WO2014071632A1 - 虚拟用户识别卡的实现方法、系统及通信终端 - Google Patents
虚拟用户识别卡的实现方法、系统及通信终端 Download PDFInfo
- Publication number
- WO2014071632A1 WO2014071632A1 PCT/CN2012/084456 CN2012084456W WO2014071632A1 WO 2014071632 A1 WO2014071632 A1 WO 2014071632A1 CN 2012084456 W CN2012084456 W CN 2012084456W WO 2014071632 A1 WO2014071632 A1 WO 2014071632A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- user
- identification card
- virtual
- communication terminal
- characteristic information
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
- H04W12/068—Authentication using credential vaults, e.g. password manager applications or one time password [OTP] applications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
Definitions
- the present invention relates to the field of communications technologies, and in particular, to a method, system, and communication terminal for implementing a virtual subscriber identity card. Background technique
- SIM Subscriber Identity Module
- an object of the present invention is to provide a method, system and communication terminal for implementing a virtual subscriber identity card, which can also pass a virtual subscriber identity card when the physical subscriber identity card of the communication terminal does not exist or is abnormal.
- Various functions of the communication terminal are normally used.
- the present invention provides a method for implementing a virtual subscriber identity card, which is applied to a communication terminal, and includes the following steps:
- the virtual subscriber identity card is activated, and the virtual subscriber identity card is used for communication interaction with the server.
- the method before the step of establishing the binding relationship between the feature information input by the authorized user and the virtual user identification card, the method further includes:
- the step of saving the virtual subscriber identity card generated according to the user information of the physical subscriber identity card further includes:
- the communication terminal acquires user information of the physical user identification card, and generates the virtual user identification card according to the user information; or And the server obtains the user information of the physical user identification card, and generates the virtual user identification card according to the user information, and the server sends the virtual user identification card to the communication terminal.
- the feature information includes physiological feature information or physical feature information uniquely corresponding to the virtual user identification card.
- the physical feature information is bound with a predetermined password.
- the method before the step of acquiring the feature information input by the current user, the method further includes:
- the startup setting interface of the virtual user identification card is triggered, and the current user is prompted to input the feature information.
- the invention also provides a communication terminal, comprising:
- a first binding module configured to establish a binding relationship between the feature information input by the authorized user and the virtual user identification card
- a first acquiring module configured to acquire feature information input by the current user
- a first authentication module configured to determine whether the feature information input by the current user matches the feature information input by the authorized user
- a first startup module configured to start the virtual user identification card when the feature information input by the current user matches the feature information input by the authorized user, and perform communication interaction with the server by using the virtual user identification card .
- the communication terminal according to the present invention further includes:
- a first storage module configured to save a virtual user identification card generated according to user information of the physical user identification card
- the second storage module is configured to save feature information input by the authorized user.
- the communication terminal further includes a first generation module, configured to obtain user information of the physical user identification card, and generate the virtual user identification card according to the user information; or
- the feature information includes physiological feature information or physical feature information uniquely corresponding to the virtual user identification card.
- the communication terminal of the present invention when the feature information is the physical feature information, the physical feature information is bound with a predetermined password.
- the communication terminal further includes: a first detecting module, configured to detect whether the physical user identification card in the communication terminal exists or is normal;
- the first interface triggering module is configured to trigger a startup setting interface of the virtual user identification card if the physical user identification card does not exist or is abnormal, and prompt the current user to input the feature information.
- the present invention further provides a method for implementing a virtual subscriber identity card, including the following steps:
- the server establishes a binding relationship between the feature information input by the authorized user and the virtual subscriber identity card; the communication terminal acquires the feature information input by the current user and sends the feature information to the Server
- the server determines whether the feature information input by the current user matches the feature information input by the authorized user
- the server If the server matches, the server starts the virtual subscriber identity card, and the communication terminal performs communication interaction with the server through the virtual subscriber identity card.
- the step of the server establishing the binding relationship between the feature information input by the user and the virtual user identification card includes:
- the server obtains user information of the physical user identification card, and generates the virtual user identification card according to the user information;
- the communication terminal saves the virtual subscriber identity card
- the server saves the feature information input by the authorized user.
- the feature information includes physiological feature information or physical feature information uniquely corresponding to the virtual user identification card.
- the method before the step of the communication terminal acquiring the feature information input by the current user and sending the information to the server, the method further includes:
- the communication terminal detects whether the physical user identification card exists or is normal
- the communication terminal triggers a startup setting interface for displaying the virtual user identification card, and prompts the current user to input the feature information.
- the present invention also provides an implementation system of a virtual subscriber identity card, including a communication terminal and a server connected to each other;
- the communication terminal further includes:
- a second acquiring module configured to acquire feature information input by the current user and send the information to the server; the server further includes:
- a second binding module configured to establish a binding relationship between the feature information input by the authorized user and the virtual user identification card
- a second authentication module configured to determine whether the feature information input by the current user and the feature information input by the authorized user are matched by the communication terminal;
- a second startup module configured to input feature information of the current user and the authorized user input
- the virtual subscriber identity card is activated, and the communication terminal performs communication interaction with the server by using the virtual subscriber identity card.
- the server further includes:
- a second generation module configured to acquire user information of the physical user identification card, and generate the virtual user identification card according to the user information
- a sending module configured to send the virtual subscriber identity card to the communications terminal
- a fourth storage module configured to save feature information input by an authorized user
- the communication terminal further includes:
- the third storage module is configured to save the virtual subscriber identity card.
- the feature information includes physiological feature information or physical feature information uniquely corresponding to the virtual user identification card.
- the communication terminal further includes:
- a second detecting module configured to detect whether the physical user identification card exists or is normal
- the second interface triggering module is configured to trigger a startup setting interface for displaying the virtual user identification card if the physical user identification card does not exist or is abnormal, and prompt the current user to input the feature information.
- the present invention pre-stores the virtual user identification card corresponding to the physical user identification card in the communication terminal, and saves the feature information input by the authorized user, and the feature information may be the physiological feature information or the physical feature information uniquely corresponding to the virtual user identification card.
- the current user may input the feature information request to start the virtual user identification card, and if the feature information input by the current user matches the feature information input by the authorized user in advance, Then, the virtual subscriber identity card is started to communicate with the server, and the functions of the communication terminal can be normally used by the virtual subscriber identity card, thereby facilitating the user's use and improving the user experience.
- FIG. 1 is a schematic structural diagram of a communication terminal in a first embodiment of the present invention
- FIG. 2 is a schematic structural diagram of a communication terminal in a second embodiment of the present invention.
- FIG. 3 is a flowchart of a method for implementing a virtual subscriber identity card according to a first embodiment of the present invention
- FIG. 4 is a flowchart of a method for implementing a virtual subscriber identity card according to a second embodiment of the present invention
- FIG. FIG. 6 is a schematic structural diagram of a system for implementing a virtual subscriber identity card according to a fourth embodiment of the present invention
- FIG. 7 is a schematic diagram of a virtual subscriber identity card according to a third embodiment of the present invention
- FIG. 8 is a flowchart of a method for implementing a virtual subscriber identity card in the fourth embodiment of the present invention.
- the communication terminal 100 is connected to a server 200 through a communication network, and the communication terminal 100 may be a mobile phone, a PDA (Personal Digital Assistant), A tablet computer or the like, and the communication terminal 100 includes a first binding module 103, a first obtaining module 104, a first authentication module 105, and a first starting module 106, where:
- the first binding module 103 is configured to establish a binding relationship between the feature information input by the authorized user and the virtual user identification card, that is, the feature information input by the authorized user and the virtual user identification card uniquely correspond.
- the first obtaining module 104 is configured to acquire feature information input by the current user.
- the first obtaining module 104 generally initiates acquiring feature information input by the current user before starting the virtual subscriber identity card.
- the premise of starting the virtual subscriber identity card is generally that when the physical subscriber identity card in the communication terminal 100 does not exist or is abnormal, the communication terminal 100 automatically triggers the startup process of the virtual subscriber identity card, and the user selects and sets. Of course, the user can also trigger the startup process of the virtual subscriber identity card, even if the physical subscriber identity card in the communication terminal 100 is in a normal state.
- the first authentication module 105 is configured to determine whether the feature information input by the current user matches the feature information input by the authorized user, and if yes, the authentication is passed, otherwise the authentication fails and the process ends. If the feature information is physiological feature information, the first authentication module 105 identifies the physiological feature information by using, for example, a fingerprint recognition technology, a face recognition technology, or the like.
- the first activation module 106 is configured to: when the feature information input by the current user matches the feature information input by the authorized user, that is, the virtual user identification card corresponding to the feature information input by the authorized user after the authentication is passed, and The virtual user identification card communicates with the server 200. At this time, the user can normally use various functions of the communication terminal 100 through the virtual user identification card, for example, the phone can be dialed normally, the Internet is connected, or the like.
- the premise is to collect the feature information of the authorized user and the current user, including collecting physiological characteristic information and physical feature information of the user.
- the physiological characteristic information of the user In the physiological characteristics of the human, the fingerprint information or the facial information of the human being is unique, and the authorized user can be collected by the physiological feature gathering device such as a fingerprint or a face gathering device.
- the unique physiological characteristic information is stored in advance in the first storage module of the communication terminal 100, and the physiological characteristic collecting device can be independent of the communication terminal 100, but the physiological characteristic collecting device needs
- the physiological feature information collected by the user is transmitted to the communication terminal; the physiological feature collecting device may also be disposed in the communication terminal 100.
- the communication terminal 100 pre-stores the feature information of the virtual subscriber identity card and its corresponding authorized user, and the communication terminal 100 implements the authentication of the feature information and the activation of the virtual subscriber identity card, and the implementation scheme is very simple.
- the present invention solves the inconvenience caused by the user's normal use of the function of the communication terminal 100 due to the fact that the user identification card or the user identification card in the communication terminal 100 is abnormal, and copies the physical user identification card of the communication terminal 100 as The virtual user identification card is saved and the virtual user identification card is bound to the characteristic information of the authorized user, so that the user can be bound by the authorized user without the user identification card or the user identification card being abnormal.
- the information is authenticated. After the authentication is passed, the virtual subscriber identity card is activated to replace the physical subscriber identity card, so that the user can still use various functions of the communication terminal 100 normally, thereby improving the user experience.
- the communication terminal 100 may include a first storage module 101, a second storage module 102, a first binding module 103, a first obtaining module 104, and a first An authentication module 105, a first startup module 106, a first generation module 107, a first detection module 108, and/or a first interface trigger module 109, wherein:
- the first generating module 107 is configured to obtain user information of the physical user identification card, and generate a virtual user identification card according to the user information, where the virtual user identification card can work in place of the physical user identification card.
- the user information of the physical subscriber identity card includes four categories: The first category is fixed storage data. This type of data is written by the subscriber identity card center before the subscriber identity card is sold, including the International Mobile Subscriber Identity (IMSI), the authentication algorithm (A3), the encryption key generation algorithm (A8), and the encryption algorithm (A5). , key (KI), etc.;
- the second type is data about the network that is temporarily stored. Such as location area identification code (LAI), mobile user temporary identification code (TMSI), cryptographic key (Kc), public telephone network code forbidden access, etc.
- LAI location area identification code
- TMSI mobile user temporary identification code
- Kc cryptographic key
- the third type is related service code, such as personal identification number (PIN). ), unlock code (PUK), billing rate, etc.
- the fourth category is the telephone directory, which is the telephone number entered by the communication terminal user.
- the authentication algorithm (A3), the encryption key generation algorithm (A8), the encryption algorithm (A5), the key (KI), etc. cannot directly Read, which needs to be obtained after authorization by the issuer of the user identification card.
- the virtual subscriber identity card may also be generated by the server 200.
- the server 200 acquires user information of the physical subscriber identity card, generates a virtual subscriber identity card according to the subscriber information, and sends the virtual subscriber identity card to the communication terminal 100. .
- the first storage module 101 is configured to save a virtual user identification card generated according to user information of the physical user identification card.
- the physical subscriber identity card includes a SIM (Subscriber Identity Module) card and a UIM (User Identity Model) card.
- the second storage module 102 is configured to save feature information input by an authorized user.
- the feature information includes physiological feature information or physical feature information uniquely corresponding to the virtual user identification card.
- Physiological The levy information or physical feature information is pre-stored in the second storage module 102 of the communication terminal 100 for subsequent authentication of the request to activate the virtual subscriber identity card at the communication terminal 100.
- the feature information is the physical feature information
- the physical feature information is preferably bound with a predetermined password, that is, the user needs to input the physical feature information and the password for authentication at the same time to improve security.
- the first binding module 103 is configured to establish a binding relationship between the feature information input by the authorized user and the virtual user identification card.
- the first detecting module 108 is configured to detect whether a physical user identification card in the communication terminal 100 exists or is normal.
- the first interface triggering module 109 is configured to trigger a startup setting interface for displaying the virtual user identification card if the physical user identification card does not exist or is abnormal, and prompt the current user to input the feature information.
- the first obtaining module 104 is configured to acquire feature information input by the current user before starting the virtual subscriber identity card.
- the current user can input feature information on the startup setting interface of the virtual subscriber identity card.
- the first authentication module 105 is configured to determine whether the feature information input by the current user matches the feature information input by the authorized user, and if yes, the authentication is passed, otherwise the authentication fails and the process ends.
- the first activation module 106 is configured to: when the feature information input by the current user matches the feature information input by the authorized user, start the virtual user identification card corresponding to the feature information input by the authorized user, and perform the virtual user identification card with the server 200 through the virtual user identification card. Communication interaction, at this time, the user can normally use various functions of the communication terminal 100 through the virtual subscriber identity card, for example, can normally dial the telephone, access the Internet, and the like.
- FIG. 3 is a flowchart of a method for implementing a virtual subscriber identity card according to the first embodiment of the present invention, which may be implemented by the communication terminal 100 as shown in FIG. 1 or FIG. 2, and includes the following steps:
- Step S301 Establish a binding relationship between the feature information input by the authorized user and the virtual user identification card.
- Step S302 Acquire feature information input by the current user. This step is usually performed before starting the virtual user identification card.
- the premise of starting the virtual subscriber identity card is generally that when the physical subscriber identity card in the communication terminal 100 does not exist or is abnormal, the communication terminal 100 automatically triggers the startup process of the virtual subscriber identity card, and the user selects and sets. Of course, the user can also trigger the startup process of the virtual subscriber identity card, even if the physical subscriber identity card in the communication terminal 100 is in a normal state.
- Step S303 Determine whether the feature information input by the current user matches the feature information input by the authorized user, and if yes, the authentication is passed, otherwise the authentication fails and the process ends. If the feature information is physiological feature information, the step of identifying the physiological feature information using, for example, fingerprint recognition technology, face recognition technology, or the like.
- Step S304 if it matches, start the virtual subscriber identity card, and perform communication interaction with the server 200 through the virtual subscriber identity card.
- the user can normally use various functions of the communication terminal through the virtual subscriber identity card. For example, you can dial the phone, go online, etc.
- Step S401 The communication terminal 100 acquires user information of the physical user identification card, and generates a virtual user identification card according to the user information. Since some of the user information of the physical subscriber identity card cannot be directly read, for example, the authentication algorithm (A3), the encryption key generation algorithm (A8), the encryption algorithm (A5), the key (KI), etc. cannot be directly read. The communication terminal 100 needs to be obtained after being authorized by the issuer of the user identification card.
- the virtual subscriber identity card may also be generated by the server 200.
- the server 200 acquires user information of the physical subscriber identity card, generates a virtual subscriber identity card according to the subscriber information, and sends the virtual subscriber identity card to the communication terminal 100.
- the physical subscriber identity card includes a SIM card, a UIM card, and the like.
- Step S402 The virtual user identification card generated according to the user information of the physical user identification card is saved.
- the feature information includes physiological feature information or physical feature information uniquely corresponding to the virtual user identification card.
- the feature information is the physical feature information
- the physical feature information is preferably bound with a predetermined password, that is, the user needs to simultaneously input the physical feature information and the password for authentication to improve security.
- Step S404 Establish a binding relationship between the feature information input by the authorized user and the virtual user identification card.
- Step S405 Detect whether the physical user identification card in the communication terminal 100 exists or is normal. If yes, go to step S407; otherwise, go to step S406.
- Step S406 performing communication interaction with the server 200 through the physical user identification card.
- Step S407 If the physical user identification card does not exist or is abnormal, triggering to display a startup setting interface of the virtual user identification card, and prompting the current user to input the feature information.
- the user can also actively enter the startup setting interface of the virtual subscriber identity card to request to start the virtual subscriber identity card.
- Step S408 Acquire feature information input by the current user.
- the current user can enter feature information on the launch settings interface of the virtual subscriber identity card.
- step S409 it is determined whether the feature information input by the current user matches the feature information input by the authorized user. If yes, the authentication is successful and step S410 is performed; otherwise, the authentication fails and the process ends.
- Step S410 if it matches, start a virtual subscriber identity card corresponding to the feature information input by the authorized user, and perform communication interaction with the server 200 through the virtual subscriber identity card. At this time, the user can normally use the communication terminal through the virtual subscriber identity card.
- Various functions such as normal dialing, internet access, etc.
- the system for implementing the virtual subscriber identity card includes a communication terminal 300 and a server 400 that are communicably connected to each other.
- the communication terminal 100 may be Mobile phones, PDAs (Personal Digital Assistants), tablets, etc., where:
- the communication terminal 300 further includes:
- the second obtaining module 302 is configured to obtain the feature information input by the current user and send the feature information to the server before starting the virtual user identification card.
- the feature information includes physiological feature information or physical feature information uniquely corresponding to the virtual user identification card.
- the premise of starting the virtual subscriber identity card is generally that the communication terminal 300 automatically triggers when it is detected that the physical subscriber identity card in the communication terminal 300 does not exist or is abnormal.
- the startup process of the virtual subscriber identity card is selected and set by the user. Of course, the user can also trigger the startup process of the virtual subscriber identity card, even if the physical subscriber identity card in the communication terminal 300 is in a normal state.
- the server 400 further includes:
- the second binding module 402 is configured to establish a binding relationship between the feature information input by the authorized user and the virtual user identification card.
- the second authentication module 403 is configured to determine whether the feature information input by the current user sent by the communication terminal 300 matches the feature information input by the authorized user. If the matching is performed, the authentication is passed, otherwise the authentication fails and the process ends. If the feature information is physiological feature information, the second authentication module 403 can identify the physiological feature information by using, for example, a fingerprint recognition technology, a face recognition technology, or the like.
- the second startup module 404 is configured to start a virtual user identification card corresponding to the feature information input by the authorized user when the feature information input by the current user matches the feature information input by the authorized user, and the communication terminal 300 passes the virtual user identification card and the server. 400 performs communication interaction.
- the user can normally use various functions of the communication terminal 300 through the virtual subscriber identity card, for example, can normally dial the telephone, access the Internet, and the like.
- the communication terminal 300 saves the virtual subscriber identity card
- the server 400 stores the feature information of the authorized user corresponding to the virtual subscriber identity card
- the server 400 implements the authentication of the feature information and the activation of the virtual subscriber identity card.
- the server 400 performs authentication and startup work, which has better security and reliability.
- FIG. 6 is a schematic structural diagram of an implementation system of a virtual subscriber identity card according to a fourth embodiment of the present invention.
- the system for implementing the virtual subscriber identity card includes a communication terminal 300 and a server 400 that are communicably connected to each other, wherein:
- the communication terminal 300 further includes:
- the third storage module 301 is configured to save a virtual user identification card generated according to user information of the physical user identification card.
- the physical subscriber identity card includes a SIM card, a UIM card, and the like.
- the second detecting module 303 is configured to detect whether a physical user identification card in the communication terminal 300 exists or is normal.
- the second interface triggering module 304 is configured to trigger a startup setting interface for displaying the virtual user identification card if the physical user identification card does not exist or is abnormal, and prompt the current user to input the feature information.
- the second obtaining module 302 is configured to obtain the feature information input by the current user and send it to the server 400 before starting the virtual user identification card.
- the feature information includes physiological feature information or physical feature information uniquely corresponding to the virtual user identification card.
- the current user can enter feature information on the launch settings interface of the virtual subscriber identity card.
- the server 400 further includes:
- the second generation module 405 is configured to acquire user information of the physical user identification card, and generate a virtual user identification card according to the user information.
- the sending module 406 is configured to send the virtual subscriber identity card to the communication terminal 300.
- the fourth storage module 401 is configured to save feature information input by the authorized user.
- the feature information includes physiological feature information or physical feature information uniquely corresponding to the virtual user identification card.
- the physiological feature information or physical feature information is pre-stored in the second storage module 401 of the server 400 for subsequent authentication of the request to start the virtual subscriber identity card at the server 400.
- the feature information is the physical feature information
- the physical feature information is preferably bound with a predetermined password, that is, the user needs to input the physical feature information and the password for authentication at the same time to improve security.
- the second binding module 402 is configured to establish a binding relationship between the feature information input by the authorized user and the virtual user identification card.
- the second authentication module 403 is configured to determine whether the feature information input by the current user sent by the communication terminal 300 matches the feature information input by the authorized user. If the matching is performed, the authentication is passed, otherwise the authentication fails and the process ends.
- the second startup module 404 is configured to start a virtual user identification card corresponding to the feature information input by the authorized user when the feature information input by the current user matches the feature information input by the authorized user, and the communication terminal 300 passes the virtual user identification card and the server. 400 performs communication interaction.
- the user can normally use various functions of the communication terminal through the virtual subscriber identity card, for example, can normally dial the telephone, access the Internet, and the like.
- FIG. 7 is a flowchart of a method for implementing a virtual subscriber identity card according to a third embodiment of the present invention, which may be implemented by using a virtual subscriber identity card implementation system as shown in FIG. 5 or FIG. 6, including the following steps: Step S701, The server 400 establishes a binding relationship between the feature information input by the authorized user and the virtual user identification card.
- Step S702 Before starting the virtual subscriber identity card, the communication terminal 300 acquires the feature information input by the current user and sends the feature information to the server 400.
- Step S703 The server 400 determines whether the feature information input by the current user matches the feature information input by the authorized user. If the match is matched, the authentication is passed, otherwise the authentication fails and the process ends.
- Step S704 if it matches, the server 400 starts the virtual user identification card corresponding to the feature information input by the authorized user, and the communication terminal 300 communicates with the server 400 through the virtual user identification card, and the user can pass the virtual user identification card.
- the various functions of the communication terminal 300 are normally used, for example, the telephone can be dialed normally, the Internet is connected, and the like.
- FIG. 8 is a flowchart of a method for implementing a virtual subscriber identity card according to a fourth embodiment of the present invention, which may be implemented by using a virtual subscriber identity card implementation system as shown in FIG. 6, including the following steps:
- Step S801 the server 400 acquires user information of the physical user identification card, and generates a virtual user identification card according to the user information.
- the physical subscriber identity card includes a SIM card, a UIM card, and the like.
- Step S802 the server 400 sends the virtual subscriber identity card to the communication terminal 300.
- Step S803 the communication terminal 300 saves the virtual subscriber identity card.
- Step S804 the server 400 saves the feature information input by the authorized user.
- the feature information includes Physiological characteristic information or physical characteristic information uniquely corresponding to the virtual user identification card.
- the feature information is physical feature information
- the physical feature information is bound with a predetermined password.
- Step S805 the server 400 establishes a binding relationship between the feature information input by the authorized user and the virtual user identification card.
- Step S806 detecting whether the physical user identification card in the communication terminal 300 exists or is normal, if yes, executing step S808; otherwise, executing step S807.
- Step S807 performing communication interaction with the server 400 through the physical user identification card.
- Step S808 If the physical user identification card does not exist or is abnormal, triggering to display a startup setting interface of the virtual user identification card, and prompting the current user to input the feature information.
- the user can also actively enter the startup setting interface of the virtual subscriber identity card to request to start the virtual subscriber identity card.
- Step S809 Before starting the virtual subscriber identity card, the communication terminal 300 acquires the feature information input by the current user and sends the feature information to the server 400. The current user can enter the feature information in the launch settings interface of the virtual subscriber identity card.
- Step S810 The server 400 determines whether the feature information input by the current user matches the feature information input by the authorized user. If the match is successful, the authentication is successful and step S81 1 is performed; otherwise, the authentication fails and the process ends.
- Step S811 if it matches, the server 400 starts the virtual user identification card corresponding to the feature information input by the authorized user, and the communication terminal 300 communicates with the server 400 through the virtual user identification card, and the user can pass the virtual user identification card.
- the various functions of the communication terminal 300 are normally used, for example, the telephone can be dialed normally, the Internet is connected, and the like.
- the present invention pre-stores a virtual subscriber identity card corresponding to the physical subscriber identity card in the communication terminal, and saves the feature information input by the authorized user, and the feature information may be a physiological feature uniquely corresponding to the virtual subscriber identity card.
- Information or physical characteristic information when the physical user identification card in the communication terminal does not exist or is abnormal, the current user may input the feature information request to start the virtual user identification card, if the feature information input by the current user and the pre-stored authorized user input When the feature information is matched, the virtual user identification card is started to communicate with the server, and the virtual user identification card can normally use various functions of the communication terminal, thereby facilitating the user's use and improving the user experience.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Telephone Function (AREA)
- Telephonic Communication Services (AREA)
Abstract
本发明适用于通信技术领域,提供了一种虚拟用户识别卡的实现方法,包括步骤有:建立授权用户输入的特征信息与虚拟用户识别卡的绑定关系;获取当前用户输入的特征信息;判断所述当前用户输入的特征信息与所述授权用户输入的特征信息是否匹配;若匹配,则启动所述虚拟用户识别卡,并通过所述虚拟用户识别卡与服务端进行通信交互。相应地,本发明还提供一种虚拟用户识别卡的实现系统及通信终端。借此,本发明可以在通信终端的物理用户识别卡不存在或者不正常时,也能通过虚拟用户识别卡正常使用通信终端的各种功能。
Description
虚拟用户识别卡的实现方法、 系统及通信终端 技术领域
本发明涉及通信技术领域, 尤其涉及一种虚拟用户识别卡的实现方法、 系 统及通信终端。 背景技术
现有手机等通信终端中的许多应用必须在 SIM ( Subscriber Identity Module, 用户识别卡)卡正常的情况下才可使用。 当通信终端中无 SIM卡或 SIM卡处于 非正常情况时, 通信终端的功能使用会受到很大限制, 连拨打电话等一些基本 功能也无法正常使用, 因此会给用户的使用带来诸多不便, 从而影响用户体验。
综上可知, 现有通信终端的用户识别卡技术, 在实际使用上显然存在不便 与缺陷, 所以有必要加以改进。 发明内容
针对上述的缺陷, 本发明的目的在于提供一种虚拟用户识别卡的实现方法、 系统及通信终端, 其可以在通信终端的物理用户识别卡不存在或者不正常时, 也能通过虚拟用户识别卡正常使用通信终端的各种功能。
为了实现上述目的, 本发明提供一种虚拟用户识别卡的实现方法, 应用于 通信终端, 包括步骤如下:
建立授权用户输入的特征信息与虚拟用户识别卡的绑定关系;
获取当前用户输入的特征信息;
判断所述当前用户输入的特征信息与所述授权用户输入的特征信息是否匹 配;
若匹配, 则启动所述虚拟用户识别卡, 并通过所述虚拟用户识别卡与服务 端进行通信交互。
根据本发明所述的实现方法, 所述建立所述授权用户输入的特征信息与所 述虚拟用户识别卡的绑定关系的步骤之前还包括:
保存根据物理用户识别卡的用户信息生成的虚拟用户识别卡;
保存授权用户输入的特征信息。
根据本发明所述的实现方法, 所述保存根据物理用户识别卡的用户信息生 成的虚拟用户识别卡的步骤之前还包括:
所述通信终端获取所述物理用户识别卡的用户信息, 并根据所述用户信息 生成所述虚拟用户识别卡; 或者
所述服务端获取所述物理用户识别卡的用户信息, 并根据所述用户信息生 成所述虚拟用户识别卡, 并且所述服务端将所述虚拟用户识别卡发送给所述通 信终端。
根据本发明所述的实现方法, 所述特征信息包括与所述虚拟用户识别卡唯 一对应的生理特征信息或者物理特征信息。
根据本发明所述的实现方法, 所述特征信息为所述物理特征信息时, 所述 物理特征信息绑定有预定的密码。
根据本发明所述的实现方法, 所述获取当前用户输入的特征信息的步骤之 前还包括:
检测所述通信终端中的所述物理用户识别卡是否存在或正常;
若所述物理用户识别卡不存在或不正常, 则触发显示所述虚拟用户识别卡 的启动设置界面, 并提示当前用户输入特征信息。
本发明还提供一种通信终端, 包括有:
第一绑定模块, 用于建立授权用户输入的特征信息与虚拟用户识别卡的绑 定关系;
第一获取模块, 用于获取当前用户输入的特征信息;
第一鉴权模块, 用于判断所述当前用户输入的特征信息与所述授权用户输 入的特征信息是否匹配;
第一启动模块, 用于在所述当前用户输入的特征信息与所述授权用户输入 的特征信息匹配时, 启动所述虚拟用户识别卡, 并通过所述虚拟用户识别卡与 服务端进行通信交互。
根据本发明所述的通信终端, 还包括:
第一存储模块, 用于保存根据物理用户识别卡的用户信息生成的虚拟用户 识别卡;
第二存储模块, 用于保存授权用户输入的特征信息。
根据本发明所述的通信终端, 所述通信终端还包括第一生成模块, 用于获 取所述物理用户识别卡的用户信息, 并根据所述用户信息生成所述虚拟用户识 别卡; 或者
所述 Λ良务端获取所述物理用户识别卡的用户信息, 才艮据所述用户信息生成 所述虚拟用户识别卡, 并将所述虚拟用户识别卡发送给所述通信终端。
根据本发明所述的通信终端, 所述特征信息包括与所述虚拟用户识别卡唯 一对应的生理特征信息或者物理特征信息。
根据本发明所述的通信终端, 所述特征信息为所述物理特征信息时, 所述 物理特征信息绑定有预定的密码。
根据本发明所述的通信终端, 还包括:
第一检测模块, 用于检测所述通信终端中的所述物理用户识别卡是否存在 或正常;
第一界面触发模块, 用于若所述物理用户识别卡不存在或不正常时, 触发 显示所述虚拟用户识别卡的启动设置界面, 并提示当前用户输入特征信息。
本发明还提供一种虚拟用户识别卡的实现方法, 包括步骤如下: 服务端建立授权用户输入的特征信息与虚拟用户识别卡的绑定关系; 通信终端获取当前用户输入的特征信息并发送给所述服务端;
所述服务端判断所述当前用户输入的特征信息与所述授权用户输入的特征 信息是否匹配;
若匹配, 则所述服务端启动所述虚拟用户识别卡, 所述通信终端通过所述 虚拟用户识别卡与服务端进行通信交互。
根据本发明所述的实现方法, 所述服务端建立授权用户输入的特征信息与 虚拟用户识别卡的绑定关系的步骤之前还包括:
所述服务端获取所述物理用户识别卡的用户信息, 并根据所述用户信息生 成所述虚拟用户识别卡;
所述服务端将所述虚拟用户识别卡发送给所述通信终端;
通信终端保存所述虚拟用户识别卡;
所述服务端保存授权用户输入的特征信息。
根据本发明所述的实现方法, 所述特征信息包括与所述虚拟用户识别卡唯 一对应的生理特征信息或者物理特征信息。
根据本发明所述的实现方法, 所述通信终端获取当前用户输入的特征信息 并发送给所述服务端的步骤之前还包括:
所述通信终端检测所述物理用户识别卡是否存在或正常;
若所述物理用户识别卡不存在或不正常, 则所述通信终端触发显示所述虚 拟用户识别卡的启动设置界面, 并提示当前用户输入特征信息。
本发明还提供一种虚拟用户识别卡的实现系统, 包括相互通信连接的通信 终端和服务端;
所述通信终端进一步包括:
第二获取模块, 用于获取当前用户输入的特征信息并发送给所述服务端; 所述服务端进一步包括:
第二绑定模块, 用于建立授权用户输入的特征信息与虚拟用户识别卡的绑 定关系;
第二鉴权模块, 用于判断所述通信终端发来的所述当前用户输入的特征信 息与所述授权用户输入的特征信息是否匹配;
第二启动模块, 用于在所述当前用户输入的特征信息与所述授权用户输入
的特征信息匹配时, 启动所述虚拟用户识别卡, 所述通信终端通过所述虚拟用 户识别卡与所述服务端进行通信交互。
根据本发明所述的实现系统, 所述服务端还包括:
第二生成模块, 用于获取所述物理用户识别卡的用户信息, 并根据所述用 户信息生成所述虚拟用户识别卡;
发送模块, 用于将所述虚拟用户识别卡发送给所述通信终端;
第四存储模块, 用于保存授权用户输入的特征信息;
所述通信终端还包括:
第三存储模块, 用于保存所述虚拟用户识别卡。
根据本发明所述的实现系统, 所述特征信息包括与所述虚拟用户识别卡唯 一对应的生理特征信息或者物理特征信息。
根据本发明所述的实现系统, 所述通信终端还包括:
第二检测模块, 用于检测所述物理用户识别卡是否存在或正常;
第二界面触发模块,用于若所述物理用户识别卡不存在或不正常时,触发显 示所述虚拟用户识别卡的启动设置界面, 并提示当前用户输入特征信息。
本发明预先在通信终端中保存与物理用户识别卡对应的虚拟用户识别卡, 并保存授权用户输入的特征信息, 所述特征信息可以是与虚拟用户识别卡唯一 对应的生理特征信息或物理特征信息; 当通信终端中的物理用户识别卡不存在 或者不正常时, 当前用户可以输入特征信息请求启动虚拟用户识别卡, 若当前 用户输入的特征信息与预先保存的授权用户输入的特征信息相匹配, 则启动虚 拟用户识别卡与服务端进行通信交互, 便可通过虚拟用户识别卡正常使用通信 终端的各种功能, 从而方便了用户使用, 提升了用户体验。 附图说明
图 1是本发明第一实施例中通信终端的结构示意图;
图 2是本发明第二实施例中通信终端的结构示意图;
图 3是本发明第一实施例中虚拟用户识别卡的实现方法的流程图; 图 4是本发明第二实施例中虚拟用户识别卡的实现方法的流程图; 图 5是本发明第三实施例中虚拟用户识别卡的实现系统的结构示意图; 图 6是本发明第四实施例中虚拟用户识别卡的实现系统的结构示意图; 图 7是本发明第三实施例中虚拟用户识别卡的实现方法的流程图; 以及 图 8是本发明第四实施例中虚拟用户识别卡的实现方法的流程图。 具体实施方式
为了使本发明的目的、 技术方案及优点更加清楚明白, 以下结合附图及实
施例, 对本发明进行进一步详细说明。 应当理解, 此处所描述的具体实施例仅 仅用以解释本发明, 并不用于限定本发明。
图 1是本发明第一实施例中通信终端的结构示意图, 所述通信终端 100通 过通信网络与服务端 200连接, 所述通信终端 100可以是手机、 PDA ( Personal Digital Assistant, 个人数字助理)、 平板电脑等, 并且所述通信终端 100包括有 第一绑定模块 103、 第一获取模块 104、 第一鉴权模块 105和第一启动模块 106, 其中:
第一绑定模块 103 ,用于建立授权用户输入的特征信息与虚拟用户识别卡的 绑定关系, 即授权用户输入的特征信息与所述虚拟用户识别卡唯一对应。
第一获取模块 104, 用于获取当前用户输入的特征信息。 第一获取模块 104 通常是在启动虚拟用户识别卡之前启动获取当前用户输入的特征信息。 启动虚 拟用户识别卡的前提一般是检测到通信终端 100 中的物理用户识别卡不存在或 者不正常时, 通信终端 100 自动触发虚拟用户识别卡的启动流程, 由用户进行 选择和设置。 当然, 用户也可以自行触发虚拟用户识别卡的启动流程, 即使通 信终端 100中的物理用户识别卡处于正常状态。
第一鉴权模块 105 ,用于判断当前用户输入的特征信息与授权用户输入的特 征信息是否匹配, 若匹配则鉴权通过, 否则鉴权失败并结束流程。 若所述特征 信息为生理特征信息, 则第一鉴权模块 105会利用如指紋识别技术、 人脸识别 技术等对生理特征信息进行鉴别。
第一启动模块 106,用于在当前用户输入的特征信息与预先存储的授权用户 输入的特征信息匹配时, 即鉴权通过后启动授权用户输入的特征信息对应的所 述虚拟用户识别卡, 并通过虚拟用户识别卡与服务端 200进行通信交互, 此时 用户便可通过虚拟用户识别卡正常使用通信终端 100 的各种功能, 例如可正常 拨电话、 上网等。
为了保存授权用户的特征信息和获取当前用户的特征信息, 其前提是要釆 集授权用户和当前用户的特征信息, 包括釆集用户的生理特征信息和物理特征 信息等。
1 )釆集用户的生理特征信息: 在人的生理特征中, 人的指紋信息或脸部信 息等是唯一的, 可通过指紋或人脸釆集装置等生理特征釆集装置来釆集授权用 户的这些唯一的生理特征信息, 并将釆集的生理特征预先存储在通信终端 100 的第一存储模块中, 所述生理特征釆集装置可以与通信终端 100相互独立, 但 生理特征釆集装置需要将釆集到的生理特征信息传输给通信终端; 所述生理特 征釆集装置也可以设置于通信终端 100中。
2 )釆集物理特征信息: 包括通信终端 100 的 IMEI ( International Mobile Equipment Identity, 国际移动设备识别码)号码、 用户的身份证号码等, 可将釆
集的物理特征信息预先存储在通信终端 100的存储模块中。
本实施例中, 通信终端 100预先保存虚拟用户识别卡及其对应的授权用户 的特征信息, 由通信终端 100 实现特征信息的鉴权和虚拟用户识别卡的启动, 其实现方案十分简便。
本发明为了解决由于通信终端 100 中无用户识别卡或用户识别卡处于非正 常情况等原因, 给用户正常使用通信终端 100 功能带来的不便, 釆用将通信终 端 100 的物理用户识别卡复制为虚拟用户识别卡并保存, 同时将虚拟用户识别 卡与授权用户的特征信息进行绑定, 使用户在无用户识别卡或用户识别卡处于 非正常情况下, 也可通过授权用户已绑定的特征信息进行鉴权, 鉴权通过后启 动虚拟用户识别卡替代物理用户识别卡, 使用户仍能正常地使用通信终端 100 的各种功能, 从而提高用户的使用体验。
图 2是本发明第二实施例中通信终端的结构示意图, 所述通信终端 100可 以包括有第一存储模块 101、 第二存储模块 102、 第一绑定模块 103、 第一获取 模块 104、 第一鉴权模块 105、 第一启动模块 106、 第一生成模块 107、 第一检 测模块 108和 /或第一界面触发模块 109 , 其中:
第一生成模块 107 , 用于获取物理用户识别卡的用户信息, 并才艮据所述用户 信息生成虚拟用户识别卡, 所述虚拟用户识别卡可以代替物理用户识别卡进行 工作。 通常, 所述物理用户识别卡的用户信息包括四类: 第一类是固定存放的 数据。 这类数据由用户识别卡中心在用户识别卡售出之前写入的, 包括国际移 动用户识别号(IMSI ) 、 鉴权算法(A3 ) 、 加密密钥生成算法(A8 ) 、 加密算 法(A5 ) 、 密钥 (KI )等; 第二类是暂时存放的有关网络的数据。 如位置区域 识别码(LAI ) 、 移动用户暂时识别码(TMSI ) 、 密码密钥 (Kc ) 、 禁止接入 的公共电话网代码等; 第三类是相关的业务代码, 如个人识别码(PIN ) 、 解锁 码(PUK ) 、 计费费率等; 第四类是电话号码簿, 是通信终端用户输入的电话 号码。 当然, 由于物理用户识别卡的用户信息中有的不能直接读取, 例如鉴权 算法(A3 ) 、 加密密钥生成算法(A8 ) 、 加密算法(A5 ) 、 密钥 (KI )等就不 能直接读取, 需要经过用户识别卡的发行方进行授权后获取。 另外, 所述虚拟 用户识别卡也可以由服务端 200生成, 服务端 200获取物理用户识别卡的用户 信息, 根据所述用户信息生成虚拟用户识别卡, 并将虚拟用户识别卡发送给通 信终端 100。
第一存储模块 101 ,用于保存根据物理用户识别卡的用户信息生成的虚拟用 户识别卡。 所述物理用户识别卡包括 SIM ( Subscriber Identity Module , 用户识 别卡)卡和 UIM ( User Identity Model, 用户识别模块)卡等。
第二存储模块 102 , 用于保存授权用户输入的特征信息。 所述特征信息包括 与所述虚拟用户识别卡唯一对应的生理特征信息或者物理特征信息。 将生理特
征信息或物理特征信息预先存储在通信终端 100的第二存储模块 102中, 是为 了后续在通信终端 100对启动虚拟用户识别卡的请求进行鉴权。 所述特征信息 为物理特征信息时, 该物理特征信息优选绑定有预定的密码, 即用户需要同时 输入物理特征信息和密码进行鉴权, 以提升安全性。
第一绑定模块 103 ,用于建立授权用户输入的特征信息与虚拟用户识别卡的 绑定关系。
第一检测模块 108,用于检测通信终端 100中的物理用户识别卡是否存在或 正常。
第一界面触发模块 109, 用于若所述物理用户识别卡不存在或不正常时, 触 发显示虚拟用户识别卡的启动设置界面, 并提示当前用户输入特征信息。
第一获取模块 104 , 用于在启动虚拟用户识别卡之前, 获取当前用户输入的 特征信息。 当前用户可以在虚拟用户识别卡的启动设置界面输入特征信息。
第一鉴权模块 105 ,用于判断当前用户输入的特征信息与授权用户输入的特 征信息是否匹配, 若匹配则鉴权通过, 否则鉴权失败并结束流程。
第一启动模块 106,用于在当前用户输入的特征信息与授权用户输入的特征 信息匹配时, 启动授权用户输入的特征信息对应的虚拟用户识别卡, 并通过虚 拟用户识别卡与服务端 200 进行通信交互, 此时用户便可通过虚拟用户识别卡 正常使用通信终端 100的各种功能, 例如可正常拨电话、 上网等。
图 3 是本发明第一实施例中虚拟用户识别卡的实现方法的流程图, 其可以 通过如图 1或图 2所示的通信终端 100实现, 包括步骤如下:
步骤 S301 , 建立授权用户输入的特征信息与虚拟用户识别卡的绑定关系。 步骤 S302, 获取当前用户输入的特征信息, 本步骤通常在启动虚拟用户识 别卡之前执行。 启动虚拟用户识别卡的前提一般是检测到通信终端 100 中的物 理用户识别卡不存在或者不正常时, 通信终端 100 自动触发虚拟用户识别卡的 启动流程, 由用户进行选择和设置。 当然, 用户也可以自行触发虚拟用户识别 卡的启动流程, 即使通信终端 100中的物理用户识别卡处于正常状态。
步骤 S303 , 判断当前用户输入的特征信息与授权用户输入的特征信息是否 匹配, 若匹配则鉴权通过, 否则鉴权失败并结束流程。 若所述特征信息为生理 特征信息, 则本步骤会利用如指紋识别技术、 人脸识别技术等对生理特征信息 进行鉴别。
步骤 S304, 若匹配, 则启动所述虚拟用户识别卡, 并通过所述虚拟用户识 别卡与服务端 200进行通信交互, 此时用户便可通过虚拟用户识别卡正常使用 通信终端的各种功能, 例如可正常拨电话、 上网等。
图 4是本发明第二实施例中虚拟用户识别卡的实现方法的流程图, 其可以 通过如图 2所示的通信终端 100实现, 包括步骤如下:
步骤 S401 , 通信终端 100获取物理用户识别卡的用户信息, 并根据用户信 息生成虚拟用户识别卡。 由于物理用户识别卡的用户信息中有的不能直接读取, 例如鉴权算法(A3 )、 加密密钥生成算法(A8 )、 加密算法(A5 )、 密钥(KI ) 等就不能直接读取, 通信终端 100 需要经过用户识别卡的发行方进行授权后获 取。 另外, 所述虚拟用户识别卡也可以由服务端 200生成, 服务端 200获取物 理用户识别卡的用户信息, 根据所述用户信息生成虚拟用户识别卡, 并将虚拟 用户识别卡发送给通信终端 100。所述物理用户识别卡包括 SIM卡和 UIM卡等。
步骤 S402, 保存根据物理用户识别卡的用户信息生成的虚拟用户识别卡。 步骤 S403 , 保存授权用户输入的特征信息。 所述特征信息包括与所述虚拟 用户识别卡唯一对应的生理特征信息或者物理特征信息。 所述特征信息为物理 特征信息时, 该物理特征信息优选绑定有预定的密码, 即用户需要同时输入物 理特征信息和密码进行鉴权, 以提升安全性。
步骤 S404, 建立授权用户输入的特征信息与虚拟用户识别卡的绑定关系。 步骤 S405 , 检测通信终端 100中的物理用户识别卡是否存在或正常, 若是 则执行步骤 S407, 否则执行步骤 S406。
步骤 S406, 通过物理用户识别卡与服务端 200进行通信交互。
步骤 S407, 若物理用户识别卡不存在或不正常, 则触发显示虚拟用户识别 卡的启动设置界面, 并提示当前用户输入特征信息。 当然用户也可以主动进入 虚拟用户识别卡的启动设置界面请求启动虚拟用户识别卡。
步骤 S408, 获取当前用户输入的特征信息。 当前用户可以在虚拟用户识别 卡的启动设置界面输入特征信息。
步骤 S409, 判断当前用户输入的特征信息与授权用户输入的特征信息是否 匹配, 若是则鉴权成功并执行步骤 S410, 否则鉴权失败并结束流程。
步骤 S410, 若匹配, 则启动授权用户输入的特征信息对应的虚拟用户识别 卡, 并通过虚拟用户识别卡与服务端 200进行通信交互, 此时用户便可通过虚 拟用户识别卡正常使用通信终端的各种功能, 例如可正常拨电话、 上网等。
图 5是本发明第三实施例中虚拟用户识别卡的实现系统的结构示意图, 所 述虚拟用户识别卡的实现系统包括相互通信连接的通信终端 300和服务端 400, 所述通信终端 100可以是手机、 PDA( Personal Digital Assistant,个人数字助理 )、 平板电脑等, 其中:
所述通信终端 300进一步包括:
第二获取模块 302, 用于启动虚拟用户识别卡之前, 获取当前用户输入的特 征信息并发送给服务端。 所述特征信息包括与所述虚拟用户识别卡唯一对应的 生理特征信息或者物理特征信息。 启动虚拟用户识别卡的前提一般是检测到通 信终端 300中的物理用户识别卡不存在或者不正常时, 通信终端 300 自动触发
虚拟用户识别卡的启动流程, 由用户进行选择和设置。 当然, 用户也可以自行 触发虚拟用户识别卡的启动流程, 即使通信终端 300 中的物理用户识别卡处于 正常状态。
所述服务端 400进一步包括:
第二绑定模块 402,用于建立授权用户输入的特征信息与虚拟用户识别卡的 绑定关系。
第二鉴权模块 403 ,用于判断通信终端 300发来的当前用户输入的特征信息 与授权用户输入的特征信息是否匹配, 若匹配则鉴权通过, 否则鉴权失败并结 束流程。 若所述特征信息为生理特征信息, 则第二鉴权模块 403会利用如指紋 识别技术、 人脸识别技术等对生理特征信息进行鉴别。
第二启动模块 404,用于在当前用户输入的特征信息与授权用户输入的特征 信息匹配时, 启动授权用户输入的特征信息对应的虚拟用户识别卡, 通信终端 300通过虚拟用户识别卡与服务端 400进行通信交互,此时用户便可通过虚拟用 户识别卡正常使用通信终端 300的各种功能, 例如可正常拨电话、 上网等。
本实施例中通信终端 300保存虚拟用户识别卡, 服务端 400保存与虚拟用 户识别卡对应的授权用户的特征信息, 并由服务端 400 实现特征信息的鉴权和 虚拟用户识别卡的启动, 通过服务端 400进行鉴权和启动工作, 其具有更好的 安全性和可靠性。
图 6是本发明第四实施例中虚拟用户识别卡的实现系统的结构示意图, 所 述虚拟用户识别卡的实现系统包括相互通信连接的通信终端 300和服务端 400, 其中:
所述通信终端 300进一步包括:
第三存储模块 301 ,用于保存根据物理用户识别卡的用户信息生成的虚拟用 户识别卡。 所述物理用户识别卡包括 SIM卡和 UIM卡等。
第二检测模块 303 ,用于检测所述通信终端 300中的物理用户识别卡是否存 在或正常。
第二界面触发模块 304, 用于若所述物理用户识别卡不存在或不正常时, 触 发显示虚拟用户识别卡的启动设置界面, 并提示当前用户输入特征信息。
第二获取模块 302 , 用于启动虚拟用户识别卡之前, 获取当前用户输入的特 征信息并发送给服务端 400。所述特征信息包括与所述虚拟用户识别卡唯一对应 的生理特征信息或者物理特征信息。 当前用户可以在虚拟用户识别卡的启动设 置界面输入特征信息。
所述服务端 400进一步包括:
第二生成模块 405 , 用于获取物理用户识别卡的用户信息, 并才艮据用户信息 生成虚拟用户识别卡。
发送模块 406 , 用于将虚拟用户识别卡发送给通信终端 300。
第四存储模块 401 , 用于保存授权用户输入的特征信息。 所述特征信息包括 与所述虚拟用户识别卡唯一对应的生理特征信息或者物理特征信息。 将生理特 征信息或物理特征信息预先存储在服务端 400的第二存储模块 401 中, 是为了 后续在服务端 400对启动虚拟用户识别卡的请求进行鉴权。 所述特征信息为物 理特征信息时, 该物理特征信息优选绑定有预定的密码, 即用户需要同时输入 物理特征信息和密码进行鉴权, 以提升安全性。
第二绑定模块 402,用于建立授权用户输入的特征信息与虚拟用户识别卡的 绑定关系。
第二鉴权模块 403 ,用于判断通信终端 300发来的当前用户输入的特征信息 与授权用户输入的特征信息是否匹配, 若匹配则鉴权通过, 否则鉴权失败并结 束流程。
第二启动模块 404,用于在当前用户输入的特征信息与授权用户输入的特征 信息匹配时, 启动授权用户输入的特征信息对应的虚拟用户识别卡, 通信终端 300通过虚拟用户识别卡与服务端 400进行通信交互,此时用户便可通过虚拟用 户识别卡正常使用通信终端的各种功能, 例如可正常拨电话、 上网等。
图 7是本发明第三实施例中虚拟用户识别卡的实现方法的流程图, 其可以 通过如图 5或图 6所示的虚拟用户识别卡的实现系统来实现, 包括步骤如下: 步骤 S701 , 服务端 400建立授权用户输入的特征信息与虚拟用户识别卡的 绑定关系。
步骤 S702 , 启动虚拟用户识别卡之前, 通信终端 300获取当前用户输入的 特征信息并发送给服务端 400。
步骤 S703 , 服务端 400判断当前用户输入的特征信息与授权用户输入的特 征信息是否匹配, 若匹配则鉴权通过, 否则鉴权失败并结束流程。
步骤 S704 , 若匹配, 则服务端 400启动授权用户输入的特征信息对应的虚 拟用户识别卡, 通信终端 300通过虚拟用户识别卡与服务端 400进行通信交互, 此时用户便可通过虚拟用户识别卡正常使用通信终端 300 的各种功能, 例如可 正常拨电话、 上网等。
图 8是本发明第四实施例中虚拟用户识别卡的实现方法的流程图, 其可以 通过如图 6所示的虚拟用户识别卡的实现系统来实现, 包括步骤如下:
步骤 S801 , 服务端 400获取物理用户识别卡的用户信息, 并根据用户信息 生成虚拟用户识别卡。 所述物理用户识别卡包括 SIM卡和 UIM卡等。
步骤 S802, 服务端 400将虚拟用户识别卡发送给通信终端 300。
步骤 S803 , 通信终端 300保存所述虚拟用户识别卡。
步骤 S804 , 服务端 400保存授权用户输入的特征信息。 所述特征信息包括
与所述虚拟用户识别卡唯一对应的生理特征信息或者物理特征信息。 所述特征 信息为物理特征信息时, 物理特征信息绑定有预定的密码。
步骤 S805 , 服务端 400建立授权用户输入的特征信息与虚拟用户识别卡的 绑定关系。
步骤 S806 , 检测通信终端 300中的物理用户识别卡是否存在或正常, 若是 则执行步骤 S808 , 否则执行步骤 S807。
步骤 S807 , 通过物理用户识别卡与服务端 400进行通信交互。
步骤 S808 , 若物理用户识别卡不存在或不正常, 则触发显示虚拟用户识别 卡的启动设置界面, 并提示当前用户输入特征信息。 当然用户也可以主动进入 虚拟用户识别卡的启动设置界面请求启动虚拟用户识别卡。
步骤 S809 , 启动虚拟用户识别卡之前, 通信终端 300获取当前用户输入的 特征信息并发送给服务端 400。当前用户可以在虚拟用户识别卡的所述启动设置 界面中输入特征信息。
步骤 S810 , 服务端 400判断当前用户输入的特征信息与授权用户输入的特 征信息是否匹配, 若匹配则鉴权成功并执行步骤 S81 1 , 否则鉴权失败并结束流 程。
步骤 S811 , 若匹配, 则服务端 400启动授权用户输入的特征信息对应的虚 拟用户识别卡, 通信终端 300通过虚拟用户识别卡与服务端 400进行通信交互, 此时用户便可通过虚拟用户识别卡正常使用通信终端 300 的各种功能, 例如可 正常拨电话、 上网等。
综上所述, 本发明预先在通信终端中保存与物理用户识别卡对应的虚拟用 户识别卡, 并保存授权用户输入的特征信息, 所述特征信息可以是与虚拟用户 识别卡唯一对应的生理特征信息或物理特征信息; 当通信终端中的物理用户识 别卡不存在或者不正常时, 当前用户可以输入特征信息请求启动虚拟用户识别 卡, 若当前用户输入的特征信息与预先保存的授权用户输入的特征信息相匹配, 则启动虚拟用户识别卡与服务端进行通信交互, 便可通过虚拟用户识别卡正常 使用通信终端的各种功能, 从而方便了用户使用, 提升了用户体验。
当然, 本发明还可有其它多种实施例, 在不背离本发明精神及其实质的情 这些相应的改变和变形都应属于本发明所附的权利要求的保护范围。
Claims
1、 一种虚拟用户识别卡的实现方法, 应用于通信终端, 其特征在于, 包括 步骤如下:
建立授权用户输入的特征信息与虚拟用户识别卡的绑定关系;
获取当前用户输入的特征信息;
判断所述当前用户输入的特征信息与所述授权用户输入的特征信息是否匹 配;
若匹配, 则启动所述虚拟用户识别卡, 并通过所述虚拟用户识别卡与服务 端进行通信交互。
2、 根据权利要求 1所述的实现方法, 其特征在于, 所述建立所述授权用户 输入的特征信息与所述虚拟用户识别卡的绑定关系的步骤之前还包括:
保存根据物理用户识别卡的用户信息生成的虚拟用户识别卡;
保存授权用户输入的特征信息。
3、 根据权利要求 2所述的实现方法, 其特征在于, 所述保存根据物理用户 识别卡的用户信息生成的虚拟用户识别卡的步骤之前还包括:
所述通信终端获取所述物理用户识别卡的用户信息, 并根据所述用户信息 生成所述虚拟用户识别卡; 或者
所述服务端获取所述物理用户识别卡的用户信息, 并根据所述用户信息生 成所述虚拟用户识别卡, 并且所述服务端将所述虚拟用户识别卡发送给所述通 信终端。
4、 根据权利要求 1所述的实现方法, 其特征在于, 所述特征信息包括与所 述虚拟用户识别卡唯一对应的生理特征信息或者物理特征信息。
5、 根据权利要求 4所述的实现方法, 其特征在于, 所述特征信息为所述物 理特征信息时, 所述物理特征信息绑定有预定的密码。
6、 根据权利要求 1~5任一项所述的实现方法, 其特征在于, 所述获取当前 用户输入的特征信息的步骤之前还包括:
检测所述通信终端中的所述物理用户识别卡是否存在或正常;
若所述物理用户识别卡不存在或不正常, 则触发显示所述虚拟用户识别卡 的启动设置界面, 并提示当前用户输入特征信息。
7、 一种通信终端, 其特征在于, 包括有:
第一绑定模块, 用于建立授权用户输入的特征信息与虚拟用户识别卡的绑 定关系;
第一获取模块, 用于获取当前用户输入的特征信息;
第一鉴权模块, 用于判断所述当前用户输入的特征信息与所述授权用户输 入的特征信息是否匹配;
第一启动模块, 用于在所述当前用户输入的特征信息与所述授权用户输入 的特征信息匹配时, 启动所述虚拟用户识别卡, 并通过所述虚拟用户识别卡与 服务端进行通信交互。
8、 根据权利要求 7所述的通信终端, 其特征在于, 还包括:
第一存储模块, 用于保存根据物理用户识别卡的用户信息生成的虚拟用户 识别卡;
第二存储模块, 用于保存授权用户输入的特征信息。
9、 根据权利要求 8所述的通信终端, 其特征在于, 所述通信终端还包括第 一生成模块, 用于获取所述物理用户识别卡的用户信息, 并根据所述用户信息 生成所述虚拟用户识别卡; 或者
所述 Λ良务端获取所述物理用户识别卡的用户信息, 才艮据所述用户信息生成 所述虚拟用户识别卡, 并将所述虚拟用户识别卡发送给所述通信终端。
10、 根据权利要求 7所述的通信终端, 其特征在于, 所述特征信息包括与 所述虚拟用户识别卡唯一对应的生理特征信息或者物理特征信息。
11、 根据权利要求 10所述的通信终端, 其特征在于, 所述特征信息为所述 物理特征信息时, 所述物理特征信息绑定有预定的密码。
12、 根据权利要求 7~11任一项所述的通信终端, 其特征在于, 还包括: 第一检测模块, 用于检测所述通信终端中的所述物理用户识别卡是否存在 或正常;
第一界面触发模块, 用于若所述物理用户识别卡不存在或不正常时, 触发 显示所述虚拟用户识别卡的启动设置界面, 并提示当前用户输入特征信息。
13、 一种虚拟用户识别卡的实现方法, 其特征在于, 包括步骤如下: 服务端建立授权用户输入的特征信息与虚拟用户识别卡的绑定关系; 通信终端获取当前用户输入的特征信息并发送给所述服务端;
所述服务端判断所述当前用户输入的特征信息与所述授权用户输入的特征 信息是否匹配;
若匹配, 则所述服务端启动所述虚拟用户识别卡, 所述通信终端通过所述 虚拟用户识别卡与服务端进行通信交互。
14、 根据权利要求 13所述的实现方法, 其特征在于, 所述服务端建立授权 用户输入的特征信息与虚拟用户识别卡的绑定关系的步骤之前还包括:
所述服务端获取所述物理用户识别卡的用户信息, 并根据所述用户信息生 成所述虚拟用户识别卡;
所述服务端将所述虚拟用户识别卡发送给所述通信终端;
通信终端保存所述虚拟用户识别卡;
所述服务端保存授权用户输入的特征信息。
15、 根据权利要求 13所述的实现方法, 其特征在于, 所述特征信息包括与 所述虚拟用户识别卡唯一对应的生理特征信息或者物理特征信息。
16、 根据权利要求 13~15任一项所述的实现方法, 其特征在于, 所述通信 终端获取当前用户输入的特征信息并发送给所述服务端的步骤之前还包括: 所述通信终端检测所述物理用户识别卡是否存在或正常;
若所述物理用户识别卡不存在或不正常, 则所述通信终端触发显示所述虚 拟用户识别卡的启动设置界面, 并提示当前用户输入特征信息。
17、 一种虚拟用户识别卡的实现系统, 其特征在于, 包括相互通信连接的 通信终端和服务端;
所述通信终端进一步包括:
第二获取模块, 用于获取当前用户输入的特征信息并发送给所述服务端; 所述服务端进一步包括:
第二绑定模块, 用于建立授权用户输入的特征信息与虚拟用户识别卡的绑 定关系;
第二鉴权模块, 用于判断所述通信终端发来的所述当前用户输入的特征信 息与所述授权用户输入的特征信息是否匹配;
第二启动模块, 用于在所述当前用户输入的特征信息与所述授权用户输入 的特征信息匹配时, 启动所述虚拟用户识别卡, 所述通信终端通过所述虚拟用 户识别卡与所述服务端进行通信交互。
18、 根据权利要求 17所述的实现系统, 其特征在于, 所述服务端还包括: 第二生成模块, 用于获取所述物理用户识别卡的用户信息, 并根据所述用 户信息生成所述虚拟用户识别卡;
发送模块, 用于将所述虚拟用户识别卡发送给所述通信终端;
第四存储模块, 用于保存授权用户输入的特征信息;
所述通信终端还包括:
第三存储模块, 用于保存所述虚拟用户识别卡。
19、 根据权利要求 17所述的实现系统, 其特征在于, 所述特征信息包括与 所述虚拟用户识别卡唯一对应的生理特征信息或者物理特征信息。
20、 根据权利要求 17~19任一项所述的实现系统, 其特征在于, 所述通信 终端还包括:
第二检测模块, 用于检测所述物理用户识别卡是否存在或正常;
第二界面触发模块,用于若所述物理用户识别卡不存在或不正常时,触发显 示所述虚拟用户识别卡的启动设置界面, 并提示当前用户输入特征信息。
Priority Applications (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/CN2012/084456 WO2014071632A1 (zh) | 2012-11-12 | 2012-11-12 | 虚拟用户识别卡的实现方法、系统及通信终端 |
| CN201280076786.4A CN104838680B (zh) | 2012-11-12 | 2012-11-12 | 虚拟用户识别卡的实现方法、系统及通信终端 |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/CN2012/084456 WO2014071632A1 (zh) | 2012-11-12 | 2012-11-12 | 虚拟用户识别卡的实现方法、系统及通信终端 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2014071632A1 true WO2014071632A1 (zh) | 2014-05-15 |
Family
ID=50683961
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/CN2012/084456 Ceased WO2014071632A1 (zh) | 2012-11-12 | 2012-11-12 | 虚拟用户识别卡的实现方法、系统及通信终端 |
Country Status (2)
| Country | Link |
|---|---|
| CN (1) | CN104838680B (zh) |
| WO (1) | WO2014071632A1 (zh) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN112990446A (zh) * | 2021-05-19 | 2021-06-18 | 神威超算(北京)科技有限公司 | 一种异常团体识别方法、装置和智能芯片 |
Families Citing this family (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN109845215A (zh) * | 2016-11-29 | 2019-06-04 | 华为技术有限公司 | 一种网络安全防护方法及设备 |
Citations (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101222711A (zh) * | 2008-02-02 | 2008-07-16 | 代邦(江西)制卡有限公司 | 支持虚拟sim卡的移动通讯网络系统及其认证方法 |
| CN102457606A (zh) * | 2010-11-02 | 2012-05-16 | 鸿富锦精密工业(深圳)有限公司 | 手机及其防盗方法 |
| CN102625294A (zh) * | 2012-03-31 | 2012-08-01 | 杭州诚智天扬科技有限公司 | 以usb作为虚拟sim卡的移动业务管理方法 |
| JP2012199751A (ja) * | 2011-03-22 | 2012-10-18 | Nec Corp | 管理サーバ、通信システム、管理方法およびプログラム |
Family Cites Families (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| GB2371184B (en) * | 2000-11-17 | 2005-05-18 | Ipwireless Inc | Use of internet web technology for wireless internet access |
| US20080288578A1 (en) * | 2004-04-01 | 2008-11-20 | Nokia Corporation | Method, a Device, and a System for Enabling Data Synchronization Between Multiple Devices |
| DE102007044905A1 (de) * | 2007-09-19 | 2009-04-09 | InterDigital Patent Holdings, Inc., Wilmington | Verfahren und Vorrichtung zur Ermöglichung einer Dienstnutzung und Feststellung der Teilnehmeridentität in Kommunikationsnetzen mittels softwarebasierten Zugangsberechtigungsausweisen (vSIM) |
| CN101222712B (zh) * | 2008-02-02 | 2010-09-08 | 代邦(江西)制卡有限公司 | 支持虚拟sim卡的移动终端及其用户身份认证方法 |
| CN102045427B (zh) * | 2010-12-09 | 2014-12-10 | 中兴通讯股份有限公司 | 一种移动终端管理名片的方法及装置 |
-
2012
- 2012-11-12 CN CN201280076786.4A patent/CN104838680B/zh not_active Expired - Fee Related
- 2012-11-12 WO PCT/CN2012/084456 patent/WO2014071632A1/zh not_active Ceased
Patent Citations (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101222711A (zh) * | 2008-02-02 | 2008-07-16 | 代邦(江西)制卡有限公司 | 支持虚拟sim卡的移动通讯网络系统及其认证方法 |
| CN102457606A (zh) * | 2010-11-02 | 2012-05-16 | 鸿富锦精密工业(深圳)有限公司 | 手机及其防盗方法 |
| JP2012199751A (ja) * | 2011-03-22 | 2012-10-18 | Nec Corp | 管理サーバ、通信システム、管理方法およびプログラム |
| CN102625294A (zh) * | 2012-03-31 | 2012-08-01 | 杭州诚智天扬科技有限公司 | 以usb作为虚拟sim卡的移动业务管理方法 |
Cited By (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN112990446A (zh) * | 2021-05-19 | 2021-06-18 | 神威超算(北京)科技有限公司 | 一种异常团体识别方法、装置和智能芯片 |
| CN112990446B (zh) * | 2021-05-19 | 2021-09-24 | 神威超算(北京)科技有限公司 | 一种异常团体识别方法、装置和智能芯片 |
Also Published As
| Publication number | Publication date |
|---|---|
| CN104838680A (zh) | 2015-08-12 |
| CN104838680B (zh) | 2019-05-14 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN107040927B (zh) | 无线网络热点共享方法及装置、计算机装置和存储介质 | |
| US12081544B2 (en) | Systems and methods for preventing unauthorized network access | |
| CN106992956B (zh) | 一种实现设备间认证的方法、装置和系统 | |
| TW201914256A (zh) | 一種身份驗證方法、裝置及電子設備 | |
| KR20080066956A (ko) | 통신망에 있어서의 사용자 계좌의 원격 활성화 | |
| CN106549973A (zh) | 一种基于生物特征识别的客户端及其工作方法 | |
| US9918223B2 (en) | Fingerprint based communication terminal and method, server and method thereof | |
| CN105554223A (zh) | 一种建立连接的方法及移动终端 | |
| WO2017020426A1 (zh) | 一种基于生物特征识别的通信方法、装置及系统 | |
| CN103795716A (zh) | 登录网络账户的方法、登录网络账户的装置及终端 | |
| JP6383795B2 (ja) | 情報の処理方法、端末、サーバ及び通信方法、システム | |
| CN104768235A (zh) | 一种设备间自动连接的方法和设备 | |
| US12567984B2 (en) | Password recovery method and system, and cloud server and electronic device | |
| CN103414560A (zh) | 应用的启动方法、装置和系统及应用服务器 | |
| CN107437016A (zh) | 应用控制方法及相关产品 | |
| WO2017185658A1 (zh) | 一种安全保护方法、装置、移动终端及电子设备 | |
| CN106295423A (zh) | 一种数据展示方法及客户端 | |
| CN1653757B (zh) | 接入服务提供系统与接入服务提供方法 | |
| CN101854357B (zh) | 网络认证监控方法及系统 | |
| WO2018137309A1 (zh) | 一种无线通信处理方法及装置 | |
| WO2014071632A1 (zh) | 虚拟用户识别卡的实现方法、系统及通信终端 | |
| CN107396348B (zh) | 通话方法和装置 | |
| CN106022160A (zh) | 删除用户数据的方法及装置 | |
| CN107370602A (zh) | 一种用户终端的解密方法及系统 | |
| CN108337385A (zh) | 一种利用安全设备建立通话连接的系统 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 12887930 Country of ref document: EP Kind code of ref document: A1 |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 12887930 Country of ref document: EP Kind code of ref document: A1 |