people from peek into the process of inputting an account and a password by the user, effectively increasing the security of the verification and achieving the effect of confidentiality.

本發明之另一目的,係提供一種保密驗證方法,該方法係應用在一系統上,該系統包括一驗證機台、一行動電子裝置及一驗證伺服器,而該方法包括:該驗證機台產生一機台資訊;該行動電子裝置擷取該機台資訊,且該行動電子裝置接收使用者輸入的帳號及密碼,並透過網際網路,將該帳號、密碼及該機台資訊傳送至該驗證伺服器;該驗證伺服器針對該帳號及密碼,與一使用者資料庫中的使用者帳號及使用者密碼進行比對,在該帳號及密碼分別與該使用者帳號及使用者密碼相符合的情況下,該驗證伺服器便根據該機台資訊,使對應於該機台資訊的驗證機台通過該驗證伺服器的驗證。如此,使用者僅需在該行動電子裝置上輸入帳號及密碼,而不需在驗證機台上進行輸入,有效避免輸入帳號及密碼的過程被窺視,大幅增加帳號及密碼的隱密性。Another object of the present invention is to provide a method for verifying confidentiality, the method being applied to a system, the system comprising a verification machine, a mobile electronic device and a verification server, and the method comprises: the verification machine Generating a machine information; the mobile electronic device captures the machine information, and the mobile electronic device receives the account number and password input by the user, and transmits the account number, password, and the machine information to the network through the Internet. Verifying the server; the verification server compares the account number and the password with the user account and the user password in a user database, and the account and password respectively match the user account and the user password. In the case of the machine, the verification machine corresponding to the machine information passes the verification of the verification server according to the machine information. In this way, the user only needs to input the account number and password on the mobile electronic device, and does not need to input on the verification machine, thereby effectively avoiding the process of inputting the account number and the password being peeped, and greatly increasing the privacy of the account and the password.

本發明之又一目的,乃該驗證機台係在其螢幕上顯示一二維條碼,以作為該機台資訊,而該行動電子裝置係以攝像鏡頭拍攝該機台資訊,以取得該機台資訊。藉此,使用者能快速地完成擷取機台資訊的步驟,以節省驗證所需的時間。Another object of the present invention is that the verification machine displays a two-dimensional barcode on the screen as the information of the machine, and the mobile electronic device captures the information of the machine with the camera lens to obtain the machine. News. Thereby, the user can quickly complete the steps of capturing machine information to save time required for verification.

本發明之又再一目的,乃當該驗證機台通過該驗證伺服器的驗證後,該驗證伺服器透過網際網路,對該行動電子裝置發送一通知訊息,以便使用者得知驗證程序已完成。According to still another object of the present invention, after the verification machine passes the verification by the verification server, the verification server sends a notification message to the mobile electronic device through the Internet, so that the user knows that the verification program has been carry out.

為便 貴審查委員能對本發明之目的、結構及其功效,做更進一步之認識與瞭解,茲舉實施例配合圖式,詳細說明如下:For your convenience, the review committee can make a further understanding and understanding of the purpose, structure and efficacy of the present invention. The embodiments are described in conjunction with the drawings, which are described in detail as follows:

發明人在長期從事驗證機台(遊戲機台)等相關領域的研發及設計中,發現使用者在驗證機台上輸入遊戲帳號及遊戲密碼時,可能有不肖人士在使用者的背後窺視輸入過程,並竊取遊戲帳號及遊戲密碼,導致使用者的權益嚴重受損,並不理想。此外,雖有業者開發出利用卡片進行身份驗證的機制,但使用者又常會發生忘記攜帶卡片或遺失卡片等情事,且使用者仍必須在驗證機台的觸控螢幕上輸入遊戲帳號及遊戲密碼,仍存在著被窺視竊取的可能性。業者雖欲進一步尋求上述問題的改善方案,但尚未獲得完善的解決辦法。有鑑於此,發明人乃思及利用目前常見的行動電子裝置,設計出具備高保密性的驗證系統及方法,以解決習知驗證方法的諸多缺失。In the long-term research and development and design of the verification machine (game console) and other related fields, the inventor found that when the user inputs the game account and the game password on the verification machine, there may be people who are unsightly in the back of the user. And stealing game accounts and game passwords, resulting in serious damage to users' rights, is not ideal. In addition, although some operators have developed a mechanism for using cards for authentication, users often forget to carry cards or lose cards, and the user still has to enter the game account and game password on the touch screen of the verification machine. There is still the possibility of being peeped and stolen. Although the industry wants to further seek improvement solutions to the above problems, it has not yet obtained a sound solution. In view of this, the inventors have designed and utilized the currently common mobile electronic devices to design a verification system and method with high confidentiality to solve many of the shortcomings of the conventional verification methods.

本發明係一種保密驗證系統及其方法,請參閱第1圖所示,在本發明之較佳實施例中,該保密驗證系統1包括一驗證機台10、一行動電子裝置11及一驗證伺服器12。該驗證機台10係透過路由器或其他網路裝置,連線至網際網路13。需特別一提的是,在本案中為簡化說明,本較佳實施例僅以一台驗證機台10進行說明,以便審查委員瞭解本案的技術重點所在,但在實際實施上,驗證機台10並不以一台為限,合先陳明。此外,在本較佳實施例中,該驗證機台10係一遊戲機台,但本發明亦不以此為限,該驗證機台10亦可為其他如門禁裝置等機台,該行動電子裝置11係一行動電話,且該行動電話具備一攝像鏡頭,能夠拍攝以擷取影像,惟,本發明並不以此為限,該行動電子裝置11亦可為平板電腦或其他電子產品,凡本技術領域之人士所能輕易思及之變化,均應涵蓋在本發明之申請專利範圍內,合先陳明。請參閱第1、2圖所示,第2圖所示者係該驗證機台10的觸控螢幕101所顯示的畫面,該驗證機台10能產生一機台資訊100,而在本較佳實施例中,該驗證機台10係在其螢幕上顯示一QR碼(QR Code),以作為該機台資訊100,所謂QR碼是二維條碼的一種,是在1994年由日本Denso-Wave公司所發明,QR為英文「Quick Response」的縮寫,即快速反應的意思,QR碼比普通條碼可儲存更多資料,且為目前日本最流行的二維條碼。該驗證機台10所產生的機台資訊100,係係對應於該驗證機台10,換言之,不同的驗證機台10將各自產生不同的機台資訊。The present invention is a security verification system and method thereof. Referring to FIG. 1, in the preferred embodiment of the present invention, the security verification system 1 includes a verification machine 10, a mobile electronic device 11, and a verification servo. 12 The verification machine 10 is connected to the Internet 13 via a router or other network device. In particular, in the present case, for the sake of simplicity, the preferred embodiment is described by only one verification machine 10, so that the reviewer understands the technical focus of the case, but in actual implementation, the verification machine 10 It is not limited to one, and it is first and foremost. In addition, in the preferred embodiment, the verification machine 10 is a game machine, but the invention is not limited thereto. The verification machine 10 can also be other machines such as an access control device. The device 11 is a mobile phone, and the mobile phone has a camera lens capable of capturing images for capturing. However, the present invention is not limited thereto, and the mobile electronic device 11 can also be a tablet computer or other electronic products. Variations that can be easily conceived by those skilled in the art are to be included in the scope of the patent application of the present invention. Referring to FIG. 1 and FIG. 2, the figure shown in FIG. 2 is a screen displayed by the touch screen 101 of the verification machine 10, and the verification machine 10 can generate a machine information 100, which is preferred. In the embodiment, the verification machine 10 displays a QR code on the screen as the machine information 100. The so-called QR code is a type of two-dimensional barcode, which was adopted by Denso-Wave in Japan in 1994. Invented by the company, QR is the abbreviation of "Quick Response" in English, which means quick response. QR code can store more information than ordinary barcode, and it is the most popular 2D barcode in Japan. The machine information 100 generated by the verification machine 10 corresponds to the verification machine 10, in other words, different verification machines 10 will each generate different machine information.

請參閱第3圖所示,在本發明中,業者可向使用者提供本保密驗證系統1專用的應用程式,令使用者將該應用程式安裝至該行動電子裝置11中,而當使用者開啟該應用程式後,該行動電子裝置11則如第3圖所示,使用者能以該行動電子裝置11的攝像鏡頭拍攝該機台資訊100,使該應用程式取得該機台資訊100。此外,在第3圖中,此應用程式尚包括一帳號欄位110及一密碼欄位111,使用者需在帳號欄位110及密碼欄位111上分別輸入帳號及密碼,使行動電子裝置11接收使用者輸入的帳號及密碼。待使用者點選確認鍵112後,請參閱第1圖所示,該行動電子裝置11即透過網際網路13與該驗證伺服器12相連接,且將該帳號、密碼及該機台資訊100傳送至該驗證伺服器12。Referring to FIG. 3, in the present invention, the user can provide the user with an application specific to the security verification system 1 to enable the user to install the application into the mobile electronic device 11, and when the user turns on After the application, the mobile electronic device 11 can capture the machine information 100 with the camera lens of the mobile electronic device 11 as shown in FIG. 3, so that the application can obtain the machine information 100. In addition, in FIG. 3, the application program further includes an account field 110 and a password field 111. The user needs to input an account number and a password in the account field 110 and the password field 111 respectively, so that the mobile electronic device 11 is enabled. Receive the account and password entered by the user. After the user clicks the confirmation button 112, as shown in FIG. 1, the mobile electronic device 11 is connected to the verification server 12 via the Internet 13, and the account number, password, and the machine information 100 are Transfer to the verification server 12.

復請參閱第1圖所示,該驗證伺服器12係透過網際網路13與該驗證機台10相連接,在本較佳實施例中,該驗證伺服器12係一遊戲伺服器,但本發明並不以此為限,合先陳明。該驗證伺服器12設有一儲存單元120,且該儲存單元120中儲存有一使用者資料庫(圖中未示),該使用者資料庫包括有複數筆使用者資料,各該使用者資料分別包括一使用者帳號及一使用者密碼。需特別一提的是,在第1圖中,該儲存單元120係設置在該驗證伺服器12中,惟,本發明並不以此為限,業者在根據本發明之概念設置該驗證伺服器12時,亦可將該儲存單元120設計為獨立於該驗證伺服器12的外部裝置,而此儲存單元120與該驗證伺服器12相連接後,同樣能達成與本實施例相同的效果,故該儲存單元120的設置位置並非本發明的侷限所在,凡本技術領域之人士所能輕易思及之組合與轉換,仍不脫離本發明的等效範圍,合先陳明。Referring to FIG. 1 , the verification server 12 is connected to the verification machine 10 via the Internet 13 . In the preferred embodiment, the verification server 12 is a game server, but The invention is not limited to this, and it is first and foremost. The verification server 12 is provided with a storage unit 120, and the storage unit 120 stores a user database (not shown). The user database includes a plurality of user data, each of the user data includes A user account and a user password. It should be particularly noted that, in FIG. 1 , the storage unit 120 is disposed in the verification server 12 , but the invention is not limited thereto, and the verification server is set according to the concept of the present invention. At 12 o'clock, the storage unit 120 can also be designed as an external device independent of the verification server 12, and after the storage unit 120 is connected to the verification server 12, the same effect as the embodiment can be achieved. The location of the storage unit 120 is not the limitation of the present invention. Any combination and conversion that can be easily conceived by those skilled in the art without departing from the equivalent scope of the present invention.

在本較佳實施例中,復請參閱第1、3圖所示,該驗證伺服器12接收到該行動電子裝置11傳來的帳號、密碼及該機台資訊100後,便針對該帳號及密碼,與該使用者資料庫中的使用者帳號及使用者密碼進行比對,在該帳號及密碼分別與該使用者帳號及使用者密碼相符合的情況下,該驗證伺服器12便根據該機台資訊100,使對應於該機台資訊100的驗證機台10通過該驗證伺服器12的驗證。為便審查委員能更瞭解本發明之整體流程步驟,茲以時序圖配合文字描述的方式,說明本發明所採用的流程步驟。請參閱第1、4圖所示,該保密驗證系統1係根據下列步驟,完成本發明之驗證作業:(400)該驗證機台10產生一機台資訊100,且該行動電子裝置11擷取該機台資訊100,並接收使用者輸入的帳號及密碼;(401)該行動電子裝置11透過網際網路13,將該帳號、密碼及該機台資訊100傳送至該驗證伺服器12;(402)該驗證伺服器12針對該帳號及密碼,與使用者資料庫中的使用者帳號及使用者密碼進行比對,在該帳號及密碼分別與該使用者帳號及使用者密碼相符合的情況下,該驗證伺服器12根據該機台資訊100,使對應於該機台資訊100的驗證機台10通過該驗證伺服器12的驗證,並對該驗證機台10發送一驗證訊息;及(403)該驗證伺服器12透過網際網路13,對該行動電子裝置11發送一通知訊息。In the preferred embodiment, as shown in FIG. 1 and FIG. 3, after receiving the account number, password, and the machine information 100 sent by the mobile electronic device 11, the verification server 12 is directed to the account number and The password is compared with the user account and the user password in the user database. When the account and password respectively match the user account and the user password, the verification server 12 is configured according to the password. The machine information 100 causes the verification machine 10 corresponding to the machine information 100 to pass the verification by the verification server 12. In order that the reviewer can better understand the overall process steps of the present invention, the process steps employed by the present invention will be described in terms of a timing diagram in conjunction with a textual description. Referring to Figures 1 and 4, the security verification system 1 performs the verification operation of the present invention according to the following steps: (400) the verification machine 10 generates a machine information 100, and the mobile electronic device 11 captures The machine information 100 is received by the user and the password is received by the user; (401) the mobile electronic device 11 transmits the account number, password and the machine information 100 to the verification server 12 via the Internet 13; 402) The verification server 12 compares the account number and the password with the user account and the user password in the user database, and the account and the password respectively match the user account and the user password. The verification server 12 passes the verification machine 10 corresponding to the machine information 100 through the verification of the verification server 12 according to the machine information 100, and sends a verification message to the verification machine 10; 403) The verification server 12 transmits a notification message to the mobile electronic device 11 via the Internet 13.

在上述步驟(402)中,當該驗證機台10接收到該驗證訊息,即表示驗證機台10已通過該驗證伺服器12的驗證,另外,當使用者藉由行動電子裝置11接收到通知訊息後,便能藉此確認驗證機台10確實已通過驗證伺服器12的驗證,故使用者能以驗證機台10進行遊戲。此外,在本發明中,該驗證伺服器12亦可於前述步驟(402)中,先將帳號及密碼傳送至驗證機台10,使該驗證機台10自動根據帳號及密碼登入至該驗證伺服器12,或者,該驗證伺服器12亦可自動根據該帳號、密碼及機台資訊100,將該驗證機台10登入至該驗證伺服器12,兩種作法均能達成本發明所欲追求的效果。綜上所述,藉由本發明之技術特徵,當使用者在遊樂場等公開場所,欲以驗證機台10連線至驗證伺服器12,進行線上遊戲時,使用者僅需以隨身攜帶的行動電子裝置11擷取該機台資訊100,並於該行動電子裝置11輸入帳號及密碼,便能使該驗證機台10通過該驗證伺服器12的驗證程序,進而以該驗證機台10進行遊戲,由於使用者完全無須在該驗證機台10上輸入帳號及密碼,故能有效防止不肖人士窺視使用者輸入帳號及密碼的過程,避免帳號及密碼被不肖人士竊取,有效增加驗證的安全性,並達到保密的效果。再者,使用者可預先將帳號、密碼輸入儲存於該行動電子裝置11中,如此,使用者僅需以該行動電子裝置11擷取該機台資訊100,本發明之保密驗證系統1便能自動完成驗證程序,大幅增加驗證的便利性及速度。In the above step (402), when the verification machine 10 receives the verification message, it means that the verification machine 10 has passed the verification by the verification server 12, and in addition, when the user receives the notification by the mobile electronic device 11, After the message, it can be confirmed that the verification machine 10 has indeed passed the verification of the verification server 12, so that the user can play the game on the verification machine 10. In addition, in the present invention, the verification server 12 can also transfer the account number and password to the verification machine 10 in the foregoing step (402), so that the verification machine 10 automatically logs in to the verification server according to the account number and password. The verification server 12 can also automatically log the verification machine 10 to the verification server 12 according to the account number, password and machine information 100, both of which can achieve the pursuit of the present invention. effect. In summary, according to the technical features of the present invention, when the user wants to connect the verification machine 10 to the verification server 12 in a public place such as a playground, the user only needs to take the action with him or her. The electronic device 11 captures the machine information 100, and inputs an account number and a password to the mobile electronic device 11, so that the verification machine 10 can pass the verification program of the verification server 12 to further play the game with the verification machine 10. Since the user does not need to input the account number and password on the verification machine 10, the user can effectively prevent the unscrupulous person from peeking into the process of inputting the account and the password, thereby preventing the account and the password from being stolen by the unscrupulous person, thereby effectively increasing the security of the verification. And achieve the effect of confidentiality. In addition, the user can input the account number and password in the mobile electronic device 11 in advance, so that the user only needs to retrieve the machine information 100 by using the mobile electronic device 11 , and the privacy verification system 1 of the present invention can Automated verification procedures greatly increase the convenience and speed of verification.

按,以上所述,僅為本發明之較佳實施例,惟本發明之技術特徵並不侷限於此,在上述較佳實施例中,該驗證機台10係在其螢幕上顯示一QR碼以作為該機台資訊100,但業者在設計該驗證機台10時,亦可改變機台資訊100的產生及發送形式,例如,驗證機台10可利用Wifi或藍芽等無線傳輸方式,對行動電子裝置11傳送機台資訊,或是以圖像或聲音的方式產生機台資訊,而讓行動電子裝置11擷取。因此,該機台資訊100的形式並非侷限本發明的限制條件。此外,在本案中,係以遊戲機台與遊戲伺服器為例進行說明,但本發明並不以此為限,本發明亦可應用在其他需要驗證的領域,如門禁控管等,凡任何熟悉該項技藝者,在本發明之技術領域內,可輕易思及的變化或修飾,皆應涵蓋在以下本發明的申請專利範圍中。According to the above description, it is only a preferred embodiment of the present invention, but the technical features of the present invention are not limited thereto. In the above preferred embodiment, the verification machine 10 displays a QR code on its screen. As the machine information 100, when the manufacturer designes the verification machine 10, the generation and transmission form of the machine information 100 can also be changed. For example, the verification machine 10 can use wireless transmission methods such as Wifi or Bluetooth. The mobile electronic device 11 transmits the machine information, or generates the machine information in an image or sound manner, and causes the mobile electronic device 11 to capture. Therefore, the form of the machine information 100 is not limited to the limitations of the present invention. In addition, in the present case, the game machine and the game server are taken as an example for description, but the present invention is not limited thereto, and the present invention can also be applied to other fields requiring verification, such as access control, etc. Those skilled in the art, which are susceptible to variations or modifications within the technical scope of the present invention, are intended to be covered by the following claims.

1...保密驗證系統1. . . Privacy verification system

10...驗證機台10. . . Verification machine

100...機台資訊100. . . Machine information

101...觸控螢幕101. . . Touch screen

11...行動電子裝置11. . . Mobile electronic device

110...帳號欄位110. . . Account field

111...密碼欄位111. . . Password field

112...確認鍵112. . . Enter

12...驗證伺服器12. . . Authentication server

120...儲存單元120. . . Storage unit

13...網際網路13. . . Internet

第1圖係本發明之較佳實施例之系統方塊示意圖;1 is a block diagram of a system of a preferred embodiment of the present invention;

第2圖係驗證機台的觸控螢幕之示意圖;Figure 2 is a schematic diagram of the touch screen of the verification machine;

第3圖係本發明較佳實施例之行動電子裝置之示意圖;及3 is a schematic diagram of a mobile electronic device in accordance with a preferred embodiment of the present invention; and

第4圖係本發明之較佳實施例之時序圖。Figure 4 is a timing diagram of a preferred embodiment of the present invention.

1...保密驗證系統1. . . Privacy verification system

10...驗證機台10. . . Verification machine

11...行動電子裝置11. . . Mobile electronic device

12...驗證伺服器12. . . Authentication server

120...儲存單元120. . . Storage unit

13...網際網路13. . . Internet

Claims (10)

一種保密驗證系統,包括:一驗證機台,其能產生一機台資訊,且該機台資訊係對應於該驗證機台;一行動電子裝置,其能擷取該機台資訊,且接收使用者輸入的帳號及密碼,該行動電子裝置係透過網際網路,發送該帳號、密碼及該機台資訊;及一驗證伺服器,係透過網際網路分別與該驗證機台及該行動電子裝置相連接,該驗證伺服器設有一儲存單元,且該儲存單元中儲存有一使用者資料庫,該使用者資料庫包括有複數筆使用者資料,各該使用者資料分別包括一使用者帳號及一使用者密碼,該驗證伺服器能接收該行動電子裝置傳來的該帳號、密碼及該機台資訊,並針對該帳號及密碼,與該使用者資料庫中的使用者帳號及使用者密碼進行比對,在該帳號及密碼分別與該使用者帳號及使用者密碼相符合的情況下,該驗證伺服器能根據該機台資訊,使對應於該機台資訊的該驗證機台通過該驗證伺服器的驗證。A security verification system includes: a verification machine capable of generating a machine information, and the machine information corresponds to the verification machine; a mobile electronic device capable of capturing the machine information and receiving and using The account and password entered, the mobile electronic device transmits the account number, password and the information of the machine through the Internet; and a verification server communicates with the verification machine and the mobile electronic device through the Internet respectively The authentication server is provided with a storage unit, and the storage unit stores a user database, the user database includes a plurality of user data, each of the user data includes a user account and a The user password, the verification server can receive the account number, the password and the machine information transmitted by the mobile electronic device, and perform the user account and the user password in the user database for the account and password. Comparing, in the case that the account number and password are respectively consistent with the user account and the user password, the verification server can make a pair according to the machine information. The verification machine to verify that the machine table information by authentication server. 如請求項1所述之保密驗證系統,其中該驗證伺服器係將該帳號及密碼傳送至該驗證機台,使該驗證機台自動根據該帳號及密碼登入至該驗證伺服器。The security verification system of claim 1, wherein the verification server transmits the account number and password to the verification machine, so that the verification machine automatically logs in to the verification server according to the account and password. 如請求項2所述之保密驗證系統,在該驗證機台通過該驗證伺服器的驗證後,該驗證伺服器透過網際網路,對該行動電子裝置發送一通知訊息。The security verification system of claim 2, after the verification machine passes the verification of the verification server, the verification server sends a notification message to the mobile electronic device via the Internet. 如請求項3所述之保密驗證系統,其中該驗證機台係顯示一二維條碼,以作為該機台資訊,而該行動電子裝置係以一攝像鏡頭拍攝該機台資訊,以取得該機台資訊。The security verification system of claim 3, wherein the verification machine displays a two-dimensional barcode as the information of the machine, and the mobile electronic device captures the information of the machine with a camera lens to obtain the machine. Taiwan information. 如請求項3所述之保密驗證系統,其中該驗證機台係以無線傳輸方式,將該機台資訊傳送至該行動電子裝置。The security verification system of claim 3, wherein the verification machine transmits the machine information to the mobile electronic device in a wireless transmission manner. 一種保密驗證方法,係應用在一系統上,該系統包括一驗證機台、一行動電子裝置及一驗證伺服器,該驗證伺服器係透過網際網路分別與該驗證機台及該行動電子裝置相連接,該方法包括:該驗證機台產生一機台資訊;該行動電子裝置擷取該機台資訊,且接收使用者輸入的帳號及密碼,並透過網際網路,將該帳號、密碼及該機台資訊傳送至該驗證伺服器;及該驗證伺服器針對該帳號及密碼,與一使用者資料庫中的使用者帳號及使用者密碼進行比對,在該帳號及密碼分別與該使用者帳號及使用者密碼相符合的情況下,該驗證伺服器根據該機台資訊,使對應於該機台資訊的該驗證機台通過該驗證伺服器的驗證。A security verification method is applied to a system, the system includes a verification machine, a mobile electronic device and a verification server, and the verification server communicates with the verification machine and the mobile electronic device through the Internet respectively. Connected, the method includes: the verification machine generates a machine information; the mobile electronic device captures the machine information, receives the account and password input by the user, and uses the Internet, the account, the password and The machine information is transmitted to the verification server; and the verification server compares the account number and the password with the user account and the user password in a user database, and the account and the password are respectively used. If the account number and the user password match, the verification server passes the verification machine corresponding to the machine information to verify the verification by the verification server according to the machine information. 如請求項6所述之保密驗證方法,其中該驗證伺服器係將該帳號及密碼傳送至該驗證機台,使該驗證機台自動根據該帳號及密碼登入至該驗證伺服器。The method of claim 6, wherein the verification server transmits the account number and password to the verification machine, so that the verification machine automatically logs in to the verification server according to the account and password. 如請求項7所述之保密驗證方法,在該驗證機台通過該驗證伺服器的驗證後,該驗證伺服器透過網際網路,對該行動電子裝置發送一通知訊息。The privacy verification method according to claim 7, after the verification machine passes the verification by the verification server, the verification server sends a notification message to the mobile electronic device through the Internet. 如請求項8所述之保密驗證方法,其中該驗證機台係顯示一二維條碼,以作為該機台資訊,而該行動電子裝置係以一攝像鏡頭拍攝該機台資訊,以取得該機台資訊。The method of claim 8, wherein the verification machine displays a two-dimensional barcode as the information of the machine, and the mobile electronic device captures the information of the machine with a camera lens to obtain the machine. Taiwan information. 如請求項8所述之保密驗證方法,其中該驗證機台係以無線傳輸方式,將該機台資訊傳送至該行動電子裝置。The method of claim 8, wherein the verification machine transmits the machine information to the mobile electronic device in a wireless transmission manner.
TW100138213A 2011-10-21 2011-10-21 Security verification system and its method TWI539316B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
TW100138213A TWI539316B (en) 2011-10-21 2011-10-21 Security verification system and its method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
TW100138213A TWI539316B (en) 2011-10-21 2011-10-21 Security verification system and its method

Publications (2)

Publication Number Publication Date
TW201317826A TW201317826A (en) 2013-05-01
TWI539316B true TWI539316B (en) 2016-06-21

Family

ID=48871934

Family Applications (1)

Application Number Title Priority Date Filing Date
TW100138213A TWI539316B (en) 2011-10-21 2011-10-21 Security verification system and its method

Country Status (1)

Country Link
TW (1) TWI539316B (en)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
TWI708219B (en) * 2018-07-10 2020-10-21 易停網股份有限公司 Network member scan method and system
CN113139164A (en) * 2020-01-20 2021-07-20 启碁科技股份有限公司 Method and system for automatically inputting password and password management device

Also Published As

Publication number Publication date
TW201317826A (en) 2013-05-01

Similar Documents

Publication Publication Date Title
JP7051859B2 (en) Methods and systems for creating network-enabled accounts using photodetection
KR100824490B1 (en) Information hiding through time synchronization
CN101809581B (en) Embedded authentication systems in an electronic device
CN103390124B (en) Safety input and the equipment, system and method for processing password
US9083532B2 (en) Physiological response PIN entry
US10045210B2 (en) Method, server and system for authentication of a person
US20160127134A1 (en) User authentication system and method
TR201810238T4 (en) The appropriate authentication method and apparatus for the user using a mobile authentication application.
CN109146470A (en) Generate the method and device of payment code
WO2014079366A1 (en) Otp device and method integrating photographing and bar code identification technology
JP2022503755A (en) Systems and methods for cryptographic authentication of non-contact cards
WO2020253197A1 (en) Method and apparatus for managing virtual user identification card, terminal device and storage medium
WO2017076270A1 (en) Smart card having function of one time password (otp), and work method therefor
Damopoulos et al. Hands-Free one-Time and continuous authentication using glass wearable devices
WO2015168878A1 (en) Payment method and device and payment factor processing method and device
WO2013086474A1 (en) Digital authentication and security method and system
TWI539316B (en) Security verification system and its method
Guerar et al. Color wheel pin: Usable and resilient ATM authentication
CN102646107A (en) Digital key with functions of security and webpage guidance
WO2015000425A1 (en) Method and system for authenticating user using out-of-band channel
CN103095645B (en) Confidentiality verification system and method thereof
US9087221B2 (en) Device for preventing logging of clients input data in a computer system
Rajarajan et al. Spinpad: a secured pin number based user authentication scheme
KR20160008012A (en) User authentification method in mobile terminal
CN103701603A (en) Method, terminal, equipment and system of utilizing internet banking to draw lottery