WO2013182058A1 - 电子认证客户端系统及处理方法、电子认证系统及方法 - Google Patents
电子认证客户端系统及处理方法、电子认证系统及方法 Download PDFInfo
- Publication number
- WO2013182058A1 WO2013182058A1 PCT/CN2013/076818 CN2013076818W WO2013182058A1 WO 2013182058 A1 WO2013182058 A1 WO 2013182058A1 CN 2013076818 W CN2013076818 W CN 2013076818W WO 2013182058 A1 WO2013182058 A1 WO 2013182058A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- authentication
- authentication code
- controller
- remote controller
- smart remote
- Prior art date
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0853—Network architectures or network communication protocols for network security for authentication of entities using an additional device, e.g. smartcard, SIM or a different communication terminal
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/321—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving a third party or a trusted authority
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N21/00—Selective content distribution, e.g. interactive television or video on demand [VOD]
- H04N21/20—Servers specifically adapted for the distribution of content, e.g. VOD servers; Operations thereof
- H04N21/25—Management operations performed by the server for facilitating the content distribution or administrating data related to end-users or client devices, e.g. end-user or client device authentication, learning user preferences for recommending movies
- H04N21/258—Client or end-user data management, e.g. managing client capabilities, user preferences or demographics, processing of multiple end-users preferences to derive collaborative data
- H04N21/25808—Management of client data
- H04N21/25816—Management of client data involving client authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04N—PICTORIAL COMMUNICATION, e.g. TELEVISION
- H04N21/00—Selective content distribution, e.g. interactive television or video on demand [VOD]
- H04N21/40—Client devices specifically adapted for the reception of or interaction with content, e.g. set-top-box [STB]; Operations thereof
- H04N21/41—Structure of client; Structure of client peripherals
- H04N21/422—Input-only peripherals, i.e. input devices connected to specially adapted client devices, e.g. global positioning system [GPS]
- H04N21/42204—User interfaces specially adapted for controlling a client device through a remote control device; Remote control devices therefor
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
Definitions
- the present invention relates to the technical field of electronic authentication, and in particular to an electronic authentication client system, an electronic authentication client processing method, an electronic authentication system, and an electronic authentication method.
- the authentication code is sent by the server, and then the client performs an operation on the authentication code according to the agreed authentication algorithm, obtains the authentication code operation result, and returns the authentication server, so that the authentication server can The result of the authentication code operation determines whether the authentication is valid.
- the electronic authentication client uses the U shield to calculate the authentication code sent by the authentication server, and obtains the authentication code operation result.
- U A pre-set authentication algorithm is stored on the shield. This algorithm is programmed in the U-Shield hardware chip and is not readable.
- U shield USB can only be accessed through the program The interface interacts with the data to implement the operation of the authentication code.
- U Shield used in online banking payment is a commonly used electronic authentication method, which can improve the security of online transactions.
- U The shield and the processing device that installed the access program, such as a computer form the client for electronic authentication.
- the client also passes U
- the shield computes the authentication code sent by the authentication server, and obtains the authentication code operation result. It needs to be inserted and removed on the smart TV or smart set-top box of the client every time. Shield, and also requires that the smart TV or smart set-top box must be equipped with a USB interface that plugs in the U shield, which is inconvenient.
- U is used when electronic authentication is performed by a television device in the background art.
- the problem that the shield performs client data processing is inconvenient, and the invention provides a U shield without plugging and unplugging, and no USB An electronic authentication client system that interfaces client data, and an electronic authentication client processing method.
- An electronic authentication client system including a smart remote controller and a television controller;
- the television controller is configured to receive authentication code data sent by the authentication server, and send the authentication code data to the smart remote controller, and receive an authentication code operation result sent by the smart remote controller, and execute the authentication code operation result.
- the smart remote controller is configured to receive authentication code data sent by the television controller, perform operation on the authentication code data according to a built-in authentication algorithm, obtain an authentication code operation result, and send the authentication code to the television controller. The result of the operation.
- An electronic authentication client processing method includes the following steps: The television controller receives the authentication code data sent by the authentication server, and sends the data to the smart remote controller; The smart remote controller receives the authentication code data sent by the television controller, performs operation on the authentication code data according to a built-in authentication algorithm, obtains an authentication code operation result, and sends the authentication code operation to the television controller. result; The television controller receives an authentication code operation result sent by the smart remote controller, and sends the authentication code operation result to an authentication server.
- the electronic authentication client system of the present invention and the electronic authentication client processing method realize the electronic authentication process by data interaction between the smart remote controller and the television controller, such as a set top box, and the authentication algorithm is implemented in the smart remote controller, so Need to set up USB Data transfer interface, no need to plug in U Shield is more convenient.
- the television controller sends the authentication code data sent by the authentication server to the smart remote controller, and the smart remote controller performs the operation on the authentication code data through a built-in unreadable authentication algorithm, and interacts with the data of the television controller to execute the authentication code.
- the result of the operation is sent to the authentication server, which ensures that the authentication algorithm is unreadable and ensures the security of the electronic authentication.
- the U is used when electronic authentication is performed by a television device in the background art.
- the invention is inconvenient for the client to perform data processing on the client.
- the invention also provides an electronic authentication system that does not need to plug and unplug the U shield, and does not need a USB interface to transmit client data, and an electronic authentication method.
- An electronic authentication system including an authentication server, a smart remote controller, and a television controller;
- the authentication server is configured to send the authentication code data according to the authentication request, receive the authentication code operation result, and determine whether the authentication is valid according to the authentication code operation result;
- the television controller is configured to receive the authentication code data sent by the authentication server. And sending the authentication code data to the smart remote controller; receiving an authentication code operation result sent by the smart remote controller, and transmitting the authentication code operation result to the authentication server;
- the smart remote controller is configured to receive The authentication code data sent by the television controller calculates the authentication code data according to a built-in authentication algorithm, obtains an authentication code operation result, and transmits the authentication code operation result to the television controller.
- An electronic authentication method comprising the steps of: The authentication server generates the authentication code data according to the authentication request, and sends the authentication code data to the television controller;
- the television controller receives the authentication code data sent by the authentication server, and sends the data to the smart remote controller;
- the smart remote controller receives the authentication code data sent by the television controller, performs operation on the authentication code data according to a built-in authentication algorithm, obtains an authentication code operation result, and sends the authentication code operation to the television controller. result;
- the television controller receives an authentication code operation result sent by the smart remote controller, and sends the authentication code operation result to the authentication server;
- the authentication server receives an authentication code operation result sent by the television controller, and determines whether the authentication is valid according to the authentication code operation result.
- the electronic authentication system and the electronic authentication method of the present invention realize electronic authentication process by data interaction between a smart remote controller and a television controller, such as a set top box, and the authentication algorithm is implemented in a smart remote controller, so there is no need to set data such as USB.
- the transmission interface does not need to be plugged into the U shield, which is convenient.
- the television controller sends the authentication code data sent by the authentication server to the smart remote controller, and the smart remote controller performs the operation on the authentication code data through a built-in unreadable authentication algorithm, and interacts with the data of the television controller to execute the authentication code.
- the operation result is sent to the authentication server, and the authentication server determines whether the authentication is valid by the result of the authentication code operation. Ensuring that the authentication algorithm is unreadable, ensures the security of electronic authentication.
- FIG. 1 is a schematic structural diagram of an electronic authentication client system of the present invention
- 2 is a schematic diagram of a programmable micro-processing chip used in an embodiment of the electronic authentication client system of the present invention
- 3 is a flow chart of one embodiment of electronic authentication of the electronic authentication system of the present invention
- 4 is a flow chart showing the steps of the electronic authentication client processing method of the present invention.
- FIG. 1 is a schematic structural diagram of an electronic authentication client system according to the present invention.
- the electronic authentication client system includes: a television controller 11 and a smart remote controller 12;
- the television controller 11 is configured to receive the authentication code data sent by the authentication server, and send the authentication code data to the smart remote controller 12; receive the authentication code operation result sent by the smart remote controller 12, and the The authentication code operation result is sent to the authentication server;
- the smart remote controller 12 is configured to receive authentication code data sent by the television controller 11, perform operation on the authentication code data according to a built-in authentication algorithm, obtain an authentication code operation result, and send the result to the television controller 11 The authentication code operation result.
- the television controller 11 can be an intelligent set top box or an intelligent controller of other television devices.
- the television controller 11 The network connection function is provided for connecting to the authentication server on the network; and the data transmission is performed with the smart remote controller 12, and the authentication code data sent by the authentication server is received and sent to the smart remote controller. Receiving the authentication code operation result sent by the smart remote controller 12 and transmitting it to the authentication server.
- the authentication code data is generated by the authentication server according to an agreement and is suitable for the smart remote controller.
- the data that is calculated by the built-in authentication algorithm may be, for example, a random number generated by the authentication server according to the authentication request, thereby improving the security of the electronic authentication.
- the smart remote control 12 A dedicated authentication algorithm is built in, and the calculation logic of the authentication algorithm is not disclosed, and can be recorded by means of machine code.
- a programmable microprocessor may be employed to cure the algorithm to the smart remote controller.
- the hardware reads the fuse bit to ensure that the algorithm is not readable and writable.
- a dedicated programmable micro-processing chip can be built into the smart remote controller 12 to record the authentication algorithm. Take AT90USBKey
- a programmable micro-processing chip integrates SPI communication and 16k Flash, 4k RAM, and its circuit design is shown in Figure 2.
- an external crystal oscillator is required to provide the clock pulse required for communication.
- a 48M crystal oscillator is used here.
- only a few simple electrolytic capacitors are needed to ensure the stability of the circuit.
- This chip can burn the compiled algorithm into the chip through the SPI interface, and at the same time, the chip flash The fuse bit is blown to ensure that the chip is not readable and writable after leaving the factory, and its communication can only access the SPI through the program.
- the interface communicates with the authentication code algorithm, and the authentication code operation result is obtained. Because under the existing chip packaging technology, it is necessary to break the chip package and directly read the flash. The chip still can't do it, thus ensuring that the authentication algorithm is invisible to the user and ensuring the security of the entire authentication client system.
- the present invention is not limited to the type of the programmable microprocessor, and those skilled in the art can implement an appropriate programmable microprocessor according to the present invention.
- the electronic authentication client system of the invention of the invention realizes the electronic authentication process by data interaction between the smart remote controller and the television controller, such as a set top box, and the authentication algorithm is implemented in the smart remote controller, so there is no need to set the USB Data transfer interface, no need to plug in U Shield is more convenient.
- the television controller sends the authentication code data sent by the authentication server to the smart remote controller, and the smart remote controller performs the operation on the authentication code data through a built-in unreadable authentication algorithm, and interacts with the data of the television controller to execute the authentication code.
- the result of the operation is sent to the authentication server, which ensures that the authentication algorithm is unreadable and ensures the security of the electronic authentication.
- the electronic authentication client system of the present invention can form an electronic authentication system with an authentication server.
- the authentication server is configured to send the authentication code data according to the authentication request, receive the authentication code operation result, and determine whether the authentication is valid according to the authentication code operation result.
- the authentication server performs operation on the authentication code data according to a corresponding authentication algorithm, obtains a second authentication code operation result, receives an authentication code operation result sent by the television controller, and performs an operation result according to the authentication code and
- the second authentication code operation result determines whether the authentication is valid.
- the authentication server may be an electronic payment server or a server of other systems that requires authentication.
- the authentication server may further return the authentication result information after the authentication is completed.
- the television controller 11 The authentication server may be further configured to transmit the authentication result information, and send the authentication result information to the smart remote controller 12.
- the smart remote controller 12 transmits the authentication request to the television controller 11; the television controller 11 Sending the authentication request to an authentication server, and receiving the authentication code data sent by the authentication server according to the authentication request.
- the user can transmit the authentication request through the smart remote controller 12 in the present invention, which is very convenient.
- the user passes the smart remote control 12
- the electronic payment is confirmed, it can be triggered by the control keyboard of the smart remote controller 12 to issue an authentication request.
- the television controller 11 Further configured to receive a client private key sent by the authentication server, and send the user private key to the smart remote controller 12; the smart remote controller 12 Further for receiving and storing the client private key, encrypting data sent to the television controller 11 according to the user private key, and from the television controller 11
- the received data is decrypted to improve the security of information transmission during the authentication process.
- the data of the private key of the client can be written into the memory chip of the smart remote controller 12.
- the user's input account name and password can be initially authenticated.
- the smart remote control 12 Receiving the entered account name and password and passing the television controller 11
- the username and password are sent to the authentication server, and the authentication server performs preliminary authentication according to the username and password.
- the authentication server sends a digital certificate containing the private key of the client, so that the user can encrypt and decrypt the data interacting with the authentication server according to the private key of the client.
- the authentication server encrypts the data sent to the client according to the public key corresponding to the private key; and decrypts the data received from the client.
- FIG. 3 is a flow chart of an embodiment of electronic authentication of the electronic authentication system of the present invention.
- step 101 The smart remote controller sends an authentication request according to a user operation, wherein the smart remote controller and the television controller transmit data through a dedicated wireless communication channel, and the data sent by the smart remote controller is
- the private key of the client is encrypted, and the received data is decrypted by the private key of the client to ensure the confidentiality and security of the data transmission.
- step 102 After receiving the authentication request, the television controller sends the authentication request to the authentication server.
- the 128-bit TSL may be adopted between the television controller and the authentication server. Transmission encryption to ensure the security of communication.
- the authentication server sends the authentication code data to the television controller, where the authentication code data is a random number generated by the authentication server according to the authentication request. After receiving the authentication request sent by the television controller, the authentication server automatically generates the random number according to the agreement and delivers the random number to the television controller.
- the authentication server decrypts the data received from the television controller by using a corresponding public key, and the sent data is encrypted by using the public key.
- Step 104 The authentication server calculates an authentication code operation result 'Response A1' according to the authentication code data and an internal authentication algorithm. ;
- Step 105 After receiving the authentication code data, the television controller sends the data to the smart remote controller.
- Step 106 The smart remote controller calculates an authentication code operation result according to the built-in authentication algorithm according to the authentication code data, and responds to A.
- the internal authentication algorithm is solidified in the hardware device of the smart remote controller and cannot be read or written to prevent the algorithm from leaking out.
- Step 107 The smart remote controller sends the 'response A' to the television controller;
- Step 108 after receiving the 'response A', the television controller sends the 'response A' to the authentication server;
- Step 109 The authentication server receives the 'Response A', and verifies the 'Response A1' and 'Response A ', to carry out certification;
- Step 110 The authentication server sends the authentication result information; the normal authentication result is 'authentication success' or 'authentication failure'.
- step 111 After receiving the authentication result information, the television controller sends the information to the smart remote controller, so that the user can obtain the authentication result by using the smart remote controller.
- the electronic authentication system of the invention realizes the electronic authentication process by data interaction between the smart remote controller and the television controller, and the authentication algorithm is implemented in the smart remote controller, so there is no need to set a data transmission interface such as USB, and no need to plug in U Shield is more convenient.
- FIG. 4 is a flow chart showing the steps of the electronic authentication client processing method of the present invention.
- the electronic authentication client processing method includes the following steps:
- the television controller receives the authentication code data sent by the authentication server, and sends the data to the smart remote controller;
- the television controller may be an intelligent set top box or an intelligent controller of other television devices.
- the smart remote control and the television controller preferably communicate via a dedicated wireless transmission channel.
- the television controller is provided with a network connection function for connecting to an authentication server on the network; and can perform data transmission with the smart remote controller, receive authentication code data sent by the authentication server, and send the authentication code data to the smart remote controller.
- the authentication code data is data that is generated by the authentication server according to an agreement and is suitable for the built-in authentication algorithm of the television controller.
- the authentication server may generate a random number generated according to the authentication request to improve the security of the electronic authentication. Sex.
- the smart remote controller sends an authentication request to the television controller
- the television controller transmits the authentication request to an authentication server, and receives the authentication code data that is sent by the authentication server according to the authentication request.
- the user can send an authentication request through the smart remote controller in the present invention, which is very convenient.
- the authentication request can be issued through the smart remote controller.
- the smart remote controller receives the authentication code data sent by the television controller, performs operation on the authentication code data according to a built-in authentication algorithm, obtains an authentication code operation result, and sends the authentication to the television controller.
- Code operation result ;
- the calculation logic of the authentication algorithm built in the smart remote controller is not disclosed, and can be recorded by means of machine code.
- a programmable microprocessor may be used to solidify the algorithm in the smart remote control hardware, and after the algorithm code is programmed, the hardware reads the fuse bit to ensure the algorithm. It is not readable or writable.
- the television controller receives an authentication code operation result sent by the smart remote controller, and sends the authentication code operation result to an authentication server.
- the foregoing process is an electronic authentication client processing method performed on the user end, and the electronic authentication client processing method implements an electronic authentication process by performing data interaction between a smart remote controller and a television controller, such as a set top box, and the authentication algorithm is in the smart remote controller.
- a television controller such as a set top box
- the authentication algorithm is in the smart remote controller.
- the television controller sends the authentication code data sent by the authentication server to the smart remote controller, and the smart remote controller performs the operation on the authentication code data through a built-in unreadable authentication algorithm, and interacts with the data of the television controller to execute the authentication code.
- the result of the operation is sent to the authentication server, which ensures that the authentication algorithm is unreadable and ensures the security of the electronic authentication.
- the authentication server In the entire electronic authentication method, on the server side, the authentication server generates the authentication code data according to the authentication request, and sends the authentication code data to the television controller; and receives the authentication code operation result sent by the television controller, according to the The result of the authentication code operation determines whether the authentication is valid.
- the authentication server performs operation on the authentication code data according to a corresponding authentication algorithm, obtains a second authentication code operation result, receives an authentication code operation result sent by the television controller, and performs an operation result according to the authentication code.
- the second authentication code operation result determines whether the authentication is valid, and obtains the authentication result information. And transmitting the authentication result information to the television controller.
- the authentication server may be an electronic payment server or a server of other systems that requires authentication.
- the television controller may further receive the authentication server to send the authentication result information, and send the authentication result information to the smart remote controller.
- the authentication server determines the legality of the authentication
- the authentication result is sent, and the television controller sends the authentication result information to the smart remote controller, so that the user can obtain the authentication result by using the smart remote controller.
- the following steps may be further included: Receiving, by the television controller, a client private key sent by the authentication server, and sending the user private key to the smart remote controller;
- the smart remote controller receives and stores the client private key, encrypts data transmitted to the television controller according to the user private key, and decrypts data received from the television controller.
- the account name and password input by the user can be initially authenticated.
- the smart remote controller receives the input account name and password, and sends the user name and password to the authentication server through the television controller, and the authentication server performs preliminary authentication according to the user name and password.
- the authentication server sends a digital certificate containing the private key of the client, so that the user can encrypt and decrypt the data interacting with the authentication server according to the private key of the client.
- the authentication server encrypts the data sent to the client according to the public key corresponding to the private key; and decrypts the data received from the client.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Signal Processing (AREA)
- Computer Networks & Wireless Communication (AREA)
- Databases & Information Systems (AREA)
- Multimedia (AREA)
- General Engineering & Computer Science (AREA)
- Computing Systems (AREA)
- Computer Hardware Design (AREA)
- Human Computer Interaction (AREA)
- Computer Graphics (AREA)
- Selective Calling Equipment (AREA)
- Two-Way Televisions, Distribution Of Moving Picture Or The Like (AREA)
Abstract
Description
所述电视控制器用于接收认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器,接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器;
所述智能遥控器用于接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果。
所述电视控制器接收认证服务器发出的认证码数据,并发送至所述智能遥控器;
所述智能遥控器接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果;
所述电视控制器接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器。
所述认证服务器用于根据认证请求下发认证码数据;接收认证码运算结果,并根据所述认证码运算结果判断认证是否有效;所述电视控制器用于接收所述认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器;接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至所述认证服务器;所述智能遥控器用于接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果。
认证服务器根据认证请求生成认证码数据,向电视控制器下发认证码数据;
所述电视控制器接收所述认证服务器发出的认证码数据,并发送至智能遥控器;
所述智能遥控器接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果;
所述电视控制器接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至所述认证服务器;
所述认证服务器接收所述电视控制器发送的认证码运算结果,根据所述认证码运算结果判断认证是否有效。
图 1 是本发明电子认证客户端系统的结构示意图;
图 2 本发明电子认证客户端系统一个实施方式中采用的可编程微处理芯片的示意图;
图 3 是本发明的电子认证系统进行电子认证的一个实施方式的流程图;
图 4 是本发明的电子认证客户端处理方法的步骤流程图。
所述电视控制器 11 用于接收认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器 12 ;接收所述智能遥控器 12 发送的认证码运算结果,将所述认证码运算结果发送至认证服务器;
所述智能遥控器 12 用于接收所述电视控制器 11 发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器 11 发送所述认证码运算结果。
所述电视控制器接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;
所述智能遥控器接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
Claims (15)
- 一种电子认证客户端系统,其特征在于,包括智能遥控器和电视控制器;所述电视控制器用于接收认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器;接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器;所述智能遥控器用于接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果。
- 如权利要求 1 所述的电子认证客户端系统,其特征在于:所述智能遥控器进一步用于向所述电视控制器发送认证请求;所述电视控制器进一步用于将所述认证请求发送至认证服务器,并接收所述认证服务器根据所述认证请求发出的所述认证码数据。
- 如权利要求 1 所述的电子认证客户端系统,其特征在于:所述电视控制器进一步用于接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;所述智能遥控器进一步用于接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
- 如权利要求 1 所述的电子认证客户端系统,其特征在于:所述智能遥控器包括可编程微处理器,所述认证算法以不可读写的方式固化在所述可编程微处理器中。
- 如权利要求 1 所述的电子认证客户端系统,其特征在于:所述智能遥控器和所述电视控制器通过无线传输信道进行通信。
- 一种电子认证系统,其特征在于,包括:认证服务器、智能遥控器和电视控制器;所述认证服务器用于根据认证请求下发认证码数据;接收认证码运算结果,并根据所述认证码运算结果判断认证是否有效;所述电视控制器用于接收所述认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器;接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至所述认证服务器;所述智能遥控器用于接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果。
- 如权利要求 6 所述的电子认证系统,其特征在于:所述电视控制器进一步用于接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;所述智能遥控器进一步用于接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
- 一种电子认证客户端处理方法,其特征在于,包括步骤:电视控制器接收认证服务器发出的认证码数据,并发送至智能遥控器;所述智能遥控器接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果;所述电视控制器接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器。
- 如权利要求 8 所述的电子认证客户端处理方法,其特征在于,进一步包括以下步骤:所述智能遥控器向所述电视控制器发送认证请求;所述电视控制器将所述认证请求发送至认证服务器,并接收所述认证服务器根据所述认证请求发出的所述认证码数据。
- 如权利要求 8 所述的电子认证客户端处理方法,其特征在于,所述认证算法以不可读写的方式固化在所述智能遥控器的可编程微处理器中。
- 如权利要求 8 所述的电子认证客户端处理方法,其特征在于,进一步包括以下步骤:所述电视控制器接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;所述智能遥控器接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
- 一种电子认证方法,其特征在于,包括步骤:认证服务器根据认证请求生成认证码数据,向电视控制器下发认证码数据;所述电视控制器接收所述认证服务器发出的认证码数据,并发送至智能遥控器;所述智能遥控器接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果;所述电视控制器接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至所述认证服务器;所述认证服务器接收所述电视控制器发送的认证码运算结果,根据所述认证码运算结果判断认证是否有效。
- 如权利要求 12 所述的电子认证方法,其特征在于,进一步包括以下步骤:所述智能遥控器向所述电视控制器发送认证请求;所述电视控制器将所述认证请求发送至认证服务器,并接收所述认证服务器根据所述认证请求发出的所述认证码数据。
- 如权利要求 12 所述的电子认证方法,其特征在于,所述认证算法以不可读写的方式固化在所述智能遥控器的可编程微处理器中。
- 如权利要求 12 所述的电子认证方法,其特征在于,进一步包括以下步骤:所述电视控制器接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;所述智能遥控器接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
Priority Applications (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
KR1020147034444A KR20150011377A (ko) | 2012-06-05 | 2013-06-05 | 전자 인증 클라이언트 시스템 및 프로세싱 방법, 그리고 전자 인증 시스템 및 방법 |
US14/484,644 US9998440B2 (en) | 2012-06-05 | 2014-09-12 | System and processing method for electronic authentication client, and system and method for electronic authentication |
Applications Claiming Priority (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201210182960.5 | 2012-06-05 | ||
CN201210182960.5A CN103457922B (zh) | 2012-06-05 | 2012-06-05 | 电子认证客户端系统及处理方法、电子认证系统及方法 |
Related Child Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
US14/484,644 Continuation US9998440B2 (en) | 2012-06-05 | 2014-09-12 | System and processing method for electronic authentication client, and system and method for electronic authentication |
Publications (1)
Publication Number | Publication Date |
---|---|
WO2013182058A1 true WO2013182058A1 (zh) | 2013-12-12 |
Family
ID=49711383
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
PCT/CN2013/076818 WO2013182058A1 (zh) | 2012-06-05 | 2013-06-05 | 电子认证客户端系统及处理方法、电子认证系统及方法 |
Country Status (4)
Country | Link |
---|---|
US (1) | US9998440B2 (zh) |
KR (1) | KR20150011377A (zh) |
CN (1) | CN103457922B (zh) |
WO (1) | WO2013182058A1 (zh) |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN105530250A (zh) * | 2015-12-09 | 2016-04-27 | 美的集团股份有限公司 | 家用电器的鉴权激活方法和系统 |
US9998440B2 (en) | 2012-06-05 | 2018-06-12 | Tencent Technology (Shenzhen) Company Limited | System and processing method for electronic authentication client, and system and method for electronic authentication |
Families Citing this family (12)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
KR101572935B1 (ko) * | 2014-10-02 | 2015-12-11 | 현대자동차주식회사 | 메시지 인증 코드 혼합을 통한 can 패킷 인증 방법 및 그 장치 |
CN104361739A (zh) * | 2014-10-22 | 2015-02-18 | 高亿实业有限公司 | 红外遥控信号的转发方法及遥控信号转发器 |
CN105657468B (zh) * | 2015-12-30 | 2019-03-12 | 深圳数字电视国家工程实验室股份有限公司 | 一种fido遥控器及电视支付系统及方法 |
CN105554013A (zh) * | 2015-12-30 | 2016-05-04 | 深圳数字电视国家工程实验室股份有限公司 | 基于usb设备的分离式身份认证装置及系统及方法 |
CN105974802B (zh) * | 2016-04-27 | 2017-09-29 | 腾讯科技(深圳)有限公司 | 一种控制智能设备的方法、装置和系统 |
CN106210913B (zh) * | 2016-08-09 | 2019-07-23 | 北海爱飞数码科技有限公司 | 具有安全支付功能的电视机系统 |
CN106131082B (zh) * | 2016-08-30 | 2019-02-15 | 姚锋 | 一种利用智能硬件实现的一次认证方法及其系统 |
US20190156923A1 (en) | 2017-11-17 | 2019-05-23 | LunaPBC | Personal, omic, and phenotype data community aggregation platform |
CN108769012B (zh) * | 2018-05-29 | 2020-08-04 | 山东恒云信息科技有限公司 | 一种对银行电子信贷档案进行独立认证的方法 |
EP3903316A1 (en) | 2018-12-28 | 2021-11-03 | LunaPBC | Community data aggregation, completion, correction, and use |
CN110798322B (zh) * | 2019-11-15 | 2022-10-28 | 神州融安科技(北京)有限公司 | 一种操作请求方法、装置、存储介质及处理器 |
CN111047849B (zh) * | 2019-12-30 | 2021-05-18 | 江苏大周基业智能科技有限公司 | 一种联网遥控密码模块及安全遥控系统 |
Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101137040A (zh) * | 2006-07-31 | 2008-03-05 | 北京华旗资讯数码科技有限公司 | 基于有线数字电视网络获取网络信息的系统和方法 |
CN101242482A (zh) * | 2007-02-08 | 2008-08-13 | 黄金富 | 用于电视购物和投注的带有手机的遥控器的电视机顶盒 |
US7650361B1 (en) * | 2004-07-21 | 2010-01-19 | Comcast Ip Holdings I, Llc | Media content modification and access system for interactive access of media content across disparate network platforms |
CN101742056A (zh) * | 2008-11-18 | 2010-06-16 | 中兴通讯股份有限公司 | 在机顶盒上实现理财业务的方法及支持理财业务的机顶盒 |
Family Cites Families (34)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US5481611A (en) * | 1993-12-09 | 1996-01-02 | Gte Laboratories Incorporated | Method and apparatus for entity authentication |
US6772331B1 (en) * | 1999-05-21 | 2004-08-03 | International Business Machines Corporation | Method and apparatus for exclusively pairing wireless devices |
US6289455B1 (en) * | 1999-09-02 | 2001-09-11 | Crypotography Research, Inc. | Method and apparatus for preventing piracy of digital content |
US6938019B1 (en) * | 2000-08-29 | 2005-08-30 | Uzo Chijioke Chukwuemeka | Method and apparatus for making secure electronic payments |
US7281261B2 (en) * | 2001-06-29 | 2007-10-09 | Microsoft Corporation | Remotely accessing and programming a set top box |
CN1708988A (zh) * | 2002-11-25 | 2005-12-14 | 科纳克斯公司 | 用于数字tv的基于gsm sms的验证系统 |
US8843604B2 (en) * | 2003-06-19 | 2014-09-23 | International Business Machines Corporation | Method for interlocking a server to a server system and a computer system utilizing the same |
GB0403218D0 (en) * | 2004-02-13 | 2004-03-17 | Royal Holloway University Of L | Controlling transmission of broadcast content |
US7578436B1 (en) * | 2004-11-08 | 2009-08-25 | Pisafe, Inc. | Method and apparatus for providing secure document distribution |
US7021534B1 (en) * | 2004-11-08 | 2006-04-04 | Han Kiliccote | Method and apparatus for providing secure document distribution |
JP4496061B2 (ja) * | 2004-11-11 | 2010-07-07 | パナソニック株式会社 | 機密情報処理装置 |
US7383438B2 (en) * | 2004-12-18 | 2008-06-03 | Comcast Cable Holdings, Llc | System and method for secure conditional access download and reconfiguration |
JP3992050B2 (ja) * | 2005-05-10 | 2007-10-17 | コニカミノルタビジネステクノロジーズ株式会社 | 画像処理装置およびその制御方法ならびにコンピュータプログラム |
US7996869B2 (en) * | 2006-08-18 | 2011-08-09 | Sony Corporation | Automatically reconfigurable multimedia system with interchangeable personality adapters |
EP1895770A1 (en) * | 2006-09-04 | 2008-03-05 | Nokia Siemens Networks Gmbh & Co. Kg | Personalizing any TV gateway |
US8032753B2 (en) * | 2006-11-23 | 2011-10-04 | Electronics And Telecommunications Research Institute | Server and system for transmitting certificate stored in fixed terminal to mobile terminal and method using the same |
US20080238709A1 (en) * | 2007-03-28 | 2008-10-02 | Faramarz Vaziri | One-way communication apparatus with dynamic key generation |
US8510798B2 (en) * | 2007-04-02 | 2013-08-13 | Sony Corporation | Authentication in an audio/visual system having multiple signaling paths |
US8234718B2 (en) * | 2007-07-31 | 2012-07-31 | Samsung Electronics Co., Ltd. | Method and apparatus for forbidding use of digital content against copy control information |
US8738907B2 (en) * | 2007-08-02 | 2014-05-27 | Motorola Solutiions, Inc. | Wireless device authentication and security key management |
US8589437B1 (en) * | 2007-10-15 | 2013-11-19 | 23Andme, Inc. | De-identification and sharing of genetic data |
US8347374B2 (en) * | 2007-11-15 | 2013-01-01 | Red Hat, Inc. | Adding client authentication to networked communications |
US8775824B2 (en) * | 2008-01-02 | 2014-07-08 | Arm Limited | Protecting the security of secure data sent from a central processor for processing by a further processing device |
WO2009092105A2 (en) * | 2008-01-18 | 2009-07-23 | Tekelec | Systems, methods and computer readable media for application-level authentication of messages in a telecommunications network |
US8565431B2 (en) * | 2008-03-17 | 2013-10-22 | Sony Corporation | System and method for scrambling wireless signals using a secure time value |
CN101541002A (zh) * | 2008-03-21 | 2009-09-23 | 展讯通信(上海)有限公司 | 一种基于Web服务器的移动终端的软件许可证下载方法 |
CN101489054B (zh) * | 2008-12-31 | 2011-06-15 | 深圳创维-Rgb电子有限公司 | 一种电视机歌唱娱乐系统的加密方法 |
US8239890B2 (en) * | 2009-11-03 | 2012-08-07 | Echostar Technologies Llc | Systems and methods for authorizing access to content for a television receiver |
US8713597B2 (en) * | 2010-01-05 | 2014-04-29 | Alcatel Lucent | Authenticating and off-loading IPTV operations from mobile devices to fixed rendering viewing devices |
CN101902325A (zh) * | 2010-07-02 | 2010-12-01 | 恒宝股份有限公司 | 一种基于无线通信技术的Key设备 |
US9191375B2 (en) * | 2011-01-13 | 2015-11-17 | Infosys Limited | System and method for accessing integrated applications in a single sign-on enabled enterprise solution |
CN202210323U (zh) * | 2011-04-28 | 2012-05-02 | 李波 | 电视银行智能终端系统 |
JP5025813B1 (ja) * | 2011-07-01 | 2012-09-12 | 株式会社東芝 | 情報処理装置、情報処理方法及びプログラム |
CN103457922B (zh) | 2012-06-05 | 2017-01-25 | 腾讯科技(深圳)有限公司 | 电子认证客户端系统及处理方法、电子认证系统及方法 |
-
2012
- 2012-06-05 CN CN201210182960.5A patent/CN103457922B/zh active Active
-
2013
- 2013-06-05 WO PCT/CN2013/076818 patent/WO2013182058A1/zh active Application Filing
- 2013-06-05 KR KR1020147034444A patent/KR20150011377A/ko not_active Application Discontinuation
-
2014
- 2014-09-12 US US14/484,644 patent/US9998440B2/en active Active
Patent Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US7650361B1 (en) * | 2004-07-21 | 2010-01-19 | Comcast Ip Holdings I, Llc | Media content modification and access system for interactive access of media content across disparate network platforms |
CN101137040A (zh) * | 2006-07-31 | 2008-03-05 | 北京华旗资讯数码科技有限公司 | 基于有线数字电视网络获取网络信息的系统和方法 |
CN101242482A (zh) * | 2007-02-08 | 2008-08-13 | 黄金富 | 用于电视购物和投注的带有手机的遥控器的电视机顶盒 |
CN101742056A (zh) * | 2008-11-18 | 2010-06-16 | 中兴通讯股份有限公司 | 在机顶盒上实现理财业务的方法及支持理财业务的机顶盒 |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US9998440B2 (en) | 2012-06-05 | 2018-06-12 | Tencent Technology (Shenzhen) Company Limited | System and processing method for electronic authentication client, and system and method for electronic authentication |
CN105530250A (zh) * | 2015-12-09 | 2016-04-27 | 美的集团股份有限公司 | 家用电器的鉴权激活方法和系统 |
Also Published As
Publication number | Publication date |
---|---|
CN103457922B (zh) | 2017-01-25 |
KR20150011377A (ko) | 2015-01-30 |
US20150074760A1 (en) | 2015-03-12 |
CN103457922A (zh) | 2013-12-18 |
US9998440B2 (en) | 2018-06-12 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
WO2013182058A1 (zh) | 电子认证客户端系统及处理方法、电子认证系统及方法 | |
WO2014139403A1 (zh) | 一种终端主密钥tmk安全下载方法及系统 | |
CN112260826B (zh) | 用于安全凭证供应的方法 | |
KR101657613B1 (ko) | 보안 저장 장치에 저장된 디지털 컨텐츠의 백업 | |
WO2014139342A1 (zh) | 密钥下载方法、管理方法、下载管理方法及装置和系统 | |
US20240179005A1 (en) | Advanced crypto token authentication | |
WO2019001061A1 (zh) | 支付验证的方法、系统及移动设备和安全认证设备 | |
JP2009516243A (ja) | Srmのデジタル著作権管理方法及び装置 | |
CN102801730A (zh) | 一种用于通讯及便携设备的信息防护方法及装置 | |
KR101430861B1 (ko) | 안전성을 지닌 데이터 공유시스템 및 수행방법 | |
KR101659847B1 (ko) | 모바일 단말을 이용한 2채널 사용자 인증 방법 | |
KR20070059891A (ko) | 어플리케이션 인증 보안 시스템 및 그 인증 보안 방법 | |
KR101295038B1 (ko) | 보안 리더기를 이용한 공인 인증서 사용방법 | |
KR101771484B1 (ko) | 보안 토큰을 효율적으로 사용하기 위한 서명 키 생성방법 | |
KR101650107B1 (ko) | 지문 인증장치를 이용한 홈페이지 로그인 또는 금융 거래 시스템 및 이를 이용한 홈페이지 로그인 및 금융 거래 방법 | |
KR101711024B1 (ko) | 부정조작방지 장치 접근 방법 및 그 방법을 채용한 단말 장치 | |
KR101741918B1 (ko) | 웨어러블 장치를 이용한 인증 시스템 및 방법 | |
KR101808315B1 (ko) | 모바일 장치 및 사용자 단말기 사이의 인증서 로밍 방법 및 시스템 | |
KR101128225B1 (ko) | 전자음반 장치 인증 시스템 | |
KR101272358B1 (ko) | 모바일단말기 탈부착용 보안 및 접근제어 장치 및 이를 이용한 금융거래방법 | |
KR100811130B1 (ko) | 전자음반 장치 구매 고객정보 등록방법 및 시스템과 이를위한 프로그램 기록매체 | |
KR101536594B1 (ko) | 보안성 향상을 위한 서비스 사업자 서버를 통한 공인 인증서를 안전하게 사용하는 방법 및 공인 인증서 사용 시스템 | |
KR100480377B1 (ko) | 스마트 카드를 이용한 네트워크 전용장치의 환경설정 및인증방법 | |
CN103152177A (zh) | 一种利用手机自动完成认证的方法 | |
KR100830519B1 (ko) | 전자음반 장치 인증방법 및 이를 위한 프로그램 기록매체 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 13801234 Country of ref document: EP Kind code of ref document: A1 |
|
NENP | Non-entry into the national phase |
Ref country code: DE |
|
ENP | Entry into the national phase |
Ref document number: 20147034444 Country of ref document: KR Kind code of ref document: A |
|
32PN | Ep: public notification in the ep bulletin as address of the adressee cannot be established |
Free format text: NOTING OF LOSS OF RIGHTS PURSUANT TO RULE 112(1) EPC (EPO FORM 1205A DATED 06/05/2015) |
|
122 | Ep: pct application non-entry in european phase |
Ref document number: 13801234 Country of ref document: EP Kind code of ref document: A1 |