WO2013182058A1 - 电子认证客户端系统及处理方法、电子认证系统及方法 - Google Patents

电子认证客户端系统及处理方法、电子认证系统及方法 Download PDF

Info

Publication number
WO2013182058A1
WO2013182058A1 PCT/CN2013/076818 CN2013076818W WO2013182058A1 WO 2013182058 A1 WO2013182058 A1 WO 2013182058A1 CN 2013076818 W CN2013076818 W CN 2013076818W WO 2013182058 A1 WO2013182058 A1 WO 2013182058A1
Authority
WO
WIPO (PCT)
Prior art keywords
authentication
authentication code
controller
remote controller
smart remote
Prior art date
Application number
PCT/CN2013/076818
Other languages
English (en)
French (fr)
Inventor
殷宇
杨达志
张文
马斌
Original Assignee
腾讯科技(深圳)有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 腾讯科技(深圳)有限公司 filed Critical 腾讯科技(深圳)有限公司
Priority to KR1020147034444A priority Critical patent/KR20150011377A/ko
Publication of WO2013182058A1 publication Critical patent/WO2013182058A1/zh
Priority to US14/484,644 priority patent/US9998440B2/en

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0853Network architectures or network communication protocols for network security for authentication of entities using an additional device, e.g. smartcard, SIM or a different communication terminal
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/321Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving a third party or a trusted authority
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04NPICTORIAL COMMUNICATION, e.g. TELEVISION
    • H04N21/00Selective content distribution, e.g. interactive television or video on demand [VOD]
    • H04N21/20Servers specifically adapted for the distribution of content, e.g. VOD servers; Operations thereof
    • H04N21/25Management operations performed by the server for facilitating the content distribution or administrating data related to end-users or client devices, e.g. end-user or client device authentication, learning user preferences for recommending movies
    • H04N21/258Client or end-user data management, e.g. managing client capabilities, user preferences or demographics, processing of multiple end-users preferences to derive collaborative data
    • H04N21/25808Management of client data
    • H04N21/25816Management of client data involving client authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04NPICTORIAL COMMUNICATION, e.g. TELEVISION
    • H04N21/00Selective content distribution, e.g. interactive television or video on demand [VOD]
    • H04N21/40Client devices specifically adapted for the reception of or interaction with content, e.g. set-top-box [STB]; Operations thereof
    • H04N21/41Structure of client; Structure of client peripherals
    • H04N21/422Input-only peripherals, i.e. input devices connected to specially adapted client devices, e.g. global positioning system [GPS]
    • H04N21/42204User interfaces specially adapted for controlling a client device through a remote control device; Remote control devices therefor
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication

Definitions

  • the present invention relates to the technical field of electronic authentication, and in particular to an electronic authentication client system, an electronic authentication client processing method, an electronic authentication system, and an electronic authentication method.
  • the authentication code is sent by the server, and then the client performs an operation on the authentication code according to the agreed authentication algorithm, obtains the authentication code operation result, and returns the authentication server, so that the authentication server can The result of the authentication code operation determines whether the authentication is valid.
  • the electronic authentication client uses the U shield to calculate the authentication code sent by the authentication server, and obtains the authentication code operation result.
  • U A pre-set authentication algorithm is stored on the shield. This algorithm is programmed in the U-Shield hardware chip and is not readable.
  • U shield USB can only be accessed through the program The interface interacts with the data to implement the operation of the authentication code.
  • U Shield used in online banking payment is a commonly used electronic authentication method, which can improve the security of online transactions.
  • U The shield and the processing device that installed the access program, such as a computer form the client for electronic authentication.
  • the client also passes U
  • the shield computes the authentication code sent by the authentication server, and obtains the authentication code operation result. It needs to be inserted and removed on the smart TV or smart set-top box of the client every time. Shield, and also requires that the smart TV or smart set-top box must be equipped with a USB interface that plugs in the U shield, which is inconvenient.
  • U is used when electronic authentication is performed by a television device in the background art.
  • the problem that the shield performs client data processing is inconvenient, and the invention provides a U shield without plugging and unplugging, and no USB An electronic authentication client system that interfaces client data, and an electronic authentication client processing method.
  • An electronic authentication client system including a smart remote controller and a television controller;
  • the television controller is configured to receive authentication code data sent by the authentication server, and send the authentication code data to the smart remote controller, and receive an authentication code operation result sent by the smart remote controller, and execute the authentication code operation result.
  • the smart remote controller is configured to receive authentication code data sent by the television controller, perform operation on the authentication code data according to a built-in authentication algorithm, obtain an authentication code operation result, and send the authentication code to the television controller. The result of the operation.
  • An electronic authentication client processing method includes the following steps: The television controller receives the authentication code data sent by the authentication server, and sends the data to the smart remote controller; The smart remote controller receives the authentication code data sent by the television controller, performs operation on the authentication code data according to a built-in authentication algorithm, obtains an authentication code operation result, and sends the authentication code operation to the television controller. result; The television controller receives an authentication code operation result sent by the smart remote controller, and sends the authentication code operation result to an authentication server.
  • the electronic authentication client system of the present invention and the electronic authentication client processing method realize the electronic authentication process by data interaction between the smart remote controller and the television controller, such as a set top box, and the authentication algorithm is implemented in the smart remote controller, so Need to set up USB Data transfer interface, no need to plug in U Shield is more convenient.
  • the television controller sends the authentication code data sent by the authentication server to the smart remote controller, and the smart remote controller performs the operation on the authentication code data through a built-in unreadable authentication algorithm, and interacts with the data of the television controller to execute the authentication code.
  • the result of the operation is sent to the authentication server, which ensures that the authentication algorithm is unreadable and ensures the security of the electronic authentication.
  • the U is used when electronic authentication is performed by a television device in the background art.
  • the invention is inconvenient for the client to perform data processing on the client.
  • the invention also provides an electronic authentication system that does not need to plug and unplug the U shield, and does not need a USB interface to transmit client data, and an electronic authentication method.
  • An electronic authentication system including an authentication server, a smart remote controller, and a television controller;
  • the authentication server is configured to send the authentication code data according to the authentication request, receive the authentication code operation result, and determine whether the authentication is valid according to the authentication code operation result;
  • the television controller is configured to receive the authentication code data sent by the authentication server. And sending the authentication code data to the smart remote controller; receiving an authentication code operation result sent by the smart remote controller, and transmitting the authentication code operation result to the authentication server;
  • the smart remote controller is configured to receive The authentication code data sent by the television controller calculates the authentication code data according to a built-in authentication algorithm, obtains an authentication code operation result, and transmits the authentication code operation result to the television controller.
  • An electronic authentication method comprising the steps of: The authentication server generates the authentication code data according to the authentication request, and sends the authentication code data to the television controller;
  • the television controller receives the authentication code data sent by the authentication server, and sends the data to the smart remote controller;
  • the smart remote controller receives the authentication code data sent by the television controller, performs operation on the authentication code data according to a built-in authentication algorithm, obtains an authentication code operation result, and sends the authentication code operation to the television controller. result;
  • the television controller receives an authentication code operation result sent by the smart remote controller, and sends the authentication code operation result to the authentication server;
  • the authentication server receives an authentication code operation result sent by the television controller, and determines whether the authentication is valid according to the authentication code operation result.
  • the electronic authentication system and the electronic authentication method of the present invention realize electronic authentication process by data interaction between a smart remote controller and a television controller, such as a set top box, and the authentication algorithm is implemented in a smart remote controller, so there is no need to set data such as USB.
  • the transmission interface does not need to be plugged into the U shield, which is convenient.
  • the television controller sends the authentication code data sent by the authentication server to the smart remote controller, and the smart remote controller performs the operation on the authentication code data through a built-in unreadable authentication algorithm, and interacts with the data of the television controller to execute the authentication code.
  • the operation result is sent to the authentication server, and the authentication server determines whether the authentication is valid by the result of the authentication code operation. Ensuring that the authentication algorithm is unreadable, ensures the security of electronic authentication.
  • FIG. 1 is a schematic structural diagram of an electronic authentication client system of the present invention
  • 2 is a schematic diagram of a programmable micro-processing chip used in an embodiment of the electronic authentication client system of the present invention
  • 3 is a flow chart of one embodiment of electronic authentication of the electronic authentication system of the present invention
  • 4 is a flow chart showing the steps of the electronic authentication client processing method of the present invention.
  • FIG. 1 is a schematic structural diagram of an electronic authentication client system according to the present invention.
  • the electronic authentication client system includes: a television controller 11 and a smart remote controller 12;
  • the television controller 11 is configured to receive the authentication code data sent by the authentication server, and send the authentication code data to the smart remote controller 12; receive the authentication code operation result sent by the smart remote controller 12, and the The authentication code operation result is sent to the authentication server;
  • the smart remote controller 12 is configured to receive authentication code data sent by the television controller 11, perform operation on the authentication code data according to a built-in authentication algorithm, obtain an authentication code operation result, and send the result to the television controller 11 The authentication code operation result.
  • the television controller 11 can be an intelligent set top box or an intelligent controller of other television devices.
  • the television controller 11 The network connection function is provided for connecting to the authentication server on the network; and the data transmission is performed with the smart remote controller 12, and the authentication code data sent by the authentication server is received and sent to the smart remote controller. Receiving the authentication code operation result sent by the smart remote controller 12 and transmitting it to the authentication server.
  • the authentication code data is generated by the authentication server according to an agreement and is suitable for the smart remote controller.
  • the data that is calculated by the built-in authentication algorithm may be, for example, a random number generated by the authentication server according to the authentication request, thereby improving the security of the electronic authentication.
  • the smart remote control 12 A dedicated authentication algorithm is built in, and the calculation logic of the authentication algorithm is not disclosed, and can be recorded by means of machine code.
  • a programmable microprocessor may be employed to cure the algorithm to the smart remote controller.
  • the hardware reads the fuse bit to ensure that the algorithm is not readable and writable.
  • a dedicated programmable micro-processing chip can be built into the smart remote controller 12 to record the authentication algorithm. Take AT90USBKey
  • a programmable micro-processing chip integrates SPI communication and 16k Flash, 4k RAM, and its circuit design is shown in Figure 2.
  • an external crystal oscillator is required to provide the clock pulse required for communication.
  • a 48M crystal oscillator is used here.
  • only a few simple electrolytic capacitors are needed to ensure the stability of the circuit.
  • This chip can burn the compiled algorithm into the chip through the SPI interface, and at the same time, the chip flash The fuse bit is blown to ensure that the chip is not readable and writable after leaving the factory, and its communication can only access the SPI through the program.
  • the interface communicates with the authentication code algorithm, and the authentication code operation result is obtained. Because under the existing chip packaging technology, it is necessary to break the chip package and directly read the flash. The chip still can't do it, thus ensuring that the authentication algorithm is invisible to the user and ensuring the security of the entire authentication client system.
  • the present invention is not limited to the type of the programmable microprocessor, and those skilled in the art can implement an appropriate programmable microprocessor according to the present invention.
  • the electronic authentication client system of the invention of the invention realizes the electronic authentication process by data interaction between the smart remote controller and the television controller, such as a set top box, and the authentication algorithm is implemented in the smart remote controller, so there is no need to set the USB Data transfer interface, no need to plug in U Shield is more convenient.
  • the television controller sends the authentication code data sent by the authentication server to the smart remote controller, and the smart remote controller performs the operation on the authentication code data through a built-in unreadable authentication algorithm, and interacts with the data of the television controller to execute the authentication code.
  • the result of the operation is sent to the authentication server, which ensures that the authentication algorithm is unreadable and ensures the security of the electronic authentication.
  • the electronic authentication client system of the present invention can form an electronic authentication system with an authentication server.
  • the authentication server is configured to send the authentication code data according to the authentication request, receive the authentication code operation result, and determine whether the authentication is valid according to the authentication code operation result.
  • the authentication server performs operation on the authentication code data according to a corresponding authentication algorithm, obtains a second authentication code operation result, receives an authentication code operation result sent by the television controller, and performs an operation result according to the authentication code and
  • the second authentication code operation result determines whether the authentication is valid.
  • the authentication server may be an electronic payment server or a server of other systems that requires authentication.
  • the authentication server may further return the authentication result information after the authentication is completed.
  • the television controller 11 The authentication server may be further configured to transmit the authentication result information, and send the authentication result information to the smart remote controller 12.
  • the smart remote controller 12 transmits the authentication request to the television controller 11; the television controller 11 Sending the authentication request to an authentication server, and receiving the authentication code data sent by the authentication server according to the authentication request.
  • the user can transmit the authentication request through the smart remote controller 12 in the present invention, which is very convenient.
  • the user passes the smart remote control 12
  • the electronic payment is confirmed, it can be triggered by the control keyboard of the smart remote controller 12 to issue an authentication request.
  • the television controller 11 Further configured to receive a client private key sent by the authentication server, and send the user private key to the smart remote controller 12; the smart remote controller 12 Further for receiving and storing the client private key, encrypting data sent to the television controller 11 according to the user private key, and from the television controller 11
  • the received data is decrypted to improve the security of information transmission during the authentication process.
  • the data of the private key of the client can be written into the memory chip of the smart remote controller 12.
  • the user's input account name and password can be initially authenticated.
  • the smart remote control 12 Receiving the entered account name and password and passing the television controller 11
  • the username and password are sent to the authentication server, and the authentication server performs preliminary authentication according to the username and password.
  • the authentication server sends a digital certificate containing the private key of the client, so that the user can encrypt and decrypt the data interacting with the authentication server according to the private key of the client.
  • the authentication server encrypts the data sent to the client according to the public key corresponding to the private key; and decrypts the data received from the client.
  • FIG. 3 is a flow chart of an embodiment of electronic authentication of the electronic authentication system of the present invention.
  • step 101 The smart remote controller sends an authentication request according to a user operation, wherein the smart remote controller and the television controller transmit data through a dedicated wireless communication channel, and the data sent by the smart remote controller is
  • the private key of the client is encrypted, and the received data is decrypted by the private key of the client to ensure the confidentiality and security of the data transmission.
  • step 102 After receiving the authentication request, the television controller sends the authentication request to the authentication server.
  • the 128-bit TSL may be adopted between the television controller and the authentication server. Transmission encryption to ensure the security of communication.
  • the authentication server sends the authentication code data to the television controller, where the authentication code data is a random number generated by the authentication server according to the authentication request. After receiving the authentication request sent by the television controller, the authentication server automatically generates the random number according to the agreement and delivers the random number to the television controller.
  • the authentication server decrypts the data received from the television controller by using a corresponding public key, and the sent data is encrypted by using the public key.
  • Step 104 The authentication server calculates an authentication code operation result 'Response A1' according to the authentication code data and an internal authentication algorithm. ;
  • Step 105 After receiving the authentication code data, the television controller sends the data to the smart remote controller.
  • Step 106 The smart remote controller calculates an authentication code operation result according to the built-in authentication algorithm according to the authentication code data, and responds to A.
  • the internal authentication algorithm is solidified in the hardware device of the smart remote controller and cannot be read or written to prevent the algorithm from leaking out.
  • Step 107 The smart remote controller sends the 'response A' to the television controller;
  • Step 108 after receiving the 'response A', the television controller sends the 'response A' to the authentication server;
  • Step 109 The authentication server receives the 'Response A', and verifies the 'Response A1' and 'Response A ', to carry out certification;
  • Step 110 The authentication server sends the authentication result information; the normal authentication result is 'authentication success' or 'authentication failure'.
  • step 111 After receiving the authentication result information, the television controller sends the information to the smart remote controller, so that the user can obtain the authentication result by using the smart remote controller.
  • the electronic authentication system of the invention realizes the electronic authentication process by data interaction between the smart remote controller and the television controller, and the authentication algorithm is implemented in the smart remote controller, so there is no need to set a data transmission interface such as USB, and no need to plug in U Shield is more convenient.
  • FIG. 4 is a flow chart showing the steps of the electronic authentication client processing method of the present invention.
  • the electronic authentication client processing method includes the following steps:
  • the television controller receives the authentication code data sent by the authentication server, and sends the data to the smart remote controller;
  • the television controller may be an intelligent set top box or an intelligent controller of other television devices.
  • the smart remote control and the television controller preferably communicate via a dedicated wireless transmission channel.
  • the television controller is provided with a network connection function for connecting to an authentication server on the network; and can perform data transmission with the smart remote controller, receive authentication code data sent by the authentication server, and send the authentication code data to the smart remote controller.
  • the authentication code data is data that is generated by the authentication server according to an agreement and is suitable for the built-in authentication algorithm of the television controller.
  • the authentication server may generate a random number generated according to the authentication request to improve the security of the electronic authentication. Sex.
  • the smart remote controller sends an authentication request to the television controller
  • the television controller transmits the authentication request to an authentication server, and receives the authentication code data that is sent by the authentication server according to the authentication request.
  • the user can send an authentication request through the smart remote controller in the present invention, which is very convenient.
  • the authentication request can be issued through the smart remote controller.
  • the smart remote controller receives the authentication code data sent by the television controller, performs operation on the authentication code data according to a built-in authentication algorithm, obtains an authentication code operation result, and sends the authentication to the television controller.
  • Code operation result ;
  • the calculation logic of the authentication algorithm built in the smart remote controller is not disclosed, and can be recorded by means of machine code.
  • a programmable microprocessor may be used to solidify the algorithm in the smart remote control hardware, and after the algorithm code is programmed, the hardware reads the fuse bit to ensure the algorithm. It is not readable or writable.
  • the television controller receives an authentication code operation result sent by the smart remote controller, and sends the authentication code operation result to an authentication server.
  • the foregoing process is an electronic authentication client processing method performed on the user end, and the electronic authentication client processing method implements an electronic authentication process by performing data interaction between a smart remote controller and a television controller, such as a set top box, and the authentication algorithm is in the smart remote controller.
  • a television controller such as a set top box
  • the authentication algorithm is in the smart remote controller.
  • the television controller sends the authentication code data sent by the authentication server to the smart remote controller, and the smart remote controller performs the operation on the authentication code data through a built-in unreadable authentication algorithm, and interacts with the data of the television controller to execute the authentication code.
  • the result of the operation is sent to the authentication server, which ensures that the authentication algorithm is unreadable and ensures the security of the electronic authentication.
  • the authentication server In the entire electronic authentication method, on the server side, the authentication server generates the authentication code data according to the authentication request, and sends the authentication code data to the television controller; and receives the authentication code operation result sent by the television controller, according to the The result of the authentication code operation determines whether the authentication is valid.
  • the authentication server performs operation on the authentication code data according to a corresponding authentication algorithm, obtains a second authentication code operation result, receives an authentication code operation result sent by the television controller, and performs an operation result according to the authentication code.
  • the second authentication code operation result determines whether the authentication is valid, and obtains the authentication result information. And transmitting the authentication result information to the television controller.
  • the authentication server may be an electronic payment server or a server of other systems that requires authentication.
  • the television controller may further receive the authentication server to send the authentication result information, and send the authentication result information to the smart remote controller.
  • the authentication server determines the legality of the authentication
  • the authentication result is sent, and the television controller sends the authentication result information to the smart remote controller, so that the user can obtain the authentication result by using the smart remote controller.
  • the following steps may be further included: Receiving, by the television controller, a client private key sent by the authentication server, and sending the user private key to the smart remote controller;
  • the smart remote controller receives and stores the client private key, encrypts data transmitted to the television controller according to the user private key, and decrypts data received from the television controller.
  • the account name and password input by the user can be initially authenticated.
  • the smart remote controller receives the input account name and password, and sends the user name and password to the authentication server through the television controller, and the authentication server performs preliminary authentication according to the user name and password.
  • the authentication server sends a digital certificate containing the private key of the client, so that the user can encrypt and decrypt the data interacting with the authentication server according to the private key of the client.
  • the authentication server encrypts the data sent to the client according to the public key corresponding to the private key; and decrypts the data received from the client.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Signal Processing (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Databases & Information Systems (AREA)
  • Multimedia (AREA)
  • General Engineering & Computer Science (AREA)
  • Computing Systems (AREA)
  • Computer Hardware Design (AREA)
  • Human Computer Interaction (AREA)
  • Computer Graphics (AREA)
  • Selective Calling Equipment (AREA)
  • Two-Way Televisions, Distribution Of Moving Picture Or The Like (AREA)

Abstract

本发明提供一种电子认证客户端系统及其处理方法,以及电子认证系统及其认证方法。所述电子认证客户端系统包括智能遥控器和电视控制器;所述电视控制器用于接收认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器,接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器;所述智能遥控器用于接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果。通过智能遥控器和电视控制器进行数据交互实现电子认证过程,认证算法在智能遥控器中实现,不需要设置USB等数据传输接口,无需插接U盾,比较方便。

Description

电子认证客户端系统及处理方法、电子认证系统及方法
技术领域
本发明涉及电子认证的技术领域,特别是涉及一种电子认证客户端系统,一种电子认证客户端处理方法,一种电子认证系统,以及一种电子认证方法。
背景技术
随着网络技术的发展,出现了越来越多需要进行电子认证的应用场合,例如登录个人账户或者电子支付等等。因为需要进行电子认证的应用场合往往涉及个人隐私信息或者个人利益,电子认证的安全问题很重要,需要采取各种方式确保电子认证的准确性。而现有技术的电子认证方法中经常采用的方式为服务器发送认证码,然后客户端根据约定的认证算法对认证码进行运算,获得认证码运算结果并返回认证服务器,使认证服务器可以根据所述认证码运算结果判断认证是否有效。
目前的电子认证客户端多采用 U 盾来对认证服务器发送的认证码进行运算,获得认证码运算结果。通常, U 盾上保存有预先设置的认证算法,此算法烧写在 U 盾的硬件芯片中,并不可读取。只能通过程序访问 U 盾的 USB 接口,与其进行数据交互,实现对认证码的运算。如网银支付时使用的 U 盾就是一种常用的电子认证方式,可以提高网上交易的安全性。这种情况下, U 盾以及安装了访问程序的处理设备,如计算机,就组成了电子认证的客户端。
然而,随着智能电视和智能机顶盒的出现,可以通过电视浏览网页,因此也就产生了通过电视设备实现电子认证的可能,例如通过电视设备实现电子交易时,同样需要对交易的电子身份进行认证。
而在这种情况下的电子认证客户端数据处理并无较好的实现方法。如果客户端同样通过 U 盾对认证服务器发送的认证码进行运算,获得认证码运算结果,则需要每次在客户端的智能电视或者智能机顶盒上插拔 U 盾,并且还要求智能电视或者智能机顶盒必须要设置有插接 U 盾的 USB 接口,比较不方便。
发明内容
针对背景技术中通过电视设备进行电子认证时,使用 U 盾进行客户端数据处理比较不方便的问题,本发明提供一种无需插拔 U 盾,也无需 USB 接口传输客户端数据的电子认证客户端系统,以及一种电子认证客户端处理方法。
一种电子认证客户端系统,包括智能遥控器和电视控制器;
所述电视控制器用于接收认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器,接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器;
所述智能遥控器用于接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果。
一种电子认证客户端处理方法,包括步骤:
所述电视控制器接收认证服务器发出的认证码数据,并发送至所述智能遥控器;
所述智能遥控器接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果;
所述电视控制器接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器。
本发明的本发明的电子认证客户端系统,以及电子认证客户端处理方法通过智能遥控器和电视控制器,如机顶盒等进行数据交互实现电子认证过程,认证算法在智能遥控器中实现,所以不需要设置USB 等数据传输接口,无需插接 U 盾,比较方便。电视控制器将认证服务器发出的认证码数据发送到智能遥控器中,智能遥控器通过内置不可读的认证算法对认证码数据进行运算后,通过和电视控制器的数据交互,将所述认证码运算结果发送到认证服务器,确保了认证算法的不可读取,保证了电子认证的安全性。
针对背景技术中通过电视设备进行电子认证时,使用 U 盾进行客户端数据处理比较不方便的问题,本发明还提供一种无需插拔 U 盾,也无需 USB 接口传输客户端数据的电子认证系统,以及一种电子认证方法。
一种电子认证系统,包括认证服务器、智能遥控器和电视控制器;
所述认证服务器用于根据认证请求下发认证码数据;接收认证码运算结果,并根据所述认证码运算结果判断认证是否有效;所述电视控制器用于接收所述认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器;接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至所述认证服务器;所述智能遥控器用于接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果。
一种电子认证方法,包括步骤:
认证服务器根据认证请求生成认证码数据,向电视控制器下发认证码数据;
所述电视控制器接收所述认证服务器发出的认证码数据,并发送至智能遥控器;
所述智能遥控器接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果;
所述电视控制器接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至所述认证服务器;
所述认证服务器接收所述电视控制器发送的认证码运算结果,根据所述认证码运算结果判断认证是否有效。
本发明的本发明的电子认证系统,以及电子认证方法通过智能遥控器和电视控制器,如机顶盒等进行数据交互实现电子认证过程,认证算法在智能遥控器中实现,所以不需要设置USB等数据传输接口,无需插接U盾,比较方便。电视控制器将认证服务器发出的认证码数据发送到智能遥控器中,智能遥控器通过内置不可读的认证算法对认证码数据进行运算后,通过和电视控制器的数据交互,将所述认证码运算结果发送到认证服务器,认证服务器通过所述认证码运算结果判断认证是否有效。确保了认证算法的不可读取,保证了电子认证的安全性。
附图说明
图 1 是本发明电子认证客户端系统的结构示意图;
图 2 本发明电子认证客户端系统一个实施方式中采用的可编程微处理芯片的示意图;
图 3 是本发明的电子认证系统进行电子认证的一个实施方式的流程图;
图 4 是本发明的电子认证客户端处理方法的步骤流程图。
具体实施方式
请参阅图 1 ,图 1 是本发明电子认证客户端系统的结构示意图。
所述电子认证客户端系统包括:电视控制器 11 和智能遥控器 12;
所述电视控制器 11 用于接收认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器 12 ;接收所述智能遥控器 12 发送的认证码运算结果,将所述认证码运算结果发送至认证服务器;
所述智能遥控器 12 用于接收所述电视控制器 11 发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器 11 发送所述认证码运算结果。
其中,所述电视控制器 11 可以是智能机顶盒或者其他电视设备的智能控制器。所述电视控制器 11 具备网络连接功能,用于连接网上的认证服务器;并且可与所述智能遥控器 12 进行数据传输,接收认证服务器发出的认证码数据并发送至所述智能遥控器 12 ;接收所述智能遥控器 12 发送的认证码运算结果并发送至认证服务器。所述认证码数据是所述认证服务器根据约定生成的适合于所述智能遥控器 12 的内置认证算法进行运算的数据,例如可以是所述认证服务器根据认证请求生成的随机数,提高电子认证的安全性。
所述智能遥控器 12 内置有专用的认证算法,所述认证算法的计算逻辑是不公开的,并可用机器码的方式记录。
为了保证所述认证算法的保密性,可采用可编程微处理器,把算法固化在所述智能遥控器 12 硬件当中,并且在算法代码烧写完成后,切断硬件读取熔丝位,从而保证算法是不可读写的。
所述智能遥控器 12 中可内置专用的可编程微处理芯片,记录所述认证算法。以 AT90USBKey 可编程微处理芯片为例,其集成了 SPI 通信以及 16k Flash , 4k RAM ,其电路设计如图 2 所示。
除了芯片本身外,还需要一个外接晶振来提供通信需要的时钟脉冲, 这里选用 48M 的晶振。 除此之外只需要几个简单的电解电容来保证电路的稳定。
这款芯片可通过 SPI 接口把编译好的算法烧写进芯片,同时把芯片 Flash 熔丝位烧断,保证芯片在出厂后为不可读写状态,其通信只能通过程序访问 SPI 接口与其通信,用所述认证算法对认证码数据进行运算,得到认证码运算结果。因为在现有芯片封装技术下,要破除芯片封装直接读取 Flash 芯片还是不能做到的,从而保证了认证算法对用户的不可见,保证整个认证客户端系统的安全性。
本发明对于所述可编程微处理器的类型并无限定,可本领域技术人员可根据本发明实现选用适当的可编程微处理器。
本发明的本发明的电子认证客户端系统通过智能遥控器和电视控制器,如机顶盒等进行数据交互实现电子认证过程,认证算法在智能遥控器中实现,所以不需要设置 USB 等数据传输接口,无需插接 U 盾,比较方便。电视控制器将认证服务器发出的认证码数据发送到智能遥控器中,智能遥控器通过内置不可读的认证算法对认证码数据进行运算后,通过和电视控制器的数据交互,将所述认证码运算结果发送到认证服务器,确保了认证算法的不可读取,保证了电子认证的安全性。
本发明的电子认证客户端系统可与认证服务器组成电子认证系统。所述认证服务器用于根据认证请求下发认证码数据;接收认证码运算结果,并根据所述认证码运算结果判断认证是否有效。
例如,所述认证服务器根据相应的认证算法对所述认证码数据进行运算,获得第二认证码运算结果,接收所述电视控制器发送的认证码运算结果,并根据所述认证码运算结果和所述第二认证码运算结果,判断认证是否有效。
所述认证服务器可以是电子支付服务器,或者其他系统的需要进行认证的服务器。所述认证服务器在认证完成后,可进一步返回认证结果信息。所述电视控制器 11 可进一步用于接收认证服务器发送认证结果信息,并向所述智能遥控器 12 发送所述认证结果信息。
在一个实施方式中,所述智能遥控器 12 向所述电视控制器 11 发送所述认证请求;所述电视控制器 11 将所述认证请求发送至认证服务器,并接收所述认证服务器根据所述认证请求发出的所述认证码数据。
亦即,用户可通过本发明中的所述智能遥控器 12 发送认证请求,非常方便。例如用户通过所述智能遥控器 12 确认电子支付时,可通过所述智能遥控器 12 的控制键盘触发,发出认证请求。
在另一个实施方式中,所述电视控制器 11 进一步用于接收所述认证服务器发送的用户端私钥,并向所述智能遥控器 12 发送所述用户端私钥;所述智能遥控器 12 进一步用于接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器 11 的数据进行加密,以及对从所述电视控制器 11 接收的数据进行解密,提高认证过程中信息传输的安全性。其中,所述用户端私钥的数据可写入所述智能遥控器 12 的存储芯片中。
在用户第一次使用所述智能遥控器 12 时,可对用户输入的帐户名和密码进行初步认证。所述智能遥控器 12 接收输入的帐户名和密码,并通过所述电视控制器 11 向认证服务器发送所述用户名和密码,认证服务器根据所述用户名和密码进行初步认证。认证成功后,所述认证服务器会下发一个包含用户端私钥的数字证书,使用户端可以根据所述用户端私钥,对与所述认证服务器交互的数据进行加密和解密。而所述认证服务器则根据与所述私钥对应的公钥对发送至用户端的数据进行加密;并对从用户端接收的数据进行解密。以提高认证过程中数据交互的保密性和安全性。
请参阅图 3,图 3 是本发明的电子认证系统进行电子认证的一个实施方式的流程图。
步骤 101,智能遥控器根据用户的操作,发出认证请求;其中,所述智能遥控器与所述电视控制器之间通过专用的无线通信通道进行数据的传输,所述智能遥控器发出的数据都以用户端私钥进行加密,对接收到的数据都以用户端私钥进行解密,以保证数据传输的保密性、安全性。
步骤 102,电视控制器接收所述认证请求后,向认证服务器上送所述认证请求;其中,所述电视控制器与认证服务器之间,可采用 128 位 TSL 传输加密,以保证通信的安全。
步骤 103,认证服务器向电视控制器下发认证码数据;其中,所述认证码数据是所述认证服务器根据认证请求生成的随机数。所述认证服务器接收到所述电视控制器上送的认证请求后,根据约定自动生成所述随机数,并向电视控制器下发。所述认证服务器对接收自所述电视控制器的数据都采用对应的公钥进行解密,并且发出的数据都采用所述公钥进行加密。
步骤 104,认证服务器根据所述认证码数据,以及内部的认证算法,计算认证码运算结果'回应 A1' ;
步骤 105,电视控制器接收所述认证码数据后,发送至智能遥控器;
步骤 106,智能遥控器根据所述认证码数据,按照内置的认证算法计算认证码运算结果'回应 A ';其中,所述内部认证算法固化在所述智能遥控器的硬件设备中,不可读写,以防止算法外泄。
步骤 107,智能遥控器对电视控制器发送所述'回应 A ';
步骤 108,电视控制器接收所述'回应 A '后,向认证服务器上送所述'回应 A ';
步骤 109,认证服务器接收所述'回应 A ',校验所述'回应 A1' 和'回应 A ',进行认证;
步骤 110,认证服务器下发认证结果信息;通常的认证结果为'认证成功'或者'认证失败'。
步骤 111,电视控制器接收所述认证结果信息后,发送给智能遥控器,使用户可以通过所述智能遥控器获得认证结果。
本发明的电子认证系统通过智能遥控器和电视控制器进行数据交互实现电子认证过程,认证算法在智能遥控器中实现,所以不需要设置 USB 等数据传输接口,无需插接 U 盾,比较方便。
请参阅图 4,图 4 是本发明的电子认证客户端处理方法的步骤流程图。
所述电子认证客户端处理方法,包括以下步骤:
S201,电视控制器接收认证服务器发出的认证码数据,并发送至智能遥控器;
其中,所述电视控制器可以是智能机顶盒或者其他电视设备的智能控制器。所述智能遥控器和所述电视控制器优选通过专用的无线传输信道进行通信。
所述电视控制器具备网络连接功能,用于连接网上的认证服务器;并且可与所述智能遥控器进行数据传输,接收认证服务器发出的认证码数据并发送至所述智能遥控器。所述认证码数据是所述认证服务器根据约定生成的适合于所述电视控制器的内置认证算法进行运算的数据,例如可以是所述认证服务器根据认证请求生成的随机数,提高电子认证的安全性。
在本实施方式中,所述智能遥控器向所述电视控制器发送认证请求;
所述电视控制器将所述认证请求发送至认证服务器,并接收所述认证服务器根据所述认证请求发出的所述认证码数据。
亦即,用户可通过本发明中的所述智能遥控器发送认证请求,非常方便。例如用户通过所述智能遥控器确认电子支付时,可通过所述智能遥控器发出认证请求。
S202,所述智能遥控器接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果;
其中,所述智能遥控器内置的认证算法的计算逻辑是不公开的,并可用机器码的方式记录。为了保证所述认证算法的保密性,可采用可编程微处理器,把算法固化在所述智能遥控器硬件当中,并且在算法代码烧写完成后,切断硬件读取熔丝位,从而保证算法是不可读写的。
S203,所述电视控制器接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器。
上述流程为在用户端进行的电子认证客户端处理方法,所述电子认证客户端处理方法通过智能遥控器和电视控制器,如机顶盒等进行数据交互实现电子认证过程,认证算法在智能遥控器中实现,所以不需要设置 USB 等数据传输接口,无需插接 U 盾,比较方便。电视控制器将认证服务器发出的认证码数据发送到智能遥控器中,智能遥控器通过内置不可读的认证算法对认证码数据进行运算后,通过和电视控制器的数据交互,将所述认证码运算结果发送到认证服务器,确保了认证算法的不可读取,保证了电子认证的安全性。
而在整个电子认证方法中,在服务器端,所述认证服务器根据认证请求生成认证码数据,向电视控制器下发认证码数据;并且接收所述电视控制器发送的认证码运算结果,根据所述认证码运算结果判断认证是否有效。
例如,所述认证服务器根据相应的认证算法对所述认证码数据进行运算,获得第二认证码运算结果,接收所述电视控制器发送的认证码运算结果,并根据所述认证码运算结果和所述第二认证码运算结果,判断认证是否有效,获得认证结果信息。并向所述电视控制器发送所述认证结果信息。
所述认证服务器可以是电子支付服务器,或者其他系统的需要进行认证的服务器。
因此,在一个优选实施方式中,所述电视控制器可进一步接收认证服务器发送认证结果信息,并向所述智能遥控器发送所述认证结果信息。
所述认证服务器在判断认证的合法性之后,将会下发认证结果,所述电视控制器向所述智能遥控器发送所述认证结果信息,使用户可以通过所述智能遥控器获得认证结果。
在另一个优选实施方式中,可进一步包括以下步骤:
所述电视控制器接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;
所述智能遥控器接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
在用户第一次使用本发明的所述智能遥控器时,可对用户输入的帐户名和密码进行初步认证。所述智能遥控器接收输入的帐户名和密码,并通过所述电视控制器向认证服务器发送所述用户名和密码,认证服务器根据所述用户名和密码进行初步认证。认证成功后,所述认证服务器会下发一个包含用户端私钥的数字证书,使用户端可以根据所述用户端私钥,对与所述认证服务器交互的数据进行加密和解密。而所述认证服务器则根据与所述私钥对应的公钥对发送至用户端的数据进行加密;并对从用户端接收的数据进行解密。以提高认证过程中数据交互的保密性和安全性。
以上所述实施例仅表达了本发明的几种实施方式,其描述较为具体和详细,但并不能因此而理解为对本发明专利范围的限制。应当指出的是,对于本领域的普通技术人员来说,在不脱离本发明构思的前提下,还可以做出若干变形和改进,这些都属于本发明的保护范围。因此,本发明专利的保护范围应以所附权利要求为准。

Claims (15)

  1. 一种电子认证客户端系统,其特征在于,包括智能遥控器和电视控制器;
    所述电视控制器用于接收认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器;接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器;
    所述智能遥控器用于接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果。
  2. 如权利要求 1 所述的电子认证客户端系统,其特征在于:
    所述智能遥控器进一步用于向所述电视控制器发送认证请求;
    所述电视控制器进一步用于将所述认证请求发送至认证服务器,并接收所述认证服务器根据所述认证请求发出的所述认证码数据。
  3. 如权利要求 1 所述的电子认证客户端系统,其特征在于:
    所述电视控制器进一步用于接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;
    所述智能遥控器进一步用于接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
  4. 如权利要求 1 所述的电子认证客户端系统,其特征在于:所述智能遥控器包括可编程微处理器,所述认证算法以不可读写的方式固化在所述可编程微处理器中。
  5. 如权利要求 1 所述的电子认证客户端系统,其特征在于:所述智能遥控器和所述电视控制器通过无线传输信道进行通信。
  6. 一种电子认证系统,其特征在于,包括:认证服务器、智能遥控器和电视控制器;
    所述认证服务器用于根据认证请求下发认证码数据;接收认证码运算结果,并根据所述认证码运算结果判断认证是否有效;
    所述电视控制器用于接收所述认证服务器发出的认证码数据,并将所述认证码数据发送至所述智能遥控器;接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至所述认证服务器;
    所述智能遥控器用于接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果。
  7. 如权利要求 6 所述的电子认证系统,其特征在于:
    所述电视控制器进一步用于接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;
    所述智能遥控器进一步用于接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
  8. 一种电子认证客户端处理方法,其特征在于,包括步骤:
    电视控制器接收认证服务器发出的认证码数据,并发送至智能遥控器;
    所述智能遥控器接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果;
    所述电视控制器接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至认证服务器。
  9. 如权利要求 8 所述的电子认证客户端处理方法,其特征在于,进一步包括以下步骤:所述智能遥控器向所述电视控制器发送认证请求;
    所述电视控制器将所述认证请求发送至认证服务器,并接收所述认证服务器根据所述认证请求发出的所述认证码数据。
  10. 如权利要求 8 所述的电子认证客户端处理方法,其特征在于,所述认证算法以不可读写的方式固化在所述智能遥控器的可编程微处理器中。
  11. 如权利要求 8 所述的电子认证客户端处理方法,其特征在于,进一步包括以下步骤:
    所述电视控制器接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;
    所述智能遥控器接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
  12. 一种电子认证方法,其特征在于,包括步骤:
    认证服务器根据认证请求生成认证码数据,向电视控制器下发认证码数据;
    所述电视控制器接收所述认证服务器发出的认证码数据,并发送至智能遥控器;
    所述智能遥控器接收所述电视控制器发送的认证码数据,根据内置的认证算法对所述认证码数据进行运算,获得认证码运算结果,并对所述电视控制器发送所述认证码运算结果;
    所述电视控制器接收所述智能遥控器发送的认证码运算结果,将所述认证码运算结果发送至所述认证服务器;
    所述认证服务器接收所述电视控制器发送的认证码运算结果,根据所述认证码运算结果判断认证是否有效。
  13. 如权利要求 12 所述的电子认证方法,其特征在于,进一步包括以下步骤:所述智能遥控器向所述电视控制器发送认证请求;
    所述电视控制器将所述认证请求发送至认证服务器,并接收所述认证服务器根据所述认证请求发出的所述认证码数据。
  14. 如权利要求 12 所述的电子认证方法,其特征在于,所述认证算法以不可读写的方式固化在所述智能遥控器的可编程微处理器中。
  15. 如权利要求 12 所述的电子认证方法,其特征在于,进一步包括以下步骤:
    所述电视控制器接收所述认证服务器发送的用户端私钥,并向所述智能遥控器发送所述用户端私钥;
    所述智能遥控器接收并储存所述用户端私钥,根据所述用户端私钥对发送至所述电视控制器的数据进行加密,以及对从所述电视控制器接收的数据进行解密。
PCT/CN2013/076818 2012-06-05 2013-06-05 电子认证客户端系统及处理方法、电子认证系统及方法 WO2013182058A1 (zh)

Priority Applications (2)

Application Number Priority Date Filing Date Title
KR1020147034444A KR20150011377A (ko) 2012-06-05 2013-06-05 전자 인증 클라이언트 시스템 및 프로세싱 방법, 그리고 전자 인증 시스템 및 방법
US14/484,644 US9998440B2 (en) 2012-06-05 2014-09-12 System and processing method for electronic authentication client, and system and method for electronic authentication

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201210182960.5 2012-06-05
CN201210182960.5A CN103457922B (zh) 2012-06-05 2012-06-05 电子认证客户端系统及处理方法、电子认证系统及方法

Related Child Applications (1)

Application Number Title Priority Date Filing Date
US14/484,644 Continuation US9998440B2 (en) 2012-06-05 2014-09-12 System and processing method for electronic authentication client, and system and method for electronic authentication

Publications (1)

Publication Number Publication Date
WO2013182058A1 true WO2013182058A1 (zh) 2013-12-12

Family

ID=49711383

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2013/076818 WO2013182058A1 (zh) 2012-06-05 2013-06-05 电子认证客户端系统及处理方法、电子认证系统及方法

Country Status (4)

Country Link
US (1) US9998440B2 (zh)
KR (1) KR20150011377A (zh)
CN (1) CN103457922B (zh)
WO (1) WO2013182058A1 (zh)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105530250A (zh) * 2015-12-09 2016-04-27 美的集团股份有限公司 家用电器的鉴权激活方法和系统
US9998440B2 (en) 2012-06-05 2018-06-12 Tencent Technology (Shenzhen) Company Limited System and processing method for electronic authentication client, and system and method for electronic authentication

Families Citing this family (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR101572935B1 (ko) * 2014-10-02 2015-12-11 현대자동차주식회사 메시지 인증 코드 혼합을 통한 can 패킷 인증 방법 및 그 장치
CN104361739A (zh) * 2014-10-22 2015-02-18 高亿实业有限公司 红外遥控信号的转发方法及遥控信号转发器
CN105657468B (zh) * 2015-12-30 2019-03-12 深圳数字电视国家工程实验室股份有限公司 一种fido遥控器及电视支付系统及方法
CN105554013A (zh) * 2015-12-30 2016-05-04 深圳数字电视国家工程实验室股份有限公司 基于usb设备的分离式身份认证装置及系统及方法
CN105974802B (zh) * 2016-04-27 2017-09-29 腾讯科技(深圳)有限公司 一种控制智能设备的方法、装置和系统
CN106210913B (zh) * 2016-08-09 2019-07-23 北海爱飞数码科技有限公司 具有安全支付功能的电视机系统
CN106131082B (zh) * 2016-08-30 2019-02-15 姚锋 一种利用智能硬件实现的一次认证方法及其系统
US20190156923A1 (en) 2017-11-17 2019-05-23 LunaPBC Personal, omic, and phenotype data community aggregation platform
CN108769012B (zh) * 2018-05-29 2020-08-04 山东恒云信息科技有限公司 一种对银行电子信贷档案进行独立认证的方法
EP3903316A1 (en) 2018-12-28 2021-11-03 LunaPBC Community data aggregation, completion, correction, and use
CN110798322B (zh) * 2019-11-15 2022-10-28 神州融安科技(北京)有限公司 一种操作请求方法、装置、存储介质及处理器
CN111047849B (zh) * 2019-12-30 2021-05-18 江苏大周基业智能科技有限公司 一种联网遥控密码模块及安全遥控系统

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101137040A (zh) * 2006-07-31 2008-03-05 北京华旗资讯数码科技有限公司 基于有线数字电视网络获取网络信息的系统和方法
CN101242482A (zh) * 2007-02-08 2008-08-13 黄金富 用于电视购物和投注的带有手机的遥控器的电视机顶盒
US7650361B1 (en) * 2004-07-21 2010-01-19 Comcast Ip Holdings I, Llc Media content modification and access system for interactive access of media content across disparate network platforms
CN101742056A (zh) * 2008-11-18 2010-06-16 中兴通讯股份有限公司 在机顶盒上实现理财业务的方法及支持理财业务的机顶盒

Family Cites Families (34)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5481611A (en) * 1993-12-09 1996-01-02 Gte Laboratories Incorporated Method and apparatus for entity authentication
US6772331B1 (en) * 1999-05-21 2004-08-03 International Business Machines Corporation Method and apparatus for exclusively pairing wireless devices
US6289455B1 (en) * 1999-09-02 2001-09-11 Crypotography Research, Inc. Method and apparatus for preventing piracy of digital content
US6938019B1 (en) * 2000-08-29 2005-08-30 Uzo Chijioke Chukwuemeka Method and apparatus for making secure electronic payments
US7281261B2 (en) * 2001-06-29 2007-10-09 Microsoft Corporation Remotely accessing and programming a set top box
CN1708988A (zh) * 2002-11-25 2005-12-14 科纳克斯公司 用于数字tv的基于gsm sms的验证系统
US8843604B2 (en) * 2003-06-19 2014-09-23 International Business Machines Corporation Method for interlocking a server to a server system and a computer system utilizing the same
GB0403218D0 (en) * 2004-02-13 2004-03-17 Royal Holloway University Of L Controlling transmission of broadcast content
US7578436B1 (en) * 2004-11-08 2009-08-25 Pisafe, Inc. Method and apparatus for providing secure document distribution
US7021534B1 (en) * 2004-11-08 2006-04-04 Han Kiliccote Method and apparatus for providing secure document distribution
JP4496061B2 (ja) * 2004-11-11 2010-07-07 パナソニック株式会社 機密情報処理装置
US7383438B2 (en) * 2004-12-18 2008-06-03 Comcast Cable Holdings, Llc System and method for secure conditional access download and reconfiguration
JP3992050B2 (ja) * 2005-05-10 2007-10-17 コニカミノルタビジネステクノロジーズ株式会社 画像処理装置およびその制御方法ならびにコンピュータプログラム
US7996869B2 (en) * 2006-08-18 2011-08-09 Sony Corporation Automatically reconfigurable multimedia system with interchangeable personality adapters
EP1895770A1 (en) * 2006-09-04 2008-03-05 Nokia Siemens Networks Gmbh & Co. Kg Personalizing any TV gateway
US8032753B2 (en) * 2006-11-23 2011-10-04 Electronics And Telecommunications Research Institute Server and system for transmitting certificate stored in fixed terminal to mobile terminal and method using the same
US20080238709A1 (en) * 2007-03-28 2008-10-02 Faramarz Vaziri One-way communication apparatus with dynamic key generation
US8510798B2 (en) * 2007-04-02 2013-08-13 Sony Corporation Authentication in an audio/visual system having multiple signaling paths
US8234718B2 (en) * 2007-07-31 2012-07-31 Samsung Electronics Co., Ltd. Method and apparatus for forbidding use of digital content against copy control information
US8738907B2 (en) * 2007-08-02 2014-05-27 Motorola Solutiions, Inc. Wireless device authentication and security key management
US8589437B1 (en) * 2007-10-15 2013-11-19 23Andme, Inc. De-identification and sharing of genetic data
US8347374B2 (en) * 2007-11-15 2013-01-01 Red Hat, Inc. Adding client authentication to networked communications
US8775824B2 (en) * 2008-01-02 2014-07-08 Arm Limited Protecting the security of secure data sent from a central processor for processing by a further processing device
WO2009092105A2 (en) * 2008-01-18 2009-07-23 Tekelec Systems, methods and computer readable media for application-level authentication of messages in a telecommunications network
US8565431B2 (en) * 2008-03-17 2013-10-22 Sony Corporation System and method for scrambling wireless signals using a secure time value
CN101541002A (zh) * 2008-03-21 2009-09-23 展讯通信(上海)有限公司 一种基于Web服务器的移动终端的软件许可证下载方法
CN101489054B (zh) * 2008-12-31 2011-06-15 深圳创维-Rgb电子有限公司 一种电视机歌唱娱乐系统的加密方法
US8239890B2 (en) * 2009-11-03 2012-08-07 Echostar Technologies Llc Systems and methods for authorizing access to content for a television receiver
US8713597B2 (en) * 2010-01-05 2014-04-29 Alcatel Lucent Authenticating and off-loading IPTV operations from mobile devices to fixed rendering viewing devices
CN101902325A (zh) * 2010-07-02 2010-12-01 恒宝股份有限公司 一种基于无线通信技术的Key设备
US9191375B2 (en) * 2011-01-13 2015-11-17 Infosys Limited System and method for accessing integrated applications in a single sign-on enabled enterprise solution
CN202210323U (zh) * 2011-04-28 2012-05-02 李波 电视银行智能终端系统
JP5025813B1 (ja) * 2011-07-01 2012-09-12 株式会社東芝 情報処理装置、情報処理方法及びプログラム
CN103457922B (zh) 2012-06-05 2017-01-25 腾讯科技(深圳)有限公司 电子认证客户端系统及处理方法、电子认证系统及方法

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7650361B1 (en) * 2004-07-21 2010-01-19 Comcast Ip Holdings I, Llc Media content modification and access system for interactive access of media content across disparate network platforms
CN101137040A (zh) * 2006-07-31 2008-03-05 北京华旗资讯数码科技有限公司 基于有线数字电视网络获取网络信息的系统和方法
CN101242482A (zh) * 2007-02-08 2008-08-13 黄金富 用于电视购物和投注的带有手机的遥控器的电视机顶盒
CN101742056A (zh) * 2008-11-18 2010-06-16 中兴通讯股份有限公司 在机顶盒上实现理财业务的方法及支持理财业务的机顶盒

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9998440B2 (en) 2012-06-05 2018-06-12 Tencent Technology (Shenzhen) Company Limited System and processing method for electronic authentication client, and system and method for electronic authentication
CN105530250A (zh) * 2015-12-09 2016-04-27 美的集团股份有限公司 家用电器的鉴权激活方法和系统

Also Published As

Publication number Publication date
CN103457922B (zh) 2017-01-25
KR20150011377A (ko) 2015-01-30
US20150074760A1 (en) 2015-03-12
CN103457922A (zh) 2013-12-18
US9998440B2 (en) 2018-06-12

Similar Documents

Publication Publication Date Title
WO2013182058A1 (zh) 电子认证客户端系统及处理方法、电子认证系统及方法
WO2014139403A1 (zh) 一种终端主密钥tmk安全下载方法及系统
CN112260826B (zh) 用于安全凭证供应的方法
KR101657613B1 (ko) 보안 저장 장치에 저장된 디지털 컨텐츠의 백업
WO2014139342A1 (zh) 密钥下载方法、管理方法、下载管理方法及装置和系统
US20240179005A1 (en) Advanced crypto token authentication
WO2019001061A1 (zh) 支付验证的方法、系统及移动设备和安全认证设备
JP2009516243A (ja) Srmのデジタル著作権管理方法及び装置
CN102801730A (zh) 一种用于通讯及便携设备的信息防护方法及装置
KR101430861B1 (ko) 안전성을 지닌 데이터 공유시스템 및 수행방법
KR101659847B1 (ko) 모바일 단말을 이용한 2채널 사용자 인증 방법
KR20070059891A (ko) 어플리케이션 인증 보안 시스템 및 그 인증 보안 방법
KR101295038B1 (ko) 보안 리더기를 이용한 공인 인증서 사용방법
KR101771484B1 (ko) 보안 토큰을 효율적으로 사용하기 위한 서명 키 생성방법
KR101650107B1 (ko) 지문 인증장치를 이용한 홈페이지 로그인 또는 금융 거래 시스템 및 이를 이용한 홈페이지 로그인 및 금융 거래 방법
KR101711024B1 (ko) 부정조작방지 장치 접근 방법 및 그 방법을 채용한 단말 장치
KR101741918B1 (ko) 웨어러블 장치를 이용한 인증 시스템 및 방법
KR101808315B1 (ko) 모바일 장치 및 사용자 단말기 사이의 인증서 로밍 방법 및 시스템
KR101128225B1 (ko) 전자음반 장치 인증 시스템
KR101272358B1 (ko) 모바일단말기 탈부착용 보안 및 접근제어 장치 및 이를 이용한 금융거래방법
KR100811130B1 (ko) 전자음반 장치 구매 고객정보 등록방법 및 시스템과 이를위한 프로그램 기록매체
KR101536594B1 (ko) 보안성 향상을 위한 서비스 사업자 서버를 통한 공인 인증서를 안전하게 사용하는 방법 및 공인 인증서 사용 시스템
KR100480377B1 (ko) 스마트 카드를 이용한 네트워크 전용장치의 환경설정 및인증방법
CN103152177A (zh) 一种利用手机自动完成认证的方法
KR100830519B1 (ko) 전자음반 장치 인증방법 및 이를 위한 프로그램 기록매체

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 13801234

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

ENP Entry into the national phase

Ref document number: 20147034444

Country of ref document: KR

Kind code of ref document: A

32PN Ep: public notification in the ep bulletin as address of the adressee cannot be established

Free format text: NOTING OF LOSS OF RIGHTS PURSUANT TO RULE 112(1) EPC (EPO FORM 1205A DATED 06/05/2015)

122 Ep: pct application non-entry in european phase

Ref document number: 13801234

Country of ref document: EP

Kind code of ref document: A1