WO2016000425A1 - 登录第三方站点的方法和服务器 - Google Patents
登录第三方站点的方法和服务器 Download PDFInfo
- Publication number
- WO2016000425A1 WO2016000425A1 PCT/CN2014/094447 CN2014094447W WO2016000425A1 WO 2016000425 A1 WO2016000425 A1 WO 2016000425A1 CN 2014094447 W CN2014094447 W CN 2014094447W WO 2016000425 A1 WO2016000425 A1 WO 2016000425A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- information
- user
- party site
- url address
- user information
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/40—Network security protocols
Definitions
- the present invention relates to the field of communications technologies, and in particular, to a method and a server for logging in to a third-party site.
- traffic distribution portal products which include products such as search engines or URL navigation.
- third-party sites such as page tours, shopping, ticketing, group purchases, etc.
- users need to be logged in.
- they still need to log in at the third-party site.
- it is required that when the user clicks on the link to enter the third-party site when the user is logged in on the traffic distribution portal product, the third-party site can be logged in without being actively logged in.
- a user login session on a traffic distribution portal product can be shared with a third-party site.
- this method has a great security risk due to sharing a user login session to a third-party site.
- the present invention aims to solve at least one of the technical problems in the related art to some extent.
- an object of the present invention is to provide a method for logging in to a third-party site, which can enable a user to click on a link to enter a third-party site when the user is logged in on the traffic distribution portal product, without being actively logged in,
- the three-party site is also logged in and ensures the security of user information.
- Another object of the present invention is to propose a server.
- a method for logging in to a third-party site includes: receiving a request message sent by a traffic distribution portal product, where the request message includes a URL address of a third-party site page that the user wants to access. And the user information on the traffic distribution entry product; obtaining application information of the third-party site according to the URL address, the application information of the third-party site includes an application key, and determining, according to the session information, Whether the user is logged in on the traffic distribution portal product, and obtains the user when in the login state.
- the method for logging in to a third-party site by encrypting the user information, generating a new URL address according to the URL address of the user information encryption string and the third-party site page, and automatically logging in the third party to the user
- the processing of the site enables the user to click on the link to enter the third-party site when the user logs in on the traffic distribution portal product, and can also log in at the third-party site without active login, and since the user information is encrypted, Ensure the security of user information.
- a method for logging in to a third-party site includes: receiving a page request sent by a first server that is preset by a browser according to a new URL address, the page The request includes a new URL address, and the new URL address is generated by the first server according to the user information encryption string and the URL address of the third-party site page, and the user information encryption string is according to the third-party site. Obtained by the application key and the user information, the user information is obtained when the user is in the login state on the traffic distribution portal product; the user information encryption string is obtained according to the new URL address; and the user information encryption string is performed. Decryption processing, and after successful decryption, the user is automatically logged into the processing of the third party site.
- the method for logging in to a third-party site by receiving a new URL address, the new URL address is generated according to the user information encryption string and the URL address of the third-party site page, and from the new Obtain the encrypted string of the user information in the URL address and decrypt it, and then automatically log in to the third-party site after the decryption, so that the user does not need to take the initiative when clicking the link to enter the third-party site when the user logs in on the traffic distribution portal product.
- the login can also be logged in on the third-party site, and the user information can be secured by encrypting the user information.
- the server of the third aspect of the present invention includes: a receiving module, configured to receive a request message sent by a traffic distribution portal product, where the request message includes a URL address of a third-party site page that the user wants to access. And the user is configured to acquire the application information of the third-party site according to the URL address, where the application information of the third-party site includes an application key, and according to the The session information determines whether the user is in the login state on the traffic distribution portal product, and obtains the user information when the login state is in the login state; the encryption module is configured to perform encryption processing according to the application key and the user information, Obtaining a user information encryption string; a generating module, configured to generate a new URL address according to the user information encryption string and the URL address of the third-party site page, and redirect the browser to the new URL address, Having the third-party site server obtain the encrypted string of the user information according to the new URL address and successfully solve the problem
- the user information encryption string The user is then automatically logged into the processing of
- the server of the third aspect of the present invention encrypts the user information by receiving the URL address of the third-party site page that the user sends the traffic distribution entry product and the session information of the user on the traffic distribution entry product, according to the encryption process.
- the user information encryption string and the URL address of the third-party site page generate a new URL address, and the user automatically logs in to the third-party site, so that when the user clicks on the link to enter the third-party site when the user logs in on the traffic distribution portal product, Active login can also be logged in at the third-party site and ensure the security of user information.
- a server includes: a receiving module, configured to receive a page request sent by a first server that is preset by a browser according to a new URL address, the page The request includes a new URL address, and the new URL address is generated by the first server according to the user information encryption string and the URL address of the third-party site page, and the user information encryption string is according to the third-party site.
- the user information is obtained when the user is in the login state on the traffic distribution portal product; the obtaining module is configured to obtain the user information encryption string according to the new URL address; the decryption module, And configured to perform decryption processing on the encrypted string of the user information, and after successfully decrypting, perform automatic processing on the user to log in to the third-party site.
- the server is configured to receive a new URL address, and the new URL address is generated according to the user information encryption string and the URL address of the third-party site page, and obtain the user from the new URL address.
- the information is encrypted and decrypted, and the corresponding user is automatically logged into the third-party site after decryption, so that when the user clicks on the link to enter the third-party site when the user is logged in on the traffic distribution portal product, the active user can log in at the third-party site without active login.
- the third-party site is also logged in, and the user information is encrypted to ensure the security of the user information.
- the embodiment of the invention further provides a server, comprising: one or more processors; a memory; one or more programs, wherein the one or more programs are stored in the memory when the one or more When the processor is executed: the method of any of the first aspect embodiments is performed.
- the embodiment of the invention further provides a server, comprising: one or more processors; a memory; one or more programs, wherein the one or more programs are stored in the memory when the one or more When the processor is executed: the method of any of the embodiments of the second aspect is performed.
- the embodiment of the present invention further provides a non-volatile computer storage medium, where the computer storage medium stores one or more modules, when the one or more modules are executed by one: performing the embodiment as the first aspect The method of any of the preceding claims.
- the embodiment of the present invention further provides a non-volatile computer storage medium, where the computer storage medium stores one or more modules, when the one or more modules are executed by one: performing the embodiment as the second aspect The method of any of the preceding claims.
- FIG. 1 is a schematic flowchart of a method for logging in to a third-party site according to an embodiment of the present invention
- FIG. 2 is a schematic flowchart of a method for logging in to a third-party site according to another embodiment of the present invention
- FIG. 3 is a schematic flowchart of a method for logging in to a third-party site according to another embodiment of the present invention.
- FIG. 4 is a schematic structural diagram of a server according to another embodiment of the present invention.
- FIG. 5 is a schematic structural diagram of a server according to another embodiment of the present invention.
- FIG. 6 is a schematic structural diagram of a server according to another embodiment of the present invention.
- FIG. 7 is a schematic structural diagram of a server according to another embodiment of the present invention.
- FIG. 1 is a schematic flowchart of a method for logging in to a third-party site according to an embodiment of the present invention, where the method includes:
- S11 Receive a request message sent by the traffic distribution portal product, where the request message includes a URL address of a third-party site page that the user wants to access and session information of the user on the traffic distribution portal product.
- traffic distribution portal products such as search engines, website navigation and other products.
- Third-party sites can be web sites such as page tours, shopping, ticketing, and group buying sites.
- the execution entity of this embodiment is a set server, which may be referred to as a No. 1 direct system server.
- the user may click the link of the third party site in the page of the traffic distribution portal product, and trigger the traffic distribution portal product to the No. 1 direct system server. Send a request message.
- S12 Obtain application information of the third-party site according to the URL address, where the application information of the third-party site includes an application key, and determine, according to the session information, whether the user is logged in on the traffic distribution portal product. Status, and get user information when they are logged in.
- the server of the first direct system can obtain the application information of the corresponding third-party site according to the domain name of the URL address.
- the third-party site registers in advance on the first-line direct system server, and the domain name and application information are correspondingly stored in the database of the direct-system service.
- Application information includes, but is not limited to, an application ID, an application key, and whether or not a permission is granted.
- the first direct system server can obtain the application information of the third-party site corresponding to the domain name from the registration information of the pre-stored third-party site.
- the first direct system server determines whether the user is in the login state on the traffic distribution entry product according to the session information in the received request message.
- the first direct system server decrypts the session information to obtain the login status information of the user.
- the first direct server may obtain the login status information corresponding to the ID from the database, and determine whether the login status is based on the login status information.
- the first direct access system server encrypts the user information and the current system timestamp obtained in step S12 by using the application key included in the application information of the third-party site as an encryption key, and the encryption algorithm may be symmetric.
- the encryption algorithm obtains a string of user information encryption.
- S14 Generate a new URL address according to the user information encryption string and the URL address of the third-party site page, and redirect the browser to the new URL address, so that the third-party site server according to the The new URL address acquires the encrypted string of user information and automatically logs the user to the third-party site after successfully decrypting the encrypted string of user information.
- the No. 1 direct system server can add the encrypted string data as a parameter to the obtained URL address of the link clicked by the user to obtain a new URL address.
- the third-party url is http://example.com
- the encrypted string is xxx
- the first direct-access system server can also redirect the browser to the new URL address, and the third-party site server performs automatic login processing for the user. For the subsequent process, refer to the embodiment of FIG. 2.
- the user information is encrypted, and a new URL address is generated according to the URL of the user information encryption string and the third-party site page, and the user is automatically logged into the third-party site to implement the user's access to the traffic distribution portal product.
- you click the link to enter the third-party site when you log in you can log in to the third-party site without active login, and the user information can be encrypted to ensure the security of the user information.
- FIG. 2 is a schematic flowchart of a method for logging in to a third-party site according to another embodiment of the present invention, where the method includes:
- S21 Receive a page request sent by the first server that is preset by the browser according to the new URL address.
- the page request includes a new URL address, and the new URL address is generated by the first server according to the user information encryption string and the URL address of the third-party site page, and the user information encryption string is according to the first Obtained by the application key and user information of the three-party site, the user information is obtained when the user is in the login state on the traffic distribution portal product.
- the preset first server may be the first direct server.
- the third-party site server receives a page request sent by the first server that is preset by the browser according to the new URL address, and the page request includes a new URL address, and the user is obtained from the new URL address parameter.
- Information encryption string may be a web site, such as a page tour, shopping, ticketing, and group buying sites.
- the third-party site server reads the additional parameter in the new URL address and determines the encrypted string as the user information.
- S23 Perform decryption processing on the encrypted string of user information, and after successfully decrypting, perform automatic processing on the third-party site for the user.
- the third-party site decrypts the obtained user information encryption string by using the application key corresponding to the site, and obtains the user information.
- the processing of automatically logging in to the third-party site by the user includes:
- the account can be an account name or an account ID.
- the new URL address is generated according to the user information encryption string and the URL address of the third-party site page, and the user information encryption string is obtained from the new URL address and decrypted.
- the corresponding user is automatically logged into the third-party site, so that when the user clicks on the link to enter the third-party site when the user is logged in on the traffic distribution portal product, the user can also log in at the third-party site without actively logging in. And because the user information is encrypted, the security of the user information can be guaranteed.
- FIG. 3 is a schematic flowchart of a method for logging in to a third-party site according to another embodiment of the present invention, where the method includes:
- S301 The user clicks on a link of a third-party site in the traffic distribution portal product page.
- the third party site can be a web site Points, such as page tours, shopping, ticketing, and group buying sites.
- the traffic distribution portal product sends a request message to the first-number direct system server, where the request message includes a URL address of a third-party site page that the user wants to access and session information of the user on the traffic distribution portal product.
- the user can click the link of the third-party site in the page of the traffic distribution portal product to trigger the traffic distribution portal product to send a request message to the first direct-system server.
- S303 The first direct system server obtains the URL address of the third-party site page from the request message.
- S304 Obtain application information of the third-party site according to the domain name in the URL address of the third-party site page.
- the third-party site registers in advance on the first-line direct system server, and stores the domain name of the URL address displayed by the third party and the application information of the third-party site in the first-number direct system server.
- Application information includes, but is not limited to, an application ID, an application key, and whether or not related rights are enabled.
- the first direct system server can obtain the application information of the third-party site corresponding to the domain name from the registration information of the pre-stored third-party site.
- S305 Determine, according to the session information in the request message, whether the user has logged in to the traffic distribution entry product, if not, execute S308, and if yes, execute S306.
- the session information is encrypted information about the user's login status
- the user login status information can be obtained by decryption to determine whether the user is logged in. or,
- the login status information corresponding to the ID is obtained from the saved information to determine whether the user logs in.
- S306 Acquire basic information of the logged in user.
- the No. 1 direct system server can use the same set of account system as the traffic distribution portal product. Under this account system, the basic information of each user is recorded, so the basic information of the logged-in user can be found.
- Basic information includes, but is not limited to, a user ID, a username, and the like.
- S307 Acquire additional user information according to the permission information in the application information.
- the opened permission information includes obtaining an authorization code
- the obtained additional user information may include an authorization code
- S308 Encrypt the obtained user information according to the application key to obtain a user information encryption string.
- User information includes user basic information and additional user information.
- the user information and the current time stamp of the system can be symmetrically encrypted.
- S309 Generate a new URL address according to the user information encryption string and the URL address of the third-party site page, and redirect the user to the new URL.
- the user information encryption string can be attached to the URL address as a parameter of the URL address of the third-party site page to be redirected to the third-party site server.
- S310 The third-party site server obtains the encrypted string of user information from the new URL address and decrypts it.
- the third-party site server can obtain the user information encryption string from the parameters of the attachment and decrypt the application password of the user.
- the logged-in user Since the logged-in user includes user information when encrypting, it is not included. Therefore, when the user information is obtained during decryption, it can be determined that the user is logged in on the traffic distribution entry product, otherwise, the user is not logged in.
- S312 Display, by the browser, the page in the non-login state of the third-party site server to the user.
- S313 The third-party site server determines whether the user information has been bound to the account system. If yes, execute S315. If no, execute S314.
- the third-party site server may pre-record the binding information, and determine whether the binding is performed by using the pre-recorded information.
- S314 The third-party site server automatically registers a user account under the account system according to the user information and binds to the user information.
- the third-party site server obtains the account under the account system bound to the user according to the decrypted user-related information.
- S316 The third-party site server performs automatic login processing on the user account under the account system.
- the page in the login state of the third-party site server may be displayed to the user through the browser.
- the user information is encrypted, and a new URL address is generated according to the URL of the user information encryption string and the third-party site page, and the user is automatically logged into the third-party site to implement the user's access to the traffic distribution portal product.
- you click the link to enter the third-party site when you log in you can log in to the third-party site without active login, and the user information can be encrypted to ensure the security of the user information.
- FIG. 4 is a schematic structural diagram of a server according to another embodiment of the present invention.
- the server 40 includes a receiving module 41, an obtaining module 42, an encryption module 43, and a generating module 44.
- the receiving module 41 is configured to receive a request message sent by the traffic distribution portal product, where the request message includes a URL address of a third-party site page that the user wants to access and session information of the user on the traffic distribution portal product.
- traffic distribution portal products such as search engines, website navigation and other products.
- Third-party sites can be web sites such as page tours, shopping, ticketing, and group buying sites.
- the execution entity of this embodiment is a set server, which may be referred to as a No. 1 direct system server.
- the user may click the link of the third party site in the page of the traffic distribution portal product, and trigger the traffic distribution portal product to the No. 1 direct system server. Send a request message.
- the obtaining module 42 is configured to obtain application information of a third-party site according to the URL address, where the third-party site should
- the usage information includes an application key, and determines, according to the session information, whether the user is in a login state on the traffic distribution portal product, and acquires user information when in the login state.
- the obtaining module 42 includes a first unit 421.
- the first unit 421 is configured to acquire application information of a third-party site according to the URL address, where the first unit 421 is specific.
- the domain name in the URL address is obtained.
- the application information of the third-party site corresponding to the domain name is obtained from the registration information of the pre-stored third-party site.
- the server of the first direct system can obtain the application information of the corresponding third-party site according to the domain name of the URL address.
- the third-party site registers in advance on the first-line direct system server, and the domain name and application information are correspondingly stored in the database of the direct-system service.
- Application information includes, but is not limited to, an application ID, an application key, and whether or not a permission is granted.
- the first direct system server can obtain the application information of the third-party site corresponding to the domain name from the registration information of the pre-stored third-party site.
- the obtaining module 42 further includes a second unit 422, as shown in FIG. 5, the second unit 422 is configured to determine, according to the session information, whether the user is on the traffic distribution portal product.
- the second unit 422 is specifically configured to perform the session information when the session information is an encrypted string obtained by encrypting login status information of the user on the traffic distribution portal product. Decrypting, obtaining the login status information, and determining whether the login status is based on the login status information; or
- the login status information corresponding to the ID is obtained from the database, and it is determined whether the login status is in the login status according to the login status information.
- the first direct system server determines whether the user is in the login state on the traffic distribution entry product according to the session information in the received request message.
- the first direct system server decrypts the session information to obtain the login status information of the user.
- the first direct server may obtain the login status information corresponding to the ID from the database, and determine whether the login status is based on the login status information.
- the application information of the third-party site further includes the rights information
- the acquiring module further includes a third unit 423, as shown in FIG. 5, the third unit 423 is configured to acquire user information
- the third unit 423 is specifically configured to acquire account information corresponding to the session information from the database, and obtain user information that can be acquired by the rights information from the account information.
- the encryption module 43 is configured to perform encryption processing according to the application key and the user information to obtain user information encryption. string.
- the encryption module 43 is specifically configured to perform symmetric encryption on the user information and the current time of the system by using the application password.
- the first direct access system server encrypts the user information and the current system timestamp obtained in step S12 by using the application key included in the application information of the third-party site as an encryption key, and the encryption algorithm may be symmetric.
- the encryption algorithm obtains a string of user information encryption.
- the generating module 44 is configured to generate a new URL address according to the user information encryption string and the URL address of the third-party site page, and redirect the browser to the new URL address, so that the third-party site server Obtaining the user information encryption string according to the new URL address and automatically logging the user to the third-party site after successfully decrypting the user information encryption string.
- the generating module 44 is specifically configured to add the user information encrypted string as a parameter to the URL address of the third-party site page to obtain a new URL address.
- the No. 1 direct system server can add the encrypted string data as a parameter to the obtained URL address of the link clicked by the user to obtain a new URL address.
- the third-party url is http://example.com
- the encrypted string is xxx
- the first direct-access system server can also redirect the browser to the new URL address, and the third-party site server performs automatic login processing for the user. For the subsequent process, refer to the embodiment of FIG. 2.
- the server in this embodiment may be specifically the first server, that is, the first server, and the specific content may be referred to the description of the first server, and details are not described herein.
- the user information is encrypted, and a new URL address is generated according to the URL of the user information encryption string and the third-party site page, and the user is automatically logged into the third-party site to implement the user's access to the traffic distribution portal product.
- you click the link to enter the third-party site when you log in you can log in to the third-party site without active login, and the user information can be encrypted to ensure the security of the user information.
- FIG. 6 is a schematic structural diagram of a server according to another embodiment of the present invention.
- the device 60 includes a receiving module 61, an obtaining module 62, and a decrypting module 63.
- the receiving module 61 is configured to receive a page request sent by the first server that is preset by the browser according to the new URL address, where the page request includes a new URL address, and the new URL address is the first
- the server is generated according to the user information encryption string and the URL address of the third-party site page, and the user information encryption string is obtained according to the application key and the user information of the third-party site, where the user information is the traffic of the user. Obtained when the distribution portal product is logged in.
- the preset first server may be the first direct server.
- the third-party site server receives a page request sent by the first server that is preset by the browser according to the new URL address, and the page request includes a new URL address, and the user is obtained from the new URL address parameter.
- Information encryption string may be a web site, such as a page tour, shopping, ticketing, and group buying sites.
- the obtaining module 62 is configured to obtain a user information encryption string according to the new URL address.
- the new URL address is obtained by adding the user information encryption string as a parameter to the URL address of the third-party site page, and the obtaining module 62 is specifically configured to read the new URL. An additional parameter in the URL address and determine the encrypted string for the user information.
- the third-party site server reads the additional parameter in the new URL address and determines the encrypted string as the user information.
- the decryption module 63 is configured to perform decryption processing on the encrypted string of user information, and after successfully decrypting, perform automatic processing on the user to log in to the third-party site.
- the decryption module 63 includes a first unit 631. As shown in FIG. 7, the first unit 631 is specifically configured to perform an encryption of the user information by using an application key of the third-party site. Decryption processing to obtain user information.
- the third-party site decrypts the obtained user information encryption string by using the application key corresponding to the site, and obtains the user information.
- the decryption module 63 further includes a second unit 632 for performing automatic processing on the user to the third-party site.
- the second unit 632 is specifically used to Acquiring an account corresponding to the user information in the server of the third-party site; performing automatic login processing on the account, and displaying the page in the login state of the server of the third-party site to the user through a browser.
- the second unit 632 is further specifically configured to determine whether an account name bound to the user information exists in the third-party site server; if yes, the bound account is It is determined as an account corresponding to the user information; if not, an account corresponding to the user information is automatically registered.
- the server of this embodiment may be specifically a third-party site server.
- the server of this embodiment may be specifically a third-party site server.
- the server of the third-party site may be specifically a third-party site server.
- the new URL address is generated according to the user information encryption string and the URL address of the third-party site page, and the user information encryption string is obtained from the new URL address and decrypted.
- the corresponding user is automatically logged into the third-party site, so that when the user clicks on the link to enter the third-party site when the user is logged in on the traffic distribution portal product, the user can also log in at the third-party site without actively logging in. And because the user information is encrypted, the security of the user information can be guaranteed.
- the embodiment of the invention further provides a server, including:
- One or more processors are One or more processors;
- One or more programs the one or more programs being stored in the memory, and when executed by the one or more processors, do the following:
- the URL address acquires the encrypted string of the user information and automatically logs the user to the third-party site after successfully decrypting the encrypted string of the user information.
- the embodiment of the invention further provides a server, including:
- One or more processors are One or more processors;
- One or more programs the one or more programs being stored in the memory, and when executed by the one or more processors, do the following:
- the information encryption string is generated according to the URL address of the third-party site page, and the user information encryption string is obtained according to the application key and the user information of the third-party site, where the user information is located on the traffic distribution portal product. Obtained when logging in to the state;
- the user information encryption string is decrypted, and after successful decryption, the user is automatically logged into the third-party site.
- Embodiments of the present invention also provide a non-volatile computer storage medium, wherein the computer storage medium stores one or more modules when the one or more modules are executed by one:
- the URL address acquires the encrypted string of the user information and automatically logs the user to the third-party site after successfully decrypting the encrypted string of the user information.
- Embodiments of the present invention also provide a non-volatile computer storage medium, wherein the computer storage medium stores one or more modules when the one or more modules are executed by one:
- the information encryption string is generated according to the URL address of the third-party site page, and the user information encryption string is obtained according to the application key and the user information of the third-party site, where the user information is located on the traffic distribution portal product. Obtained when logging in to the state;
- the user information encryption string is decrypted, and after successful decryption, the user is automatically logged into the third-party site.
- portions of the invention may be implemented in hardware, software, firmware or a combination thereof.
- multiple steps or methods may be implemented in software or firmware stored in a memory and executed by a suitable instruction execution system.
- a suitable instruction execution system For example, if implemented in hardware, as in another embodiment, it can be implemented by any one or combination of the following techniques well known in the art: having logic gates for implementing logic functions on data signals. Discrete logic circuits, application specific integrated circuits with suitable combinational logic gates, programmable gate arrays (PGAs), field programmable gate arrays (FPGAs), etc.
- each functional unit in each embodiment of the present invention may be integrated into one processing module, or may be each Units exist physically separately, or two or more units can be integrated into one module.
- the above integrated modules can be implemented in the form of hardware or in the form of software functional modules.
- the integrated modules, if implemented in the form of software functional modules and sold or used as stand-alone products, may also be stored in a computer readable storage medium.
- the above mentioned storage medium may be a read only memory, a magnetic disk or an optical disk or the like.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Information Transfer Between Computers (AREA)
Abstract
本发明提出一种登录第三方站点的方法和装置,该方法包括接收流量分发入口产品发送的请求消息;根据所述URL地址获取第三方站点的应用信息以及在处于登录状态时,获取用户信息;根据应用密钥和所述用户信息进行加密处理,得到用户信息加密串;根据用户信息加密串和第三方站点页面的URL地址生成新的URL地址,并将浏览器重定向到所述新的URL地址上,以使第三方站点服务端对所述用户进行自动登录所述第三方站点的处理。该方法可以实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并保证用户信息的安全性。
Description
相关申请的交叉引用
本申请要求百度在线网络技术(北京)有限公司于2014年07月02日提交的、发明名称为“登录第三方站点的方法和服务器”的、中国专利申请号“201410313240.7”的优先权。
本发明涉及通信技术领域,尤其涉及一种登录第三方站点的方法和服务器。
用户可以通过流量分发入口产品访问第三方站点,流量分发入口产品包括搜索引擎或网址导航等产品。对于很多第三方站点,例如页游、购物、票务、团购等,为了获取真正有价值的服务,需要用户处于登录状态。当用户在流量分发入口产品上处于登录状态时,依然需要在第三方站点上进行登录。为了方便用户使用,需要实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态。
相关技术中,可以将流量分发入口产品上的用户登录会话共享给第三方站点,但是,这种方式由于将用户登录会话共享给第三方站点,存在很大的安全风险。
发明内容
本发明旨在至少在一定程度上解决相关技术中的技术问题之一。
为此,本发明的一个目的在于提出一种登录第三方站点的方法,该方法可以实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并保证用户信息的安全性。
本发明的另一个目的在于提出一种服务器。
为达到上述目的,本发明第一方面实施例提出的登录第三方站点的方法,包括:接收流量分发入口产品发送的请求消息,所述请求消息中包含用户要访问的第三方站点页面的URL地址和用户在所述流量分发入口产品上的会话信息;根据所述URL地址获取第三方站点的应用信息,所述第三方站点的应用信息包括应用密钥,以及,根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,并在处于登录状态时,获取用户
信息;根据所述应用密钥和所述用户信息进行加密处理,得到用户信息加密串;根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,并将浏览器重定向到所述新的URL地址上,以使第三方站点服务端根据所述新的URL地址获取所述用户信息加密串并在成功解密所述用户信息加密串后对所述用户进行自动登录所述第三方站点的处理。
本发明第一方面实施例提出的登录第三方站点的方法,通过对用户信息进行加密处理,根据用户信息加密串和第三方站点页面的URL地址生成新的URL地址,对用户进行自动登录第三方站点的处理,实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并且由于对用户信息进行了加密,可以保证用户信息的安全性。
为达到上述目的,本发明第二方面实施例提出的登录第三方站点的方法,包括:接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所述页面请求中包含新的URL地址,所述新的URL地址是所述第一服务端根据用户信息加密串和第三方站点页面的URL地址生成的,所述用户信息加密串是根据所述第三方站点的应用密钥和用户信息得到的,所述用户信息是用户在流量分发入口产品上处于登录状态时获取的;根据所述新的URL地址获取用户信息加密串;对所述用户信息加密串进行解密处理,并在成功解密后,对所述用户进行自动登录所述第三方站点的处理。
本发明第二方面实施例提出的登录第三方站点的方法,通过接收新的URL地址,该新的URL地址是根据用户信息加密串和第三方站点页面的URL地址生成的,并从该新的URL地址中获取用户信息加密串以及进行解密,在解密后对相应的用户进行自动登录第三方站点的处理,实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并且由于对用户信息进行了加密,可以保证用户信息的安全性。
为达到上述目的,本发明第三方面实施例提出的服务器,包括:接收模块,用于接收流量分发入口产品发送的请求消息,所述请求消息中包含用户要访问的第三方站点页面的URL地址和用户在所述流量分发入口产品上的会话信息;获取模块,用于根据所述URL地址获取第三方站点的应用信息,所述第三方站点的应用信息包括应用密钥,以及,根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,并在处于登录状态时,获取用户信息;加密模块,用于根据所述应用密钥和所述用户信息进行加密处理,得到用户信息加密串;生成模块,用于根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,并将浏览器重定向到所述新的URL地址上,以使第三方站点服务端根据所述新的URL地址获取所述用户信息加密串并在成功解密所述用户信息加密串
后对所述用户进行自动登录所述第三方站点的处理。
本发明第三方面实施例提出的服务器,通过接收流量分发入口产品发送的用户要访问的第三方站点页面的URL地址和用户在流量分发入口产品上的会话信息,对用户信息进行加密处理,根据用户信息加密串和第三方站点页面的URL地址生成新的URL地址,对用户进行自动登录第三方站点的处理,实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并保证用户信息的安全性。
为达到上述目的,本发明第四方面实施例提出的服务器,包括:接收模块,用于接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所述页面请求中包含新的URL地址,所述新的URL地址是所述第一服务端根据用户信息加密串和第三方站点页面的URL地址生成的,所述用户信息加密串是根据所述第三方站点的应用密钥和用户信息得到的,所述用户信息是用户在流量分发入口产品上处于登录状态时获取的;获取模块,用于根据所述新的URL地址获取用户信息加密串;解密模块,用于对所述用户信息加密串进行解密处理,并在成功解密后,对所述用户进行自动登录所述第三方站点的处理。
本发明第四方面实施例提出的服务器,通过接收新的URL地址,该新的URL地址是根据用户信息加密串和第三方站点页面的URL地址生成的,并从该新的URL地址中获取用户信息加密串以及进行解密,在解密后对相应的用户进行自动登录第三方站点的处理,实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并且由于对用户信息进行了加密,可以保证用户信息的安全性。
本发明实施例还提出了一种服务器,包括:一个或者多个处理器;存储器;一个或者多个程序,所述一个或者多个程序存储在所述存储器中,当被所述一个或者多个处理器执行时:执行如第一方面实施例任一项所述的方法。
本发明实施例还提出了一种服务器,包括:一个或者多个处理器;存储器;一个或者多个程序,所述一个或者多个程序存储在所述存储器中,当被所述一个或者多个处理器执行时:执行如第二方面实施例任一项所述的方法。
本发明实施例还提出了一种非易失性计算机存储介质,所述计算机存储介质存储有一个或者多个模块,当所述一个或者多个模块被一个执行时:执行如第一方面实施例任一项所述的方法。
本发明实施例还提出了一种非易失性计算机存储介质,所述计算机存储介质存储有一个或者多个模块,当所述一个或者多个模块被一个执行时:执行如第二方面实施例任一项所述的方法。
本发明附加的方面和优点将在下面的描述中部分给出,部分将从下面的描述中变得明显,或通过本发明的实践了解到。
本发明上述的和/或附加的方面和优点从下面结合附图对实施例的描述中将变得明显和容易理解,其中:
图1是本发明一实施例提出的登录第三方站点的方法的流程示意图;
图2是本发明另一实施例提出的登录第三方站点的方法的流程示意图;
图3是本发明另一实施例提出的登录第三方站点的方法的流程示意图;
图4是本发明另一实施例提出的服务器的结构示意图;
图5是本发明另一实施例提出的服务器的结构示意图;
图6是本发明另一实施例提出的服务器的结构示意图;
图7是本发明另一实施例提出的服务器的结构示意图。
下面详细描述本发明的实施例,所述实施例的示例在附图中示出,其中自始至终相同或类似的标号表示相同或类似的元件或具有相同或类似功能的元件。下面通过参考附图描述的实施例是示例性的,仅用于解释本发明,而不能理解为对本发明的限制。相反,本发明的实施例包括落入所附加权利要求书的精神和内涵范围内的所有变化、修改和等同物。
图1是本发明实施例提出的登录第三方站点的方法的流程示意图,该方法包括:
S11:接收流量分发入口产品发送的请求消息,所述请求消息中包含用户要访问的第三方站点页面的URL地址和用户在所述流量分发入口产品上的会话信息。
其中,流量分发入口产品例如搜索引擎、网址导航等产品。第三方站点可以是web站点,例如页游、购物、票务以及团购类的站点。
本实施例的执行主体是设置的服务器,可以称为一号直达系统服务端,用户可以在流量分发入口产品的页面中点击第三方站点的链接,触发流量分发入口产品向一号直达系统服务端发送请求消息。
S12:根据所述URL地址获取第三方站点的应用信息,所述第三方站点的应用信息包括应用密钥,以及,根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,并在处于登录状态时,获取用户信息。
其中,一号直达系统服务端可以根据URL地址的域名获取对应的第三方站点的应用信息。
第三方站点预先在一号直达系统服务端进行注册,将域名和应用信息对应保存在一号直达系统服务端的数据库中。应用信息包括但不限于应用ID、应用密钥以及是否开通权限等。
一号直达系统服务端可以从预先保存的第三方站点的注册信息中,获取与所述域名对应的第三方站点的应用信息。
进一步,一号直达系统服务端根据接收的请求消息中的会话信息判断用户在流量分发入口产品上是否处于登录状态。
可选的,如果会话信息是对用户在流量分发入口产品上的登录状态信息进行加密后得到的加密串,一号直达系统服务端对会话信息进行解密处理,得到用户的登录状态信息。或者,
可选的,如果会话信息是ID,一号直达系统服务端可以从数据库中获取与该ID对应的登录状态信息,并根据登录状态信息判断是否处于登录状态。
S13:根据所述应用密钥和所述用户信息进行加密处理,得到用户信息加密串。
其中,一号直达系统服务端以第三方站点的应用信息中包含的应用密钥为加密密钥,对步骤S12中获取的用户信息、当前系统时间戳等数据进行加密处理,加密算法可以为对称加密算法,得到用户信息加密串。
S14:根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,并将浏览器重定向到所述新的URL地址上,以使第三方站点服务端根据所述新的URL地址获取所述用户信息加密串并在成功解密所述用户信息加密串后对所述用户进行自动登录所述第三方站点的处理。
其中,一号直达系统服务端可以将加密串数据作为参数,附加到获取的用户点击的链接的URL地址上,得到新的URL地址。例如,第三方url为http://example.com,加密串为xxx,生成的新的url是将加密串当作url参数附加到第三方url上面去,例如,http://example.com?u=xxx。
一号直达系统服务端还可以将浏览器重定向到所述新的URL地址上,第三方站点服务端对用户进行自动登录的处理,后续流程可以参见图2实施例。
本实施例通过对用户信息进行加密处理,根据用户信息加密串和第三方站点页面的URL地址生成新的URL地址,对用户进行自动登录第三方站点的处理,实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并且由于对用户信息进行了加密,可以保证用户信息的安全性。
图2是本发明另一实施例提出的登录第三方站点的方法的流程示意图,该方法包括:
S21:接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所
述页面请求中包含新的URL地址,所述新的URL地址是所述第一服务端根据用户信息加密串和第三方站点页面的URL地址生成的,所述用户信息加密串是根据所述第三方站点的应用密钥和用户信息得到的,所述用户信息是用户在流量分发入口产品上处于登录状态时获取的。
其中,预设的第一服务端可以是一号直达系统服务端。
第三方站点服务端接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所述页面请求中包含新的URL地址,从该新的URL地址参数中获取用户信息加密串。其中,第三方站点可以是web站点,例如页游、购物、票务以及团购类的站点。
S22:根据所述新的URL地址获取用户信息加密串。
其中,第三方站点服务端读取该新的URL地址中附加的参数,并确定为用户信息加密串。
S23:对所述用户信息加密串进行解密处理,并在成功解密后,对所述用户进行自动登录所述第三方站点的处理。
其中,第三方站点采用与本站点对应的应用密钥对获取的用户信息加密串进行解密处理,得到用户信息。
所述对所述用户进行自动登录所述第三方站点的处理,包括:
获取用户在所述第三方站点服务端中与所述用户信息对应的账户;
对所述账户进行自动登录处理,并通过浏览器向用户展示所述第三方站点服务端的登录状态下的页面。
其中,账户可以是账户名或者账户ID等。
所述获取用户在所述第三方站点服务端中与所述用户信息对应的账户,包括:
判断在所述第三方站点服务端中是否存在与所述用户信息绑定的账号名;
如果存在,则将所述绑定的账户确定为与所述用户信息对应的账户;
如果不存在,自动注册一个与所述用户信息对应的账户。
本实施例通过接收新的URL地址,该新的URL地址是根据用户信息加密串和第三方站点页面的URL地址生成的,并从该新的URL地址中获取用户信息加密串以及进行解密,在解密后对相应的用户进行自动登录第三方站点的处理,实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并且由于对用户信息进行了加密,可以保证用户信息的安全性。
图3是本发明另一实施例提出的登录第三方站点的方法的流程示意图,该方法包括:
S301:用户点击流量分发入口产品页面中的第三方站点的链接。
其中,流量分发入口产品例如搜索引擎、网址导航等产品。第三方站点可以是web站
点,例如页游、购物、票务以及团购类的站点。
S302:流量分发入口产品向一号直达系统服务端发送请求消息,所述请求消息中包含用户要访问的第三方站点页面的URL地址和用户在所述流量分发入口产品上的会话信息。
用户可以在流量分发入口产品的页面中点击第三方站点的链接,触发流量分发入口产品向一号直达系统服务端发送请求消息。
S303:一号直达系统服务端从请求消息中获取第三方站点页面的URL地址。
S304:根据所述第三方站点页面的URL地址中的域名,获取所述第三方站点的应用信息。
第三方站点预先在一号直达系统服务端进行注册,将第三方展现的URL地址的域名和第三方站点的应用信息对应保存在一号直达系统服务端中。应用信息包括但不限于应用ID、应用密钥以及是否开通相关的权限等。
一号直达系统服务端可以从预先保存的第三方站点的注册信息中,获取与所述域名对应的第三方站点的应用信息。
S305:根据请求消息中的会话信息,判断用户是否已经登录流量分发入口产品,如果否,执行S308,如果是,则执行S306。
如果会话信息是对用户登录状态的加密信息,那么可以通过解密获取用户登录状态信息以确定用户是否登录。或者,
如果会话信息是ID,则从保存的信息中获取ID对应的登录状态信息,以确定用户是否登录。
S306:获取登录用户的基本信息。
一号直达系统服务端可以与流量分发入口产品使用同一套账户体系,在该账号体系下会记录每个用户的基本信息,因此,可以找到登录用户的基本信息。
基本信息包括但不限于用户ID、用户名等。
S307:根据应用信息中的权限信息,获取额外的用户信息。
例如,开通的权限信息包括获取授权码,则获取的额外用户信息可以包括授权码。
S308:根据应用密钥,对获取的用户信息进行加密处理,得到用户信息加密串。
用户信息包括用户基本信息和额外用户信息,加密时可以对用户信息和系统当前时间戳进行对称加密。
S309:根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,将用户重定向到该新的URL上。
用户信息加密串可以作为第三方站点页面的URL地址的参数,附加到该URL地址上,以重定向到第三方站点服务端。
S310:第三方站点服务端从新的URL地址获取用户信息加密串,并进行解密。
第三方站点服务端可以从附件的参数中获取用户信息加密串,并对自身的应用密码进行解密。
S311:判断解密后是否得到用户信息,如果是,执行S313,如果否,则执行S312。
由于登录用户在加密时会包括用户信息,否则不包括,因此,当解密时获取用户信息后可以确定用户在流量分发入口产品上处于登录状态,否则未登录。
S312:通过浏览器向用户展示第三方站点服务端的非登录状态下的页面。
S313:第三方站点服务端判断该用户信息是否已经与本账号系统做绑定处理,如果是,执行S315,如果否,则执行S314。
其中,第三方站点服务端中可以预先记录绑定信息,通过预先记录的信息判断是否绑定。
S314:第三方站点服务端根据用户信息自动注册一个本账号系统下的用户账号并与用户信息做绑定。
S315:第三方站点服务端根据解密得到的用户相关信息获取与之绑定的本账号系统下的账号。
S316:第三方站点服务端将所述本账号系统下的用户账号做自动登录处理。
在登录处理后,可以通过浏览器向用户展示所述第三方站点服务端的登录状态下的页面。
本实施例通过对用户信息进行加密处理,根据用户信息加密串和第三方站点页面的URL地址生成新的URL地址,对用户进行自动登录第三方站点的处理,实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并且由于对用户信息进行了加密,可以保证用户信息的安全性。
图4是本发明另一实施例提出的服务器的结构示意图,该服务器40包括接收模块41、获取模块42、加密模块43以及生成模块44。
接收模块41用于接收流量分发入口产品发送的请求消息,所述请求消息中包含用户要访问的第三方站点页面的URL地址和用户在所述流量分发入口产品上的会话信息。
其中,流量分发入口产品例如搜索引擎、网址导航等产品。第三方站点可以是web站点,例如页游、购物、票务以及团购类的站点。
本实施例的执行主体是设置的服务器,可以称为一号直达系统服务端,用户可以在流量分发入口产品的页面中点击第三方站点的链接,触发流量分发入口产品向一号直达系统服务端发送请求消息。
获取模块42用于根据所述URL地址获取第三方站点的应用信息,所述第三方站点的应
用信息包括应用密钥,以及,根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,并在处于登录状态时,获取用户信息。
一个实施例中,所述获取模块42包括第一单元421,如图5所示,所述第一单元421用于根据所述URL地址获取第三方站点的应用信息,所述第一单元421具体用于获取所述URL地址中的域名;从预先保存的第三方站点的注册信息中,获取与所述域名对应的第三方站点的应用信息。
其中,一号直达系统服务端可以根据URL地址的域名获取对应的第三方站点的应用信息。
第三方站点预先在一号直达系统服务端进行注册,将域名和应用信息对应保存在一号直达系统服务端的数据库中。应用信息包括但不限于应用ID、应用密钥以及是否开通权限等。
一号直达系统服务端可以从预先保存的第三方站点的注册信息中,获取与所述域名对应的第三方站点的应用信息。
另一个实施例中,所述获取模块42还包括第二单元422,如图5所示,所述第二单元422用于根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,所述第二单元422具体用于当所述会话信息是对所述用户在所述流量分发入口产品上的登录状态信息进行加密后得到的加密串时,对所述会话信息进行解密,得到所述登录状态信息,并根据所述登录状态信息判断是否处于登录状态;或者,
当所述会话信息是ID时,从数据库中获取与所述ID对应的登录状态信息,并根据所述登录状态信息判断是否处于登录状态。
进一步,一号直达系统服务端根据接收的请求消息中的会话信息判断用户在流量分发入口产品上是否处于登录状态。
可选的,如果会话信息是对用户在流量分发入口产品上的登录状态信息进行加密后得到的加密串,一号直达系统服务端对会话信息进行解密处理,得到用户的登录状态信息。或者,
可选的,如果会话信息是ID,一号直达系统服务端可以从数据库中获取与该ID对应的登录状态信息,并根据登录状态信息判断是否处于登录状态。
另一个实施例中,所述第三方站点的应用信息还包括权限信息,所述获取模块还包括第三单元423,如图5所示,所述第三单元423用于获取用户信息,所述第三单元423具体用于从数据库中,获取与所述会话信息对应的账户信息;从所述账户信息中获取所述权限信息能够获取的用户信息。
加密模块43用于根据所述应用密钥和所述用户信息进行加密处理,得到用户信息加密
串。
一个实施例中,所述加密模块43具体用于采用所述应用密码,对所述用户信息和系统当前时间进行对称加密。
其中,一号直达系统服务端以第三方站点的应用信息中包含的应用密钥为加密密钥,对步骤S12中获取的用户信息、当前系统时间戳等数据进行加密处理,加密算法可以为对称加密算法,得到用户信息加密串。
生成模块44用于根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,并将浏览器重定向到所述新的URL地址上,以使第三方站点服务端根据所述新的URL地址获取所述用户信息加密串并在成功解密所述用户信息加密串后对所述用户进行自动登录所述第三方站点的处理。
一个实施例中,所述生成模块44具体用于将所述用户信息加密串作为参数,附加到所述第三方站点页面的URL地址上,得到新的URL地址。
其中,一号直达系统服务端可以将加密串数据作为参数,附加到获取的用户点击的链接的URL地址上,得到新的URL地址。例如,第三方url为http://example.com,加密串为xxx,生成的新的url是将加密串当作url参数附加到第三方url上面去,例如,http://example.com?u=xxx。
一号直达系统服务端还可以将浏览器重定向到所述新的URL地址上,第三方站点服务端对用户进行自动登录的处理,后续流程可以参见图2实施例。
本实施例的服务器可以具体是第一服务端,也就是一号直达系统服务端,其具体内容可以参见上述对第一服务端的描述,在此不再赘述。
本实施例通过对用户信息进行加密处理,根据用户信息加密串和第三方站点页面的URL地址生成新的URL地址,对用户进行自动登录第三方站点的处理,实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并且由于对用户信息进行了加密,可以保证用户信息的安全性。
图6是本发明另一实施例提出的服务器的结构示意图,该装置60包括接收模块61、获取模块62以及解密模块63。
接收模块61用于接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所述页面请求中包含新的URL地址,所述新的URL地址是所述第一服务端根据用户信息加密串和第三方站点页面的URL地址生成的,所述用户信息加密串是根据所述第三方站点的应用密钥和用户信息得到的,所述用户信息是用户在流量分发入口产品上处于登录状态时获取的。
其中,预设的第一服务端可以是一号直达系统服务端。
第三方站点服务端接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所述页面请求中包含新的URL地址,从该新的URL地址参数中获取用户信息加密串。其中,第三方站点可以是web站点,例如页游、购物、票务以及团购类的站点。
获取模块62用于根据所述新的URL地址获取用户信息加密串。
一个实施例中,所述新的URL地址是将所述用户信息加密串作为参数,附加到所述第三方站点页面的URL地址上得到的,所述获取模块62具体用于读取所述新的URL地址中附加的参数,并确定为所述用户信息加密串。
其中,第三方站点服务端读取该新的URL地址中附加的参数,并确定为用户信息加密串。
解密模块63用于对所述用户信息加密串进行解密处理,并在成功解密后,对所述用户进行自动登录所述第三方站点的处理。
一个实施例中,所述解密模块63包括第一单元631,如图7所示,所述第一单元631具体用于采用所述第三方站点的应用密钥,对所述用户信息加密串进行解密处理,得到用户信息。
其中,第三方站点采用与本站点对应的应用密钥对获取的用户信息加密串进行解密处理,得到用户信息。
另一个实施例中,所述解密模块63还包括用于对所述用户进行自动登录所述第三方站点的处理的第二单元632,如图7所示,所述第二单元632具体用于获取用户在所述第三方站点服务端中与所述用户信息对应的账户;对所述账户进行自动登录处理,并通过浏览器向用户展示所述第三方站点服务端的登录状态下的页面。
另一个实施例中,所述第二单元632进一步具体用于判断在所述第三方站点服务端中是否存在与所述用户信息绑定的账号名;如果存在,则将所述绑定的账户确定为与所述用户信息对应的账户;如果不存在,自动注册一个与所述用户信息对应的账户。
本实施例的服务器可以具体是第三方站点服务端,其具体内容可以参见上述对第三方站点服务端的描述,在此不再赘述。
本实施例通过接收新的URL地址,该新的URL地址是根据用户信息加密串和第三方站点页面的URL地址生成的,并从该新的URL地址中获取用户信息加密串以及进行解密,在解密后对相应的用户进行自动登录第三方站点的处理,实现用户在流量分发入口产品上处于登录状态时点击链接进入第三方站点时,无需主动登录就能够在该第三方站点上也处于登录状态,并且由于对用户信息进行了加密,可以保证用户信息的安全性。
本发明实施例还提出了一种服务器,包括:
一个或者多个处理器;
存储器;
一个或者多个程序,所述一个或者多个程序存储在所述存储器中,当被所述一个或者多个处理器执行时进行如下操作:
接收流量分发入口产品发送的请求消息,所述请求消息中包含用户要访问的第三方站点页面的URL地址和用户在所述流量分发入口产品上的会话信息;
根据所述URL地址获取第三方站点的应用信息,所述第三方站点的应用信息包括应用密钥,以及,根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,并在处于登录状态时,获取用户信息;
根据所述应用密钥和所述用户信息进行加密处理,得到用户信息加密串;
根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,并将浏览器重定向到所述新的URL地址上,以使第三方站点服务端根据所述新的URL地址获取所述用户信息加密串并在成功解密所述用户信息加密串后对所述用户进行自动登录所述第三方站点的处理。
本发明实施例还提出了一种服务器,包括:
一个或者多个处理器;
存储器;
一个或者多个程序,所述一个或者多个程序存储在所述存储器中,当被所述一个或者多个处理器执行时进行如下操作:
接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所述页面请求中包含新的URL地址,所述新的URL地址是所述第一服务端根据用户信息加密串和第三方站点页面的URL地址生成的,所述用户信息加密串是根据所述第三方站点的应用密钥和用户信息得到的,所述用户信息是用户在流量分发入口产品上处于登录状态时获取的;
根据所述新的URL地址获取用户信息加密串;
对所述用户信息加密串进行解密处理,并在成功解密后,对所述用户进行自动登录所述第三方站点的处理。
本发明实施例还提出了一种非易失性计算机存储介质,其特征在于,所述计算机存储介质存储有一个或者多个模块,当所述一个或者多个模块被一个执行时:
接收流量分发入口产品发送的请求消息,所述请求消息中包含用户要访问的第三方站点页面的URL地址和用户在所述流量分发入口产品上的会话信息;
根据所述URL地址获取第三方站点的应用信息,所述第三方站点的应用信息包括应用密钥,以及,根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,并在处于登录状态时,获取用户信息;
根据所述应用密钥和所述用户信息进行加密处理,得到用户信息加密串;
根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,并将浏览器重定向到所述新的URL地址上,以使第三方站点服务端根据所述新的URL地址获取所述用户信息加密串并在成功解密所述用户信息加密串后对所述用户进行自动登录所述第三方站点的处理。
本发明实施例还提出了一种非易失性计算机存储介质,其特征在于,所述计算机存储介质存储有一个或者多个模块,当所述一个或者多个模块被一个执行时:
接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所述页面请求中包含新的URL地址,所述新的URL地址是所述第一服务端根据用户信息加密串和第三方站点页面的URL地址生成的,所述用户信息加密串是根据所述第三方站点的应用密钥和用户信息得到的,所述用户信息是用户在流量分发入口产品上处于登录状态时获取的;
根据所述新的URL地址获取用户信息加密串;
对所述用户信息加密串进行解密处理,并在成功解密后,对所述用户进行自动登录所述第三方站点的处理。
需要说明的是,在本发明的描述中,术语“第一”、“第二”等仅用于描述目的,而不能理解为指示或暗示相对重要性。此外,在本发明的描述中,除非另有说明,“多个”的含义是两个或两个以上。
流程图中或在此以其他方式描述的任何过程或方法描述可以被理解为,表示包括一个或更多个用于实现特定逻辑功能或过程的步骤的可执行指令的代码的模块、片段或部分,并且本发明的优选实施方式的范围包括另外的实现,其中可以不按所示出或讨论的顺序,包括根据所涉及的功能按基本同时的方式或按相反的顺序,来执行功能,这应被本发明的实施例所属技术领域的技术人员所理解。
应当理解,本发明的各部分可以用硬件、软件、固件或它们的组合来实现。在上述实施方式中,多个步骤或方法可以用存储在存储器中且由合适的指令执行系统执行的软件或固件来实现。例如,如果用硬件来实现,和在另一实施方式中一样,可用本领域公知的下列技术中的任一项或他们的组合来实现:具有用于对数据信号实现逻辑功能的逻辑门电路的离散逻辑电路,具有合适的组合逻辑门电路的专用集成电路,可编程门阵列(PGA),现场可编程门阵列(FPGA)等。
本技术领域的普通技术人员可以理解实现上述实施例方法携带的全部或部分步骤是可以通过程序来指令相关的硬件完成,所述的程序可以存储于一种计算机可读存储介质中,该程序在执行时,包括方法实施例的步骤之一或其组合。
此外,在本发明各个实施例中的各功能单元可以集成在一个处理模块中,也可以是各
个单元单独物理存在,也可以两个或两个以上单元集成在一个模块中。上述集成的模块既可以采用硬件的形式实现,也可以采用软件功能模块的形式实现。所述集成的模块如果以软件功能模块的形式实现并作为独立的产品销售或使用时,也可以存储在一个计算机可读取存储介质中。
上述提到的存储介质可以是只读存储器,磁盘或光盘等。
在本说明书的描述中,参考术语“一个实施例”、“一些实施例”、“示例”、“具体示例”、或“一些示例”等的描述意指结合该实施例或示例描述的具体特征、结构、材料或者特点包含于本发明的至少一个实施例或示例中。在本说明书中,对上述术语的示意性表述不一定指的是相同的实施例或示例。而且,描述的具体特征、结构、材料或者特点可以在任何的一个或多个实施例或示例中以合适的方式结合。
尽管上面已经示出和描述了本发明的实施例,可以理解的是,上述实施例是示例性的,不能理解为对本发明的限制,本领域的普通技术人员在本发明的范围内可以对上述实施例进行变化、修改、替换和变型。
Claims (28)
- 一种登录第三方站点的方法,其特征在于,包括:接收流量分发入口产品发送的请求消息,所述请求消息中包含用户要访问的第三方站点页面的URL地址和用户在所述流量分发入口产品上的会话信息;根据所述URL地址获取第三方站点的应用信息,所述第三方站点的应用信息包括应用密钥,以及,根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,并在处于登录状态时,获取用户信息;根据所述应用密钥和所述用户信息进行加密处理,得到用户信息加密串;根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,并将浏览器重定向到所述新的URL地址上,以使第三方站点服务端根据所述新的URL地址获取所述用户信息加密串并在成功解密所述用户信息加密串后对所述用户进行自动登录所述第三方站点的处理。
- 根据权利要求1所述的方法,其特征在于,所述根据所述URL地址获取所述第三方站点的应用信息,包括:获取所述URL地址中的域名;从预先保存的第三方站点的注册信息中,获取与所述域名对应的第三方站点的应用信息。
- 根据权利要求1-2任一项所述的方法,其特征在于,所述根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,包括:当所述会话信息是对所述用户在所述流量分发入口产品上的登录状态信息进行加密后得到的加密串时,对所述会话信息进行解密,得到所述登录状态信息,并根据所述登录状态信息判断是否处于登录状态;或者,当所述会话信息是ID时,从数据库中获取与所述ID对应的登录状态信息,并根据所述登录状态信息判断是否处于登录状态。
- 根据权利要求1-3任一项所述的方法,其特征在于,所述第三方站点的应用信息还包括权限信息,所述获取用户信息,包括:从数据库中,获取与所述会话信息对应的账户信息;从所述账户信息中获取所述权限信息能够获取的用户信息。
- 根据权利要求4所述的方法,其特征在于,所述账户信息与所述用户在所述流量分发入口产品上的账户信息一致。
- 根据权利要求1-5任一项所述的方法,其特征在于,所述根据所述应用密钥和所述 用户信息进行加密处理,包括:采用所述应用密码,对所述用户信息和系统当前时间进行对称加密。
- 根据权利要求1-6任一项所述的方法,其特征在于,所述根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,包括:将所述用户信息加密串作为参数,附加到所述第三方站点页面的URL地址上,得到新的URL地址。
- 一种登录第三方站点的方法,其特征在于,包括:接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所述页面请求中包含新的URL地址,所述新的URL地址是所述第一服务端根据用户信息加密串和第三方站点页面的URL地址生成的,所述用户信息加密串是根据所述第三方站点的应用密钥和用户信息得到的,所述用户信息是用户在流量分发入口产品上处于登录状态时获取的;根据所述新的URL地址获取用户信息加密串;对所述用户信息加密串进行解密处理,并在成功解密后,对所述用户进行自动登录所述第三方站点的处理。
- 根据权利要求8所述的方法,其特征在于,所述新的URL地址是将所述用户信息加密串作为参数,附加到所述第三方站点页面的URL地址上得到的,所述根据所述新的URL地址获取用户信息加密串,包括:读取所述新的URL地址中附加的参数,并确定为所述用户信息加密串。
- 根据权利要求8-9任一项所述的方法,其特征在于,所述对所述用户信息加密串进行解密处理,包括:采用所述第三方站点的应用密钥,对所述用户信息加密串进行解密处理,得到用户信息。
- 根据权利要求10所述的方法,其特征在于,所述对所述用户进行自动登录所述第三方站点的处理,包括:获取用户在所述第三方站点服务端中与所述用户信息对应的账户;对所述账户进行自动登录处理,并通过浏览器向用户展示所述第三方站点服务端的登录状态下的页面。
- 根据权利要求11所述的方法,其特征在于,所述获取用户在所述第三方站点服务端中与所述用户信息对应的账户,包括:判断在所述第三方站点服务端中是否存在与所述用户信息绑定的账号名;如果存在,则将所述绑定的账户确定为与所述用户信息对应的账户;如果不存在,自动注册一个与所述用户信息对应的账户。
- 一种服务器,其特征在于,包括:接收模块,用于接收流量分发入口产品发送的请求消息,所述请求消息中包含用户要访问的第三方站点页面的URL地址和用户在所述流量分发入口产品上的会话信息;获取模块,用于根据所述URL地址获取第三方站点的应用信息,所述第三方站点的应用信息包括应用密钥,以及,根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,并在处于登录状态时,获取用户信息;加密模块,用于根据所述应用密钥和所述用户信息进行加密处理,得到用户信息加密串;生成模块,用于根据所述用户信息加密串和所述第三方站点页面的URL地址生成新的URL地址,并将浏览器重定向到所述新的URL地址上,以使第三方站点服务端根据所述新的URL地址获取所述用户信息加密串并在成功解密所述用户信息加密串后对所述用户进行自动登录所述第三方站点的处理。
- 根据权利要求13所述的服务器,其特征在于,所述获取模块包括第一单元,所述第一单元用于根据所述URL地址获取第三方站点的应用信息,所述第一单元具体用于:获取所述URL地址中的域名;从预先保存的第三方站点的注册信息中,获取与所述域名对应的第三方站点的应用信息。
- 根据权利要求13-14任一项所述的服务器,其特征在于,所述获取模块还包括第二单元,所述第二单元用于根据所述会话信息判断所述用户在所述流量分发入口产品上是否处于登录状态,所述第二单元具体用于:当所述会话信息是对所述用户在所述流量分发入口产品上的登录状态信息进行加密后得到的加密串时,对所述会话信息进行解密,得到所述登录状态信息,并根据所述登录状态信息判断是否处于登录状态;或者,当所述会话信息是ID时,从数据库中获取与所述ID对应的登录状态信息,并根据所述登录状态信息判断是否处于登录状态。
- 根据权利要求13-15任一项所述的服务器,其特征在于,所述第三方站点的应用信息还包括权限信息,所述获取模块还包括第三单元,所述第三单元用于获取用户信息,所述第三单元具体用于:从数据库中,获取与所述会话信息对应的账户信息;从所述账户信息中获取所述权限信息能够获取的用户信息。
- 根据权利要求16所述的服务器,其特征在于,所述账户信息与所述用户在所述流量分发入口产品上的账户信息一致。
- 根据权利要求13-17任一项所述的服务器,其特征在于,所述加密模块具体用于:采用所述应用密码,对所述用户信息和系统当前时间进行对称加密。
- 根据权利要求13-18任一项所述的服务器,其特征在于,所述生成模块具体用于:将所述用户信息加密串作为参数,附加到所述第三方站点页面的URL地址上,得到新的URL地址。
- 一种服务器,其特征在于,包括:接收模块,用于接收浏览器被预设的第一服务端根据新的URL地址重定向后发送的页面请求,所述页面请求中包含新的URL地址,所述新的URL地址是所述第一服务端根据用户信息加密串和第三方站点页面的URL地址生成的,所述用户信息加密串是根据所述第三方站点的应用密钥和用户信息得到的,所述用户信息是用户在流量分发入口产品上处于登录状态时获取的;获取模块,用于根据所述新的URL地址获取用户信息加密串;解密模块,用于对所述用户信息加密串进行解密处理,并在成功解密后,对所述用户进行自动登录所述第三方站点的处理。
- 根据权利要求20所述的服务器,其特征在于,所述新的URL地址是将所述用户信息加密串作为参数,附加到所述第三方站点页面的URL地址上得到的,所述获取模块具体用于:读取所述新的URL地址中附加的参数,并确定为所述用户信息加密串。
- 根据权利要求20-21任一项所述的服务器,其特征在于,所述解密模块包括用于对所述用户信息加密串进行解密处理的第一单元,所述第一单元具体用于:采用所述第三方站点的应用密钥,对所述用户信息加密串进行解密处理,得到用户信息。
- 根据权利要求22所述的服务器,其特征在于,所述解密模块还包括用于对所述用户进行自动登录所述第三方站点的处理的第二单元,所述第二单元具体用于:获取用户在所述第三方站点服务端中与所述用户信息对应的账户;对所述账户进行自动登录处理,并通过浏览器向用户展示所述第三方站点服务端的登录状态下的页面。
- 根据权利要求23所述的服务器,其特征在于,所述第二单元进一步具体用于:判断在所述第三方站点服务端中是否存在与所述用户信息绑定的账号名;如果存在,则将所述绑定的账户确定为与所述用户信息对应的账户;如果不存在,自动注册一个与所述用户信息对应的账户。
- 一种服务器,其特征在于,包括:一个或者多个处理器;存储器;一个或者多个程序,所述一个或者多个程序存储在所述存储器中,当被所述一个或者多个处理器执行时:执行如权利要求1-7任一项所述的方法。
- 一种服务器,其特征在于,包括:一个或者多个处理器;存储器;一个或者多个程序,所述一个或者多个程序存储在所述存储器中,当被所述一个或者多个处理器执行时:执行如权利要求8-12任一项所述的方法。
- 一种非易失性计算机存储介质,其特征在于,所述计算机存储介质存储有一个或者多个模块,当所述一个或者多个模块被一个执行时:执行如权利要求1-7任一项所述的方法。
- 一种非易失性计算机存储介质,其特征在于,所述计算机存储介质存储有一个或者多个模块,当所述一个或者多个模块被一个执行时:执行如权利要求8-12任一项所述的方法。
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN201410313240.7A CN104168262B (zh) | 2014-07-02 | 2014-07-02 | 登录第三方站点的方法和服务器 |
| CN201410313240.7 | 2014-07-02 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2016000425A1 true WO2016000425A1 (zh) | 2016-01-07 |
Family
ID=51911886
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/CN2014/094447 Ceased WO2016000425A1 (zh) | 2014-07-02 | 2014-12-19 | 登录第三方站点的方法和服务器 |
Country Status (2)
| Country | Link |
|---|---|
| CN (1) | CN104168262B (zh) |
| WO (1) | WO2016000425A1 (zh) |
Cited By (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN112329034A (zh) * | 2020-11-02 | 2021-02-05 | 杭州当虹科技股份有限公司 | 一种基于应用平台可控制访问策略的应用代理方法 |
| CN113344567A (zh) * | 2021-06-23 | 2021-09-03 | 支付宝(杭州)信息技术有限公司 | 一种聚合码的支付页面的访问方法、装置、设备及介质 |
| CN113515395A (zh) * | 2021-06-16 | 2021-10-19 | 国云科技股份有限公司 | 一种基于多云管理平台的应用接入方法及装置 |
| CN113965352A (zh) * | 2021-09-18 | 2022-01-21 | 网宿科技股份有限公司 | 第三方网站登录方法、装置、电子设备和存储介质 |
Families Citing this family (10)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN104168262B (zh) * | 2014-07-02 | 2017-08-18 | 百度在线网络技术(北京)有限公司 | 登录第三方站点的方法和服务器 |
| CN105187457A (zh) * | 2015-10-27 | 2015-12-23 | 上海斐讯数据通信技术有限公司 | 基于客户端的账户自动注册方法、系统及服务器端 |
| CN105516208B (zh) * | 2016-01-28 | 2018-09-28 | 邱铭钗 | 一种有效防止网络攻击的web网站链接动态隐藏方法 |
| CN105931498A (zh) * | 2016-06-06 | 2016-09-07 | 杭州领课科技有限公司 | 一种基于移动终端的外语学习平台的运营方法 |
| CN106909826B (zh) * | 2017-02-23 | 2019-12-27 | 北京天融信网络安全技术有限公司 | 口令代填装置及系统 |
| CN108521415A (zh) * | 2018-03-30 | 2018-09-11 | 深圳市富途网络科技有限公司 | 一种第三方帐号登录注册实现方法 |
| CN108650239A (zh) * | 2018-04-17 | 2018-10-12 | 新大陆(福建)公共服务有限公司 | 一种OAuth协议的认证方法 |
| CN112398736B (zh) * | 2020-10-20 | 2023-02-21 | 南京欣网互联网络科技有限公司 | 一种根据业务参数实现服务路由的动态选择的方法及系统 |
| CN115314298B (zh) * | 2022-08-09 | 2025-08-22 | 杭州电子科技大学 | 一种利用加解密方法降低空间复杂度的网页地址重写方法 |
| CN116896473A (zh) * | 2023-08-02 | 2023-10-17 | 亿咖通(湖北)技术有限公司 | 第三方应用系统登录方法、装置、设备及存储介质 |
Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20040163087A1 (en) * | 2003-02-14 | 2004-08-19 | Carl Sandland | Computer program code and method for delivering external data to a process running on a virtual machine |
| CN102624737A (zh) * | 2012-03-27 | 2012-08-01 | 武汉理工大学 | 单点登录系统中针对Form身份鉴别的单点登录集成方法 |
| CN103685282A (zh) * | 2013-12-18 | 2014-03-26 | 飞天诚信科技股份有限公司 | 一种基于单点登录的身份认证方法 |
| US20140165150A1 (en) * | 2012-12-07 | 2014-06-12 | Frank Brunswig | Configuring and monitoring a single sign-on system |
| CN104168262A (zh) * | 2014-07-02 | 2014-11-26 | 百度在线网络技术(北京)有限公司 | 登录第三方站点的方法和服务器 |
Family Cites Families (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR100633184B1 (ko) * | 2004-04-06 | 2006-10-12 | 엘지전자 주식회사 | 영상표시기기의 메뉴설정장치 및 방법 |
| CN102469075A (zh) * | 2010-11-09 | 2012-05-23 | 中科正阳信息安全技术有限公司 | 一种基于web单点登录的集成认证方法 |
| CN102710759B (zh) * | 2012-05-22 | 2015-04-15 | 中国联合网络通信集团有限公司 | Web服务器、业务登录方法及系统 |
-
2014
- 2014-07-02 CN CN201410313240.7A patent/CN104168262B/zh active Active
- 2014-12-19 WO PCT/CN2014/094447 patent/WO2016000425A1/zh not_active Ceased
Patent Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20040163087A1 (en) * | 2003-02-14 | 2004-08-19 | Carl Sandland | Computer program code and method for delivering external data to a process running on a virtual machine |
| CN102624737A (zh) * | 2012-03-27 | 2012-08-01 | 武汉理工大学 | 单点登录系统中针对Form身份鉴别的单点登录集成方法 |
| US20140165150A1 (en) * | 2012-12-07 | 2014-06-12 | Frank Brunswig | Configuring and monitoring a single sign-on system |
| CN103685282A (zh) * | 2013-12-18 | 2014-03-26 | 飞天诚信科技股份有限公司 | 一种基于单点登录的身份认证方法 |
| CN104168262A (zh) * | 2014-07-02 | 2014-11-26 | 百度在线网络技术(北京)有限公司 | 登录第三方站点的方法和服务器 |
Cited By (7)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN112329034A (zh) * | 2020-11-02 | 2021-02-05 | 杭州当虹科技股份有限公司 | 一种基于应用平台可控制访问策略的应用代理方法 |
| CN112329034B (zh) * | 2020-11-02 | 2024-02-23 | 杭州当虹科技股份有限公司 | 一种基于应用平台可控制访问策略的应用代理方法 |
| CN113515395A (zh) * | 2021-06-16 | 2021-10-19 | 国云科技股份有限公司 | 一种基于多云管理平台的应用接入方法及装置 |
| CN113515395B (zh) * | 2021-06-16 | 2024-01-02 | 国云科技股份有限公司 | 一种基于多云管理平台的应用接入方法及装置 |
| CN113344567A (zh) * | 2021-06-23 | 2021-09-03 | 支付宝(杭州)信息技术有限公司 | 一种聚合码的支付页面的访问方法、装置、设备及介质 |
| CN113965352A (zh) * | 2021-09-18 | 2022-01-21 | 网宿科技股份有限公司 | 第三方网站登录方法、装置、电子设备和存储介质 |
| CN113965352B (zh) * | 2021-09-18 | 2023-12-01 | 网宿科技股份有限公司 | 第三方网站登录方法、装置、电子设备和存储介质 |
Also Published As
| Publication number | Publication date |
|---|---|
| CN104168262B (zh) | 2017-08-18 |
| CN104168262A (zh) | 2014-11-26 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN104168262B (zh) | 登录第三方站点的方法和服务器 | |
| JP6941146B2 (ja) | データセキュリティサービス | |
| JP5978759B2 (ja) | サービス要求装置、サービス提供システム、サービス要求方法およびサービス要求プログラム | |
| EP2696557B1 (en) | System and method for accessing third-party applications based on cloud platform | |
| US9129125B2 (en) | Data sharing method and device | |
| TWI510066B (zh) | 用於安全串流媒體內容之系統和方法 | |
| ES2877110T3 (es) | Procedimiento y sistema de obtención de información de identificación en un dispositivo móvil | |
| JP6678457B2 (ja) | データセキュリティサービス | |
| US20140122866A1 (en) | Crypto Proxy for Cloud Storage Services | |
| US20170257215A1 (en) | Encrypted password transport across untrusted cloud network | |
| US20120163598A1 (en) | Session secure web content delivery | |
| JP6546100B2 (ja) | サービス提供方法、サービス要求方法、情報処理装置、及び、クライアント装置 | |
| CN103634399B (zh) | 一种实现跨域数据传输的方法和装置 | |
| WO2017036146A1 (zh) | 授权访问方法以及使用该方法的设备 | |
| CN106559405B (zh) | 一种Portal认证方法和设备 | |
| WO2020062667A1 (zh) | 数据资产管理方法、数据资产管理装置及计算机可读介质 | |
| WO2017096887A1 (zh) | 防盗链的方法及装置 | |
| WO2018196257A1 (zh) | 一种录像存储、访问方法及录像存储系统 | |
| CN107483495A (zh) | 一种大数据集群主机管理方法、管理系统及服务端 | |
| WO2021095384A1 (ja) | 情報処理装置、端末装置および検索方法 | |
| CN106470103B (zh) | 一种客户端发送加密url请求的方法和系统 | |
| KR101541165B1 (ko) | 모바일 메시지 암호화 방법, 이 방법을 수행하는 프로그램을 기록한 컴퓨터 판독가능 기록매체 및 이 방법을 저장한 다운로드 서버 | |
| CN105187426B (zh) | 用于基于认证信息实现跨域访问的方法和系统 | |
| CN103548021B (zh) | 内容发布的控制系统 | |
| WO2025251977A1 (zh) | 一种数字版权数据保护方法、装置、设备及存储介质 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 14896617 Country of ref document: EP Kind code of ref document: A1 |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 14896617 Country of ref document: EP Kind code of ref document: A1 |