WO2017065576A1 - User authentication method and system, which use variable keypad - Google Patents

User authentication method and system, which use variable keypad Download PDF

Info

Publication number
WO2017065576A1
WO2017065576A1 PCT/KR2016/011593 KR2016011593W WO2017065576A1 WO 2017065576 A1 WO2017065576 A1 WO 2017065576A1 KR 2016011593 W KR2016011593 W KR 2016011593W WO 2017065576 A1 WO2017065576 A1 WO 2017065576A1
Authority
WO
WIPO (PCT)
Prior art keywords
authentication
fingerprint
information
password
user
Prior art date
Application number
PCT/KR2016/011593
Other languages
French (fr)
Korean (ko)
Inventor
박경양
Original Assignee
주식회사 하렉스인포텍
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 주식회사 하렉스인포텍 filed Critical 주식회사 하렉스인포텍
Publication of WO2017065576A1 publication Critical patent/WO2017065576A1/en

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F3/00Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
    • G06F3/01Input arrangements or combined input and output arrangements for interaction between user and computer
    • G06F3/048Interaction techniques based on graphical user interfaces [GUI]
    • G06F3/0487Interaction techniques based on graphical user interfaces [GUI] using specific features provided by the input device, e.g. functions controlled by the rotation of a mouse with dual sensing arrangements, or of the nature of the input device, e.g. tap gestures based on pressure sensed by a digitiser
    • G06F3/0488Interaction techniques based on graphical user interfaces [GUI] using specific features provided by the input device, e.g. functions controlled by the rotation of a mouse with dual sensing arrangements, or of the nature of the input device, e.g. tap gestures based on pressure sensed by a digitiser using a touch-screen or digitiser, e.g. input of commands through traced gestures
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/32User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/36User authentication by graphic or iconic representation

Definitions

  • the present invention relates to a method and system for authenticating a user, and more particularly, to a method and a system for authenticating a user to receive a password and fingerprint information through a variable keypad in a mobile terminal and to transmit the same to a server. will be.
  • a method for supplementing the problem of using a fixed keypad is an authentication method using a variable keypad.
  • the variable keypad method since the input button arrangement of the keypad is changed every time the user connects, even if a third party finds out a location such as a password that the user inputs on the keypad, it is difficult to find out the password using this.
  • the present invention has been made in view of the above-described technical background, and a system and method for preventing unauthorized use of a third party by transmitting location information and fingerprint information of a variable keypad together when a password is transmitted from a portable terminal to a user authentication server. To provide that purpose.
  • a password and fingerprint information mixed authentication server generates a variable keypad including an encryption key and a fingerprint input unit for receiving a user's fingerprint, wherein each position of the encryption key is A variable keypad generation unit for generating a variable at every generation; An authentication information storage unit for storing authentication information of the mobile terminal user; And providing the generated information of the variable keypad to a remote portable terminal, receiving location information of the encryption key and fingerprint information input by the user in the fingerprint input unit according to the order input by the user from the portable terminal. It characterized in that it comprises an authentication performing unit that performs the authentication.
  • a personal authentication mobile terminal including a cryptographic key and a fingerprint input unit, and a display unit for displaying a variable keypad which is generated such that each position of the cryptographic key is changed at every generation; And a controller configured to receive the information of the variable keypad from the identity authentication server, and transmit the position information of the encryption key, the input order of the encryption key, and the fingerprint information to the identity authentication server.
  • a password and fingerprint information mixed identity authentication method comprising: generating a variable keypad including an encryption key and a fingerprint input unit, and generating a variable key at each location of the encryption key; Transmitting the generated variable keypad to a mobile terminal; Receiving location information of the encryption key and fingerprint information input by the user to the fingerprint input unit according to the order input by the user from the portable terminal; And performing authentication based on the received location information of the encryption key and the fingerprint information.
  • the location information of the keypad is transmitted instead of the password itself, the password cannot be found by hacking, and the fingerprint information is sent out together, so even if the password is leaked, the user can be further authenticated by the fingerprint information to improve security. It has an effect.
  • FIG. 1 is a view showing an authentication system consisting of a mobile terminal and an authentication server according to an embodiment of the present invention.
  • FIG. 2 is a flow chart of a user authentication method according to an embodiment of the present invention.
  • FIG. 3 is a view of the generation of a variable keypad that changes every time the creation according to an embodiment of the present invention.
  • Figure 4 is a view showing the coordinates on the X-Y plane of the variable keypad according to an embodiment of the present invention.
  • FIG. 5 is a flowchart illustrating a procedure for extracting a password from an encryption key and performing authentication according to an embodiment of the present invention.
  • FIG. 6 is a view showing a display unit of a mobile terminal displaying a variable keypad and a fingerprint input unit according to an embodiment of the present invention.
  • FIG. 7 is a view showing a display unit of a mobile terminal in which the fingerprint input unit is displayed as a pop-up window according to an embodiment of the present invention.
  • FIG. 8 is a view showing a face recognition portion is added with a variable keypad according to another embodiment of the present invention.
  • FIG. 9 illustrates authentication using an identifier of a variable pad according to another embodiment of the present invention.
  • FIG. 1 is a block diagram showing a password and fingerprint information mixed identity authentication system according to an embodiment of the present invention.
  • the password and fingerprint information mixed identity authentication system includes a mobile terminal 100 and an identity verification server 200.
  • the identity authentication server 200 includes a variable keypad generator 210, an authentication performer 220, and an authentication information storage 230.
  • the variable keypad generation unit 210 generates a variable keypad including an encryption key and a fingerprint input unit.
  • the variable keypad generation unit 210 generates a variable keypad so that the positions of the numeric keys and the character keys constituting the encryption key are variable at every variable keypad generation.
  • the position of the fingerprint input unit may be generated to be changed every time the variable keypad is generated.
  • the authentication unit 220 transmits the configuration information of each encryption key, which is the information of the generated variable keypad, to the remote mobile terminal 100
  • the mobile terminal 100 uses the authentication information such as password and fingerprint information from the user. Get input.
  • the authentication performing unit 220 generates a plurality of variable keypads in advance in addition to a method of generating a variable keypad whenever necessary, and assigns an identifier to each variable keypad in advance so that the authentication keypad 220 is shared with the mobile terminal 100.
  • a method of transmitting only an identifier to the mobile terminal 100 may be used.
  • the authentication performing unit 220 receives the location information and the fingerprint information of the encryption key in the order input by the user from the mobile terminal 100 and performs identity authentication based on this. In some cases, when the location of the fingerprint input unit is also variable, the location information of the fingerprint input unit may also be received and used for identity verification.
  • the authentication performing unit 220 the position information of the encryption key according to the order input by the user from the mobile terminal 100, such as a smart phone, that is, as shown in Figure 4 (a) 4, 3, 1, If 2 is input, the identification coordinates of the corresponding encryption key (0.5, 2.5), (3.5, 3.5), (1.5, 3.5), (2.5, 3.5) and fingerprint information are received and authenticated based on this.
  • the authentication performing unit 220 stores the location information and the input order of each encryption key corresponding to the password and the location information of the fingerprint input unit every time the variable keypad is generated, and the encryption key according to the order input by the user from the mobile terminal 100.
  • authentication is performed by comparing the location information of the previously stored encryption key, location information and fingerprint information of the fingerprint input unit.
  • the location information of the corresponding encryption key is (0.5, 2.5), (3.5, 3.5), (1.5, 3.5) according to FIG. , (2.5, 3.5) and the input order is same as above.
  • the positional information of the fingerprint input unit becomes (1.5, 2.5).
  • the fingerprint input scan sensor When the user touches the fingerprint portion of the finger where the fingerprint input unit is located, the fingerprint input scan sensor operates to acquire the fingerprint image of the user, and acquires the location information (1.5, 2.5) of the fingerprint input unit.
  • the fingerprint is not input in order, but the fingerprint is input in an arbitrary order so that the password cannot be known only by the location information.
  • the user enters passwords 4 and 3 in order, then enters a fingerprint, and then enters the remaining passwords 1 and 2. Then, the location information of the encryption key and the fingerprint input unit becomes (0.5, 2.5), (3.5, 3.5), (1.5, 2.5), (1.5, 3.5), (2.5, 3.5) according to FIG. 4 (a). Even if you hack the 4 digit password can not be found.
  • the authentication performing unit 220 knows the location of the fingerprint input unit (1.5, 2.5), it is possible to restore the password 4, 3, 1, 2 from the location information of the encryption key except this.
  • the fingerprint input unit may not appear on a portion of the variable keypad but may appear separately in the form of a pop-up window. In this case, it is possible to adjust the size of the pop-up window that the fingerprint input unit appears, it is also possible to use any finger, such as the thumb in addition to the index finger.
  • FIG. 7 shows a fingerprint input unit in the form of a pop-up window.
  • the fingerprint input unit appears as a pop-up window as shown in FIG. It is possible to input to the fingerprint input unit.
  • the fingerprint input unit is a touch screen input form, and when a user touches a fingerprint of a finger and a predetermined time (for example, 1 second or more) elapses, a fingerprint input scan sensor is automatically operated to obtain a fingerprint image of the user.
  • a predetermined time for example, 1 second or more
  • the fingerprint input unit When the fingerprint input unit is configured as a capacitive touch screen, when the user touches the screen for fingerprint input, the fingerprint input unit may determine whether electricity flows to the finger to be touched, thereby determining whether the finger is a real human finger. By doing so, the user's fingerprint can be copied to rubber or silicone, thereby preventing the user from entering the fingerprint input unit, thereby increasing security.
  • the authentication performing unit 220 receives the location information and the input order of the encryption key for the password from the mobile terminal 100 according to the order input by the user, the location information and the fingerprint information of the fingerprint input unit, and the authentication information storage unit ( Authentication is performed by comparing the authentication information including the location information, the input order, the location information of the encryption key, and the fingerprint information previously stored in 230.
  • the authentication performing unit 220 compares the position of the feature point of the fingerprint image received from the terminal device 100 with the position of the feature point of the fingerprint stored in the authentication information storage unit 230, generates statistics and calculates a score through the calculation. If a score is equal to or greater than a predetermined threshold (eg, 80%), the same fingerprint is determined.
  • a predetermined threshold eg, 80%
  • Fingerprint recognition technology is a technology that recognizes and reads the curvature of the fingerprint reflected by shooting light on the fingerprint. This technology is used in a number of places because it allows for quick scans by simply placing a finger on the scanner's surface.
  • Fingerprint recognition technology recognizes various fingerprint types for each person, scans the split points, connected points, and end points of the fingerprint, converts the characteristics of each fingerprint into coordinates, and checks the identity by comparing with existing data.
  • an input device for fingerprint recognition there are an optical method using a prism or a hologram, and a non-optical method that detects heat, pressure, electric field or ultrasonic waves of a finger.
  • Fingerprint recognition technology is cheaper than other biometric technologies for sensors and semiconductor chips that store and identify fingerprints, and its technology is relatively fast and has a wide range of applications.
  • Advantages of fingerprint recognition include relatively high recognition rates within 0.5% of error rate and fast verification speed within 1 second.
  • the advantages of fingerprint recognition are water solubility, convenience and reliability.
  • the authentication information storage unit 230 stores passwords, fingerprint information, etc. of users who use the mobile terminal.
  • variable keypad generation unit 210 stores the authentication keys including the encryption keys of the variable keypad, the location information of the encryption key, the location information and the fingerprint information of the fingerprint input unit.
  • the mobile terminal 100 may include a display unit 120 including a variable keypad 110 and a control unit 130, and further include a camera unit 140.
  • the mobile terminal 100 includes not only a mobile phone but also a smartphone, a mobile phone, a tablet PC, a laptop, a mobile credit card payment terminal, a bank ATM, a pharmacy, a kiosk installed in a government office, and the like.
  • variable keypad 110 changes the position of each encryption key and the position of the fingerprint input unit at every generation.
  • the variable keypad 110 is generated by the variable keypad generation unit 210 of the identity authentication server 200, and the variable keypad 110 of the mobile terminal 100 is the variable keypad 110 received from the identity authentication server 200. ) Is to display.
  • the display unit 120 displays the variable keypad 110.
  • the encryption key included in the variable keypad has a different position every time it is generated, and the position of the fingerprint input unit may be fixed.
  • FIG. 6 illustrates a state in which the variable keypad 110 and the fingerprint input unit are displayed on the display unit 120.
  • 6 (a) shows a state before a user inputs a password and a fingerprint
  • FIG. 6 (b) shows a state after the user inputs a password and a fingerprint.
  • the password entered is asterisk (*) for security.
  • the control unit 130 is provided with the information of the variable keypad from the identity authentication server 200, the authentication key position information received from the user, the encryption key input order, the location information and fingerprint information of the fingerprint input unit identity authentication server 200 To send.
  • the mobile terminal 100 may further include a camera unit 140, which captures a direction toward the user. This is to use a face of a user who inputs authentication information in addition to the input of the variable keypad 110 as the authentication information.
  • the camera unit 140 receives a command of the controller 130 while the user inputs the variable keypad 110 to photograph the face of the user.
  • the user terminal 100 follows the guidelines of the contour of the face displayed on the display unit 120. ), You can take a picture of the face according to the guidelines.
  • FIG. 8 is a view showing recognition of a user's face for face recognition together with the variable keypad 110 and a fingerprint input unit.
  • the face outline is presented as shown in FIG. 8 (a) and the user fits the face, the image of the face for face recognition is completed as shown in FIG. 8 (b).
  • the controller 130 transmits the photographed face image to the identity verification server 200, and the identity verification server 200 may perform additional authentication using the facial image along with other authentication information.
  • FIG. 2 is a flowchart illustrating a procedure of a password and fingerprint information mixed authentication method according to an embodiment of the present invention.
  • variable keypad including an encryption key and a fingerprint input unit is generated.
  • Each position of the encryption key and a position of the fingerprint input unit may be changed at every generation (S110).
  • the generated variable keypad is transmitted to the mobile terminal 100 together with the generated information (S120), and the user inputs a password and a fingerprint to the variable keypad.
  • the user authentication server 200 receives the location information of the encryption key, the location information of the fingerprint input unit and the fingerprint information according to the order input by the user from the mobile terminal 100 (S130) and performs identity authentication based on this (S140). .
  • the user does not enter all four-digit passwords, but only a portion of the password, such as 43 in the front two, 12 in the second 12, 41 in the first and third.
  • the position of the password becomes (0.5, 2.5), (3.5, 3.5) in FIG. 4 (a), and based on the position and input order of the password, fingerprint information, etc. Perform identity verification.
  • the face recognition information of the user may be additionally used for authentication as described above.
  • the amount of data to be authenticated is relatively small compared to the location information of the entire encryption key, thereby improving the operation speed, and the total number of encryption keys to be input. It is relatively small compared to the above, and thus user convenience can be improved.
  • Figure 3 shows that the position of each of the encryption key and the fingerprint input unit in the variable keypad including the encryption key and the fingerprint input unit is variable according to the embodiment of the present invention
  • Figure 3 (a) is the first variable keypad 3
  • (b) shows that the position of the encryption key and the fingerprint input unit is changed when it is generated.
  • FIG. 5 is a flowchart illustrating a method of extracting a password from a location of an encryption key and performing a user authentication according to an embodiment of the present invention.
  • the password is stored in the authentication server in advance, and when the location information of the password is received from the mobile terminal, the password is extracted from the location information and the input order of the received password, and the extracted password is compared with the password stored in the authentication storage. It is to perform authentication.
  • the authentication performing unit receives the position of the encryption key according to the order input by the member from the mobile terminal and extracts the password input by the member (S510).
  • the authentication performing unit compares the extracted password and the received fingerprint information with the password and fingerprint information stored in the authentication information storage unit to perform authentication (S520).
  • FIG. 8 is a diagram illustrating photographing a user's face and transmitting the photographed face image to the user authentication server 200 according to another embodiment of the present invention.
  • the controller 130 of the mobile terminal 100 controls the camera unit 140 to photograph the front user's face, and the camera unit 140 captures the user's face according to the instruction of the controller 130.
  • the camera unit 140 adjusts the illuminance using the flash of the mobile terminal 100 before photographing the face, the eyes of the person respond to the widening or narrowing of the pupils, so if checked, the user's face photographed in advance It is possible to prevent the manipulation of the authentication information using the can improve the security.
  • FIG. 9 is a diagram illustrating performing primary authentication through an identifier corresponding to a variable keypad according to an embodiment of the present invention.
  • FIG. 9 (a) is a view showing an identifier assigned to each variable keypad stored in an authentication server.
  • 9 (b) shows an identifier assigned to a variable keypad stored in a portable terminal.
  • the authentication execution unit generates a plurality of variable keypads and generates an index corresponding thereto. That is, when the variable keypad is generated in the authentication server, index 1, 2 and 3, which are identifiers corresponding to the variable keypads 1, 2 and 3, are generated, and the generated variable keypad and the identifier are previously provided to the mobile terminal.
  • the authentication server When the authentication server receives the authentication request, the authentication server selects one of the stored identifiers and provides the same to the portable terminal.
  • the portable terminal receives the identifier and selects a variable keypad corresponding to the identifier to display on the screen.
  • the authentication server performs the second authentication by comparing the location information, the input order and the fingerprint information of the encryption key received from the mobile terminal with the location information, the input order and the fingerprint information of the encryption key previously stored.
  • variable keypad layout structure since the variable keypad layout structure is not transmitted from the authentication server to the mobile terminal, the variable keypad layout structure cannot be found by hacking of the transmission packet, thereby improving security.
  • the user has the advantage of proceeding financial transactions in a more secure environment. You can proceed with the transaction.

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • General Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Hardware Design (AREA)
  • Software Systems (AREA)
  • Human Computer Interaction (AREA)
  • Telephone Function (AREA)
  • Collating Specific Patterns (AREA)

Abstract

The present invention relates to an authentication system for financial transactions, and a password and fingerprint information mixed user authentication server according to one embodiment of the present invention comprises: a variable keypad generation unit for generating a variable keypad including password keys and a fingerprint input unit for receiving a fingerprint of a user, such that the position of each of the password keys varies at each generation; an authentication information storage unit for storing authentication information of a portable terminal user; and an authentication unit for providing information of the generated variable keypad to a remote portable terminal, and receiving, from the portable terminal, position information of the password keys according to a sequence inputted by the user and fingerprint information inputted into the fingerprint input unit by the user, so as to perform user authentication by using the same.

Description

가변 키패드를 이용한 본인 인증 방법 및 시스템Authentication method and system using variable keypad
본 발명은 본인 인증 방법 및 시스템에 관한 것으로서, 더욱 상세하게는 휴대단말에서 가변 키패드를 통해 비밀번호 및 지문정보를 입력 받아 이를 서버로 전송하고, 서버에서 본인 인증을 수행하는 본인 인증 방법 및 시스템에 관한 것이다.The present invention relates to a method and system for authenticating a user, and more particularly, to a method and a system for authenticating a user to receive a password and fingerprint information through a variable keypad in a mobile terminal and to transmit the same to a server. will be.
최근 스마트폰이나 태블릿 등 휴대단말을 사용한 전자결제 등의 금융거래가 활발해 지면서 비밀번호 등 보안과 관련된 이슈들에 대해 관심이 높아지고 있다.Recently, as financial transactions such as electronic payments using mobile terminals such as smartphones and tablets have increased, interest in security-related issues such as passwords is increasing.
이는 기존 휴대폰과는 달리 스마트의 경우 누구나 어플리케이션을 개발할 수 있고 또 그 구조에 대해 알 수 있기 때문에 널리 보급된 PC처럼 해킹에 취약하다는 이유 때문이다.This is because, unlike existing mobile phones, anyone can develop an application and know about its structure, so it is vulnerable to hacking like a widely used PC.
특히 고정 키패드를 사용하여 비밀번호나 주민번호 등을 입력하는 경우에는 터치하는 위치만 알아내면 위치를 기반으로 비밀번호나 주민번호를 손쉽게 알아낼 수 있으므로 비밀번호 입력 시 사용자의 주의가 필요하다.In particular, if you enter a password or social security number using a fixed keypad, you only need to be careful when you enter the password because you can easily find out the password or social security number based on the location.
이러한 고정 키패드 사용시의 문제점을 보완하기 위한 방법이 가변 키패드를 사용하는 인증방법이다. 가변 키패드 방식은 사용자가 접속할 때마다 키패드의 입력버튼 배열이 변경되므로 사용자가 키패드에 입력하는 비밀번호 등의 위치를 제3자가 알아낸다고 하더라도 이를 이용해 비밀번호를 알아내기 어렵다는 효과가 있다.A method for supplementing the problem of using a fixed keypad is an authentication method using a variable keypad. In the variable keypad method, since the input button arrangement of the keypad is changed every time the user connects, even if a third party finds out a location such as a password that the user inputs on the keypad, it is difficult to find out the password using this.
하지만 가변 키패드를 사용하더라도 주변에서 비밀번호 입력 장면을 목격하거나, 인증 요청 시 휴대단말에서 서버로 전송되는 비밀번호 등을 중간에서 해킹하는 경우에는 비밀번호 자체를 알아낼 수 있으므로 개인정보가 유출되는 보안의 한계가 있다.However, even if you use the variable keypad, if you witness the password input scene from the surroundings, or if you hack the password transmitted from the mobile terminal to the server in the middle of authentication request, you can find out the password itself. .
또한 이렇게 알아낸 비밀번호 자체를 가지고 제3자가 본인임을 사칭하여 본인인증을 수행하면 이를 저지할 수 없는 문제점이 있다.In addition, there is a problem that cannot be prevented when a user authenticates by impersonating a third party with the password itself.
본 발명은 전술한 바와 같은 기술적 배경에서 안출된 것으로서, 휴대단말에서 본인인증서버로 비밀번호를 전송할 때 가변키패드의 위치정보와 지문 정보를 함께 전송하여 제3자의 무단사용을 막을 수 있는 시스템과 그 방법을 제공하는 것을 그 목적으로 한다.The present invention has been made in view of the above-described technical background, and a system and method for preventing unauthorized use of a third party by transmitting location information and fingerprint information of a variable keypad together when a password is transmitted from a portable terminal to a user authentication server. To provide that purpose.
본 발명의 목적은 이상에서 언급한 목적으로 제한되지 않으며, 언급되지 않은 또 다른 목적들은 아래의 기재로부터 당업자에게 명확하게 이해될 수 있을 것이다.The object of the present invention is not limited to the above-mentioned object, and other objects that are not mentioned will be clearly understood by those skilled in the art from the following description.
전술한 목적을 달성하기 위한 본 발명의 일면에 따른 비밀번호 및 지문정보 혼합 본인인증서버는, 암호키와 사용자의 지문을 입력받는 지문입력부를 포함하는 가변키패드를 생성하되, 상기 암호키 각각의 위치가 매 생성시마다 가변 되도록 생성하는 가변키패드 생성부; 휴대단말 사용자의 인증정보를 저장하는 인증정보 저장부; 및 생성된 상기 가변키패드의 정보를 원격의 휴대단말로 제공하고, 상기 휴대단말로부터 사용자가 입력한 순서에 따른 상기 암호키의 위치정보 및 상기 지문입력부에 사용자가 입력한 지문정보를 수신하여 이를 이용하여 본인 인증을 수행하는 인증수행부를 포함하는 것을 특징으로 한다.In accordance with an aspect of the present invention, a password and fingerprint information mixed authentication server according to an aspect of the present invention generates a variable keypad including an encryption key and a fingerprint input unit for receiving a user's fingerprint, wherein each position of the encryption key is A variable keypad generation unit for generating a variable at every generation; An authentication information storage unit for storing authentication information of the mobile terminal user; And providing the generated information of the variable keypad to a remote portable terminal, receiving location information of the encryption key and fingerprint information input by the user in the fingerprint input unit according to the order input by the user from the portable terminal. It characterized in that it comprises an authentication performing unit that performs the authentication.
본 발명의 다른 일면에 따른 본인인증 휴대단말은 암호키와 지문입력부를 포함하되 상기 암호키 각각의 위치가 매 생성시마다 가변되도록 생성되는 가변 키패드를 표시하는 표시부; 및 본인인증서버로부터 상기 가변 키패드의 정보를 제공받고, 상기 가변 키패드를 통하여 획득한 상기 암호키의 위치정보, 암호키의 입력순서 및 지문정보를 상기 본인인증서버로 전달하는 제어부를 포함한다.According to another aspect of the present invention, there is provided a personal authentication mobile terminal including a cryptographic key and a fingerprint input unit, and a display unit for displaying a variable keypad which is generated such that each position of the cryptographic key is changed at every generation; And a controller configured to receive the information of the variable keypad from the identity authentication server, and transmit the position information of the encryption key, the input order of the encryption key, and the fingerprint information to the identity authentication server.
본 발명의 또 다른 일면에 따른 비밀번호 및 지문정보 혼합 본인 인증 방법은 암호키와 지문입력부를 포함하는 가변키패드를 생성하되, 상기 암호키 각각의 위치가 매 생성시마다 가변되도록 생성하는 단계; 생성된 상기 가변키패드를 휴대단말로 전송하는 단계; 상기 휴대단말로부터 사용자가 입력한 순서에 따른 상기 암호키의 위치정보 및 상기 사용자가 상기 지문입력부에 입력한 지문정보를 수신하는 단계; 및 수신한 상기 암호키의 위치정보 및 상기 지문정보를 토대로 본인 인증을 수행하는 단계를 포함하는 것을 특징으로 한다. According to another aspect of the present invention, there is provided a password and fingerprint information mixed identity authentication method, comprising: generating a variable keypad including an encryption key and a fingerprint input unit, and generating a variable key at each location of the encryption key; Transmitting the generated variable keypad to a mobile terminal; Receiving location information of the encryption key and fingerprint information input by the user to the fingerprint input unit according to the order input by the user from the portable terminal; And performing authentication based on the received location information of the encryption key and the fingerprint information.
본 발명에 따르면, 비밀번호 자체가 아니라 키패드의 위치정보를 전송하므로 해킹에 의해 비밀번호를 알아낼 수 없고, 지문정보를 함께 송출하므로 비밀번호가 유출되어도 지문정보에 의해 추가로 본인인증을 하여 보안을 향상시킬 수 있는 효과가 있다.According to the present invention, since the location information of the keypad is transmitted instead of the password itself, the password cannot be found by hacking, and the fingerprint information is sent out together, so even if the password is leaked, the user can be further authenticated by the fingerprint information to improve security. It has an effect.
도 1은 본 발명의 일실시예에 따른 휴대단말과 인증서버로 구성된 인증시스템을 도시한 도면.1 is a view showing an authentication system consisting of a mobile terminal and an authentication server according to an embodiment of the present invention.
도 2는 본 발명의 일실시예에 따른 본인인증방법의 흐름도.2 is a flow chart of a user authentication method according to an embodiment of the present invention.
도 3은 본 발명의 일실시예에 따른 생성시마다 달라지는 가변키패드의 생성모습.3 is a view of the generation of a variable keypad that changes every time the creation according to an embodiment of the present invention.
도 4는 본 발명의 일실시예에 따른 가변키패드를 X-Y 평면상에 좌표로 나타낸 도면.Figure 4 is a view showing the coordinates on the X-Y plane of the variable keypad according to an embodiment of the present invention.
도 5은 본 발명의 일실시예에 따른 암호키로부터 비밀번호를 추출하여 인증을 수행하는 절차를 나타내는 흐름도.5 is a flowchart illustrating a procedure for extracting a password from an encryption key and performing authentication according to an embodiment of the present invention.
도 6는 본 발명의 일실시예에 따른 가변키패드와 지문입력부가 표시된 휴대단말의 표시부를 나타낸 도면.6 is a view showing a display unit of a mobile terminal displaying a variable keypad and a fingerprint input unit according to an embodiment of the present invention.
도 7은 본 발명의 일실시예에 따른 지문입력부가 팝업창으로 표시되는 휴대단말의 표시부를 나타낸 도면.7 is a view showing a display unit of a mobile terminal in which the fingerprint input unit is displayed as a pop-up window according to an embodiment of the present invention.
도 8은 본 발명의 다른 실시예에 따른 가변키패드와 함께 얼굴인식부분이 추가된 모습을 나타낸 도면.8 is a view showing a face recognition portion is added with a variable keypad according to another embodiment of the present invention.
도 9은 본 발명의 또 다른 실시예에 따른 가변패드의 식별자를 이용하여 인증을 수행하는 것을 나타낸 도면.FIG. 9 illustrates authentication using an identifier of a variable pad according to another embodiment of the present invention. FIG.
본 발명의 이점 및 특징, 그리고 그것들을 달성하는 방법은 첨부되는 도면과 함께 상세하게 후술되어 있는 실시예들을 참조하면 명확해질 것이다. 그러나 본 발명은 이하에서 개시되는 실시예들에 한정되는 것이 아니라 서로 다른 다양한 형태로 구현될 것이며, 단지 본 실시예들은 본 발명의 개시가 완전하도록 하며, 본 발명이 속하는 기술분야에서 통상의 지식을 가진 자에게 발명의 범주를 완전하게 알려주기 위해 제공되는 것이며, 본 발명은 청구항의 범주에 의해 정의될 뿐이다. 한편, 본 명세서에서 사용된 용어는 실시예들을 설명하기 위한 것이며 본 발명을 제한하고자 하는 것은 아니다. 본 명세서에서, 단수형은 문구에서 특별히 언급하지 않는 한 복수형도 포함한다. 명세서에서 사용되는 "포함한다(comprises)" 및/또는 "포함하는(comprising)"은 언급된 구성소자, 단계, 동작 및/또는 소자는 하나 이상의 다른 구성소자, 단계, 동작 및/또는 소자의 존재 또는 추가를 배제하지 않는다.Advantages and features of the present invention and methods for achieving them will be apparent with reference to the embodiments described below in detail with the accompanying drawings. However, the present invention is not limited to the embodiments disclosed below, but may be implemented in various forms. It is provided to fully convey the scope of the invention to those skilled in the art, and the present invention is defined only by the scope of the claims. Meanwhile, the terminology used herein is for the purpose of describing particular embodiments only and is not intended to be limiting of the invention. In this specification, the singular also includes the plural unless specifically stated otherwise in the phrase. As used herein, “comprises” and / or “comprising” refers to a component, step, operation and / or device that is present in one or more other components, steps, operations and / or elements. Or does not exclude additions.
이하, 본 발명의 바람직한 실시예에 대하여 첨부한 도면을 참조하여 상세히 설명하기로 한다. Hereinafter, exemplary embodiments of the present invention will be described in detail with reference to the accompanying drawings.
도 1은 본 발명의 일실시예에 따른 비밀번호 및 지문정보 혼합 본인 인증 시스템을 도시한 구성도이다.1 is a block diagram showing a password and fingerprint information mixed identity authentication system according to an embodiment of the present invention.
도 1에 도시된 바와 같이 비밀번호 및 지문정보 혼합 본인 인증 시스템은 휴대단말(100)과 본인인증서버(200)를 포함한다.As shown in FIG. 1, the password and fingerprint information mixed identity authentication system includes a mobile terminal 100 and an identity verification server 200.
본인인증서버(200)는 가변키패드 생성부(210), 인증수행부(220) 및 인증정보저장부(230)를 포함한다.The identity authentication server 200 includes a variable keypad generator 210, an authentication performer 220, and an authentication information storage 230.
가변키패드 생성부(210)는 암호키와 지문입력부를 포함하는 가변키패드를 생성하는데 암호키를 구성하는 각각의 숫자키와 문자키의 위치가 매 가변키패드 생성시마다 가변되도록 생성한다. 또한 지문입력부의 위치도 가변키패드 생성시마다 가변되도록 생성하는 것 또한 가능하다.The variable keypad generation unit 210 generates a variable keypad including an encryption key and a fingerprint input unit. The variable keypad generation unit 210 generates a variable keypad so that the positions of the numeric keys and the character keys constituting the encryption key are variable at every variable keypad generation. In addition, the position of the fingerprint input unit may be generated to be changed every time the variable keypad is generated.
인증수행부(220)는 생성된 가변키패드의 정보인 각 암호키의 배치정보를 원격의 휴대단말(100)로 전송하면 휴대단말(100)은 이를 이용하여 사용자로부터 비밀번호와 지문정보 등의 인증정보를 입력받는다.When the authentication unit 220 transmits the configuration information of each encryption key, which is the information of the generated variable keypad, to the remote mobile terminal 100, the mobile terminal 100 uses the authentication information such as password and fingerprint information from the user. Get input.
인증수행부(220)는 필요시마다 가변키패드를 생성하는 방법 외에도 미리 복수의 가변키패드를 생성해두고 각 가변키패드마다 식별자를 부여하여 이를 휴대단말(100)과 공유한 상태에서 매 인증시마다 가변 키패드의 식별자만 휴대단말(100)로 전송하는 방법을 사용할 수도 있다.The authentication performing unit 220 generates a plurality of variable keypads in advance in addition to a method of generating a variable keypad whenever necessary, and assigns an identifier to each variable keypad in advance so that the authentication keypad 220 is shared with the mobile terminal 100. A method of transmitting only an identifier to the mobile terminal 100 may be used.
인증수행부(220)는 휴대단말(100)로부터 사용자가 입력한 순서에 따른 암호키의 위치정보와 지문정보를 수신하여 이를 토대로 본인인증을 수행한다. 경우에 따라 지문입력부의 위치도 가변하는 경우에는 지문입력부의 위치정보도 수신하여 본인인증에 이용할 수 있다.The authentication performing unit 220 receives the location information and the fingerprint information of the encryption key in the order input by the user from the mobile terminal 100 and performs identity authentication based on this. In some cases, when the location of the fingerprint input unit is also variable, the location information of the fingerprint input unit may also be received and used for identity verification.
예컨대, 인증수행부(220)는 스마트폰 등의 휴대단말(100)로부터 사용자가 입력한 순서에 따른 암호키의 위치정보, 즉 도 4(a)에서 보듯이 키패드에서 차례로 4, 3, 1, 2 를 입력하면 이에 대응하는 암호키의 위치좌표인 (0.5, 2.5), (3.5, 3.5), (1.5, 3.5), (2.5, 3.5) 와 지문정보를 수신하여 이를 토대로 본인인증을 수행한다.For example, the authentication performing unit 220, the position information of the encryption key according to the order input by the user from the mobile terminal 100, such as a smart phone, that is, as shown in Figure 4 (a) 4, 3, 1, If 2 is input, the identification coordinates of the corresponding encryption key (0.5, 2.5), (3.5, 3.5), (1.5, 3.5), (2.5, 3.5) and fingerprint information are received and authenticated based on this.
인증수행부(220)는 가변키패드 생성시마다 비밀번호에 대응하는 각 암호키의 위치정보 및 입력순서, 지문입력부의 위치정보를 저장하고, 휴대단말(100)로부터 사용자가 입력한 순서에 따른 암호키의 위치정보, 지문입력부의 위치정보 및 지문정보를 수신하면 이를 기저장된 암호키의 위치정보, 지문입력부의 위치정보 및 지문정보와 비교하여 인증을 수행한다.The authentication performing unit 220 stores the location information and the input order of each encryption key corresponding to the password and the location information of the fingerprint input unit every time the variable keypad is generated, and the encryption key according to the order input by the user from the mobile terminal 100. When receiving location information, location information and fingerprint information of the fingerprint input unit, authentication is performed by comparing the location information of the previously stored encryption key, location information and fingerprint information of the fingerprint input unit.
전술한 예에서와 같이 비밀번호가 4, 3, 1, 2라 하면 이에 대응하는 암호키의 위치정보는 도 4(a)에 따르면 (0.5, 2.5), (3.5, 3.5), (1.5, 3.5), (2.5, 3.5) 가 되고 입력순서도 위의 순서와 동일하다. 또한, 지문입력부의 위치가 가변하는 경우에 지문입력부의 위치정보는 (1.5, 2.5)가 된다.As in the above example, if the password is 4, 3, 1, 2, the location information of the corresponding encryption key is (0.5, 2.5), (3.5, 3.5), (1.5, 3.5) according to FIG. , (2.5, 3.5) and the input order is same as above. In addition, when the position of the fingerprint input unit varies, the positional information of the fingerprint input unit becomes (1.5, 2.5).
사용자가 지문입력부가 있는 곳에 손가락의 지문부분을 터치하면, 지문입력 스캔 센서가 작동하여 사용자의 지문이미지를 획득하고, 지문입력부의 위치정보인 (1.5, 2.5)를 획득하는 것이다.When the user touches the fingerprint portion of the finger where the fingerprint input unit is located, the fingerprint input scan sensor operates to acquire the fingerprint image of the user, and acquires the location information (1.5, 2.5) of the fingerprint input unit.
지문입력과 암호키의 입력은 모두 손가락 터치를 이용하기 때문에 암호키의 입력순서와 지문입력의 순서를 혼합하여 보안을 강화하는 방법도 가능하다.Since both fingerprint input and encryption key input use a finger touch, it is also possible to enhance security by mixing the encryption key input sequence and the fingerprint input sequence.
예컨대 입력하려는 비밀번호가 4,3,1,2인 경우 이를 순서대로 입력하는 것이 아니라 임의의 순서에 지문입력을 함으로써 위치정보만으로 비밀번호를 알 수 없게 하는 것이다. For example, if the password to be input is 4,3,1,2, the fingerprint is not input in order, but the fingerprint is input in an arbitrary order so that the password cannot be known only by the location information.
즉, 사용자는 비밀번호 4, 3을 순서대로 입력한 후 지문을 입력하고, 다음으로 나머지 비밀번호인 1, 2를 입력하는 것이다. 그러면 암호키와 지문입력부의 위치정보는 도 4(a)에 따르면 (0.5, 2.5), (3.5, 3.5), (1.5, 2.5), (1.5, 3.5), (2.5, 3.5) 가 되므로 위치정보를 해킹하더라도 4자리의 비밀번호를 알아낼 수 없다.In other words, the user enters passwords 4 and 3 in order, then enters a fingerprint, and then enters the remaining passwords 1 and 2. Then, the location information of the encryption key and the fingerprint input unit becomes (0.5, 2.5), (3.5, 3.5), (1.5, 2.5), (1.5, 3.5), (2.5, 3.5) according to FIG. 4 (a). Even if you hack the 4 digit password can not be found.
그러나 인증수행부(220)는 지문입력부의 위치인 (1.5, 2.5)를 알고 있으므로 이를 제외한 암호키의 위치정보로부터 비밀번호인 4,3,1,2를 복원해 낼 수 있다.However, since the authentication performing unit 220 knows the location of the fingerprint input unit (1.5, 2.5), it is possible to restore the password 4, 3, 1, 2 from the location information of the encryption key except this.
지문입력부는 가변키패드의 일부분에 나타나는 것이 아니라 따로 팝업창 형태로 나타날 수도 있다. 이러한 경우 지문입력부가 나타나는 팝업창의 크기를 조절하는 것이 가능하므로 검지 외에 엄지 등 모든 손가락을 이용하는 것도 가능하다.The fingerprint input unit may not appear on a portion of the variable keypad but may appear separately in the form of a pop-up window. In this case, it is possible to adjust the size of the pop-up window that the fingerprint input unit appears, it is also possible to use any finger, such as the thumb in addition to the index finger.
도 7은 팝업창 형태로 지문입력부가 나타나는 모습인데, 사용자가 비밀번호를 입력하고 도 7(a)의 지문부분을 터치하면 도 7(b)와 같이 지문입력부가 팝업창으로 나타나고 사용자는 원하는 손가락을 팝업창 형태의 지문입력부에 입력하는 것이 가능하다.7 shows a fingerprint input unit in the form of a pop-up window. When a user inputs a password and touches the fingerprint part of FIG. 7 (a), the fingerprint input unit appears as a pop-up window as shown in FIG. It is possible to input to the fingerprint input unit.
지문입력부는 터치스크린 입력 형식으로 사용자가 손가락의 지문을 터치하고 소정시간(예컨대 1초 이상)이 경과하면, 자동으로 지문 입력 스캔 센서가 작동하여 지문입력부는 사용자의 지문 이미지를 획득한다.The fingerprint input unit is a touch screen input form, and when a user touches a fingerprint of a finger and a predetermined time (for example, 1 second or more) elapses, a fingerprint input scan sensor is automatically operated to obtain a fingerprint image of the user.
지문입력부가 정전식 터치스크린으로 구성된 경우에는 사용자가 지문입력을 위해 화면을 터치할 때 터치하는 손가락에 전기가 흐르는지 여부를 판단할 수 있으므로 실제 사람의 손가락인지를 알 수 있다. 이를 통해 고무나 실리콘 등에 사용자의 지문을 복제하여 지문입력부에 입력하는 시도를 막을 수 있으므로 보안성을 높일 수 있다.When the fingerprint input unit is configured as a capacitive touch screen, when the user touches the screen for fingerprint input, the fingerprint input unit may determine whether electricity flows to the finger to be touched, thereby determining whether the finger is a real human finger. By doing so, the user's fingerprint can be copied to rubber or silicone, thereby preventing the user from entering the fingerprint input unit, thereby increasing security.
인증수행부(220)는 휴대단말(100)로부터 사용자가 입력한 순서에 따른 상기 비밀번호에 대한 암호키의 위치정보와 입력순서, 지문입력부의 위치정보와 지문정보를 수신하고 이를 인증정보저장부(230)에 기저장된 암호키의 위치정보, 입력순서, 지문입력부의 위치정보 및 지문정보를 포함하는 인증정보와 비교하여 인증을 수행한다.The authentication performing unit 220 receives the location information and the input order of the encryption key for the password from the mobile terminal 100 according to the order input by the user, the location information and the fingerprint information of the fingerprint input unit, and the authentication information storage unit ( Authentication is performed by comparing the authentication information including the location information, the input order, the location information of the encryption key, and the fingerprint information previously stored in 230.
인증 수행부(220)는 단말장치(100)로부터 수신한 지문 이미지의 특징점의 위치와 인증 정보 저장부(230)에 저장된 지문의 특징점의 위치를 비교하여 통계를 내고 이를 통해 점수를 산출하며, 산출한 점수가 기설정된 임계값 (예컨대, 80%) 이상이면 동일 지문으로 판단한다.The authentication performing unit 220 compares the position of the feature point of the fingerprint image received from the terminal device 100 with the position of the feature point of the fingerprint stored in the authentication information storage unit 230, generates statistics and calculates a score through the calculation. If a score is equal to or greater than a predetermined threshold (eg, 80%), the same fingerprint is determined.
지문인식기술은 지문에 빛을 쏴서 반사되는 지문의 굴곡을 인식하여 판독하는 기술이다. 이 기술은 스캐너의 표면에 손가락을 올려놓기만 하면, 빠른 스캔이 이루어지기 때문에 상당히 많은 곳에서 활용되고 있다.Fingerprint recognition technology is a technology that recognizes and reads the curvature of the fingerprint reflected by shooting light on the fingerprint. This technology is used in a number of places because it allows for quick scans by simply placing a finger on the scanner's surface.
지문인식기술은 사람마다 다양한 지문 유형을 파악하고 지문의 갈라진 점, 이어진 점, 끝점을 스캔하여 각 지문의 특징을 좌표로 환산하고 기존 데이터와 대조하여 신분을 확인하는 기술이다. Fingerprint recognition technology recognizes various fingerprint types for each person, scans the split points, connected points, and end points of the fingerprint, converts the characteristics of each fingerprint into coordinates, and checks the identity by comparing with existing data.
지문인식을 위한 입력 장치에 사용되는 방식으로 프리즘이나 홀로그램 등을 이용하는 광학방식과 손가락의 열, 압력, 전기장이나 초음파 등을 감지하는 비광학방식이 있다.As an input device for fingerprint recognition, there are an optical method using a prism or a hologram, and a non-optical method that detects heat, pressure, electric field or ultrasonic waves of a finger.
지문인식기술은 다른 생체인식기술에 비해 지문을 저장하고 식별하는 센서와 반도체칩의 가격이 저렴한 데다 기술 발달이 상대적으로 빠르고 응용분야의 폭이 넓다.Fingerprint recognition technology is cheaper than other biometric technologies for sensors and semiconductor chips that store and identify fingerprints, and its technology is relatively fast and has a wide range of applications.
지문인식의 장점으로는, 에러율 0.5% 이내의 비교적 높은 인식률과 1초 이내에 이루어지는 빠른 검증속도에 있다. 지문인식의 장점은 수용성, 편의성, 신뢰성에 있다. Advantages of fingerprint recognition include relatively high recognition rates within 0.5% of error rate and fast verification speed within 1 second. The advantages of fingerprint recognition are water solubility, convenience and reliability.
그리고, 사용자들은 지문인식을 사용할 때 다른 여러 생체인식기술과 비교하여 부담감을 적게 나타내고, 또한 지문인식 장비는 매우 적은 공간을 차지한다는 장점도 있다.In addition, users use less fingerprints when compared to other biometric technologies, and fingerprint recognition equipment also takes advantage of very little space.
인증정보저장부(230)는 휴대단말 이용 사용자들의 비밀번호, 지문정보 등을 저장해둔다.The authentication information storage unit 230 stores passwords, fingerprint information, etc. of users who use the mobile terminal.
또한, 가변키패드생성부(210)가 생성한 가변키패드들의 암호키, 암호키의 위치정보, 지문입력부의 위치정보 및 지문정보를 포함하는 인증정보를 저장한다.In addition, the variable keypad generation unit 210 stores the authentication keys including the encryption keys of the variable keypad, the location information of the encryption key, the location information and the fingerprint information of the fingerprint input unit.
휴대단말(100)은 가변키패드(110)를 포함하는 표시부(120)와 제어부(130)를 포함하고 카메라부(140)를 더 포함할 수 있다.The mobile terminal 100 may include a display unit 120 including a variable keypad 110 and a control unit 130, and further include a camera unit 140.
휴대단말(100)은 단순히 휴대폰뿐 아니라 스마트폰, 핸드폰, 테블릿 PC, 노트북, 이동형 신용카드 결제 단말기, 은행 ATM, 약국, 관공서 등에 설치된 키오스크 등을 포함한다.The mobile terminal 100 includes not only a mobile phone but also a smartphone, a mobile phone, a tablet PC, a laptop, a mobile credit card payment terminal, a bank ATM, a pharmacy, a kiosk installed in a government office, and the like.
가변키패드(110)는 매 생성시마다 암호키 각각의 위치와 지문입력부의 위치가 가변된다. 가변키패드(110)는 본인인증서버(200)의 가변키패드생성부(210)에 의해 생성되고, 휴대단말(100)의 가변키패드(110)는 본인인증서버(200)로부터 전송받은 가변키패드(110)를 표시하는 역할을 하는 것이다.The variable keypad 110 changes the position of each encryption key and the position of the fingerprint input unit at every generation. The variable keypad 110 is generated by the variable keypad generation unit 210 of the identity authentication server 200, and the variable keypad 110 of the mobile terminal 100 is the variable keypad 110 received from the identity authentication server 200. ) Is to display.
표시부(120)는 가변키패드(110)를 표시하는데 가변키패드에 포함된 암호키는 생성시마다 위치가 달라지고, 지문입력부의 위치는 고정될 수도 있고 암호키와 마찬가지로 생성시마다 위치가 달라질 수도 있다.The display unit 120 displays the variable keypad 110. The encryption key included in the variable keypad has a different position every time it is generated, and the position of the fingerprint input unit may be fixed.
도 6은 가변키패드(110)와 지문입력부가 표시부(120)에 표시된 모습을 나타낸다. 도 6(a)는 사용자가 비밀번호와 지문을 입력하기 전 모습이고, 도 6(b)는 사용자가 비밀번호와 지문을 입력한 후의 모습을 나타낸다. 입력된 비밀번호는 보안을 위해 별표(*)처리된다.6 illustrates a state in which the variable keypad 110 and the fingerprint input unit are displayed on the display unit 120. 6 (a) shows a state before a user inputs a password and a fingerprint, and FIG. 6 (b) shows a state after the user inputs a password and a fingerprint. The password entered is asterisk (*) for security.
제어부(130)는 본인인증서버(200)로부터 가변키패드의 정보를 제공받고, 사용자로부터 입력받은 암호키 위치정보, 암호키의 입력순서, 지문입력부의 위치정보 및 지문정보를 본인인증서버(200)로 전송한다.The control unit 130 is provided with the information of the variable keypad from the identity authentication server 200, the authentication key position information received from the user, the encryption key input order, the location information and fingerprint information of the fingerprint input unit identity authentication server 200 To send.
휴대단말(100)은 카메라부(140)를 추가로 포함할 수 있는데 카메라부(140)는 사용자를 향하는 방향을 촬영한다. 전술한 가변키패드(110)의 입력 외에 인증정보를 입력하는 사용자의 얼굴을 인증정보로 이용하기 위함이다.The mobile terminal 100 may further include a camera unit 140, which captures a direction toward the user. This is to use a face of a user who inputs authentication information in addition to the input of the variable keypad 110 as the authentication information.
카메라부(140)는 사용자가 가변키패드(110)를 입력하는 동안 제어부(130)의 명령을 받아 사용자의 얼굴을 촬영하는데 사용자는 표시부(120)에 표시된 얼굴 윤곽의 가이드라인에 맞춰 휴대단말(100)의 위치를 조절하여 가이드라인에 맞게 얼굴을 촬영할 수 있다.The camera unit 140 receives a command of the controller 130 while the user inputs the variable keypad 110 to photograph the face of the user. The user terminal 100 follows the guidelines of the contour of the face displayed on the display unit 120. ), You can take a picture of the face according to the guidelines.
도 8은 가변키패드(110)와 지문입력부와 함께 얼굴인식을 위해 사용자의 얼굴을 인식하는 것을 표시한 도면이다. 도 8(a)와 같이 얼굴 윤곽선이 제시되고 사용자가 얼굴을 맞추면 도 8(b)와 같이 얼굴인식을 위한 얼굴 이미지 촬영이 완료된다.FIG. 8 is a view showing recognition of a user's face for face recognition together with the variable keypad 110 and a fingerprint input unit. When the face outline is presented as shown in FIG. 8 (a) and the user fits the face, the image of the face for face recognition is completed as shown in FIG. 8 (b).
제어부(130)는 이렇게 촬영된 얼굴 이미지를 본인인증서버(200)로 전송하고, 본인인증서버(200)는 다른 인증정보들과 함께 얼굴 이미지를 이용하여 추가적인 인증을 할 수 있다.The controller 130 transmits the photographed face image to the identity verification server 200, and the identity verification server 200 may perform additional authentication using the facial image along with other authentication information.
도 2는 본 발명의 일실시예에 따른 비밀번호 및 지문정보 혼합 본인인증방법의 순서를 나타내는 흐름도이다.2 is a flowchart illustrating a procedure of a password and fingerprint information mixed authentication method according to an embodiment of the present invention.
먼저 암호키와 지문입력부를 포함하는 가변키패드를 생성하는데 암호키 각각의 위치와 지문입력부의 위치는 매 생성시마다 가변 될 수 있다(S110).First, a variable keypad including an encryption key and a fingerprint input unit is generated. Each position of the encryption key and a position of the fingerprint input unit may be changed at every generation (S110).
이렇게 생성된 가변키패드는 생성 정보와 함께 휴대단말(100)로 전송되고(S120), 사용자는 가변키패드에 비밀번호와 지문을 입력한다.The generated variable keypad is transmitted to the mobile terminal 100 together with the generated information (S120), and the user inputs a password and a fingerprint to the variable keypad.
본인인증서버(200)는 휴대단말(100)로부터 사용자가 입력한 순서에 따른 암호키의 위치정보, 지문입력부의 위치정보 및 지문정보를 수신하고(S130) 이를 토대로 본인 인증을 수행한다(S140).The user authentication server 200 receives the location information of the encryption key, the location information of the fingerprint input unit and the fingerprint information according to the order input by the user from the mobile terminal 100 (S130) and performs identity authentication based on this (S140). .
본 발명의 다른 실시예에 따르면 본인 인증 수행 시 암호키 일부의 위치정보만을 가지고 본인인증을 수행하는 것도 가능하다.According to another embodiment of the present invention, it is also possible to perform authentication by using only the location information of a part of the encryption key when performing authentication.
예컨대, 비밀번호가 4312인 경우 사용자가 네 자리의 비밀번호를 모두 입력하는 것이 아니고, 앞에서 두 자리인 43, 뒤에서 두 자리인 12, 첫 번째와 세 번째인 41 등 비밀번호의 일부만을 입력하는 것이다.For example, if the password is 4312, the user does not enter all four-digit passwords, but only a portion of the password, such as 43 in the front two, 12 in the second 12, 41 in the first and third.
앞에서 두 자리인 43을 입력하는 경우 비밀번호의 위치는 도 4(a)에서 (0.5, 2.5), (3.5, 3.5)가 되고, 본인인증 수행할 때 비밀번호의 위치와 입력순서, 지문정보 등을 토대로 본인 인증을 수행한다.In the case of entering the first two digits 43, the position of the password becomes (0.5, 2.5), (3.5, 3.5) in FIG. 4 (a), and based on the position and input order of the password, fingerprint information, etc. Perform identity verification.
휴대단말(100)에 카메라가 포함된 경우에는 사용자의 얼굴인식 정보를 인증에 추가로 사용할 수 있음은 전술한 바와 같다.When the camera is included in the mobile terminal 100, the face recognition information of the user may be additionally used for authentication as described above.
암호키 일부의 위치 정보를 토대로 본인 인증을 수행하는 경우에는 인증을 수행하는 데이터량이 암호키 전체의 위치 정보 입력에 비하여 상대적으로 적어 연산 속도를 향상시킬 수 있고, 입력해야 할 암호키의 수가 전체 입력에 비하여 상대적으로 적어 사용자 편의성을 향상시킬 수 있다.In the case of performing authentication based on the location information of a part of the encryption key, the amount of data to be authenticated is relatively small compared to the location information of the entire encryption key, thereby improving the operation speed, and the total number of encryption keys to be input. It is relatively small compared to the above, and thus user convenience can be improved.
도 3은 본 발명의 일실시예에 따라 암호키와 지문입력부를 포함하는 가변키패드에서 암호키와 지문입력부 각각의 위치가 생성시마다 가변되는 것을 도시한 것으로, 도 3(a)는 처음 가변키패드가 생성된 때의 모습이고 도 3(b)는 그 다음 생성되었을 때 암호키와 지문입력부의 위치가 변경된 것을 나타낸다.Figure 3 shows that the position of each of the encryption key and the fingerprint input unit in the variable keypad including the encryption key and the fingerprint input unit is variable according to the embodiment of the present invention, Figure 3 (a) is the first variable keypad 3 (b) shows that the position of the encryption key and the fingerprint input unit is changed when it is generated.
도 5는 본 발명의 일실시예에 따라 암호키의 위치로부터 비밀번호를 추출하여 본인인증을 수행하는 방법을 나타내는 흐름도이다.5 is a flowchart illustrating a method of extracting a password from a location of an encryption key and performing a user authentication according to an embodiment of the present invention.
비밀번호는 본인인증서버에 미리 저장되어있고, 휴대단말로부터 비밀번호의 위치정보를 수신하면, 수신한 비밀번호의 위치정보와 입력순서로부터 비밀번호를 추출하고, 추출한 비밀번호와 인증저장부에 저장된 비밀번호를 비교하여 본인인증을 수행하는 것이다.The password is stored in the authentication server in advance, and when the location information of the password is received from the mobile terminal, the password is extracted from the location information and the input order of the received password, and the extracted password is compared with the password stored in the authentication storage. It is to perform authentication.
우선 인증수행부는 휴대단말로부터 회원이 입력한 순서에 따른 암호키의 위치를 전송받아 회원이 입력한 비밀번호를 추출한다(S510).First, the authentication performing unit receives the position of the encryption key according to the order input by the member from the mobile terminal and extracts the password input by the member (S510).
다음으로 인증수행부는 추출된 비밀번호와 수신한 지문정보를 인증정보저장부에 저장된 비밀번호 및 지문정보와 비교하여 인증을 수행한다(S520).Next, the authentication performing unit compares the extracted password and the received fingerprint information with the password and fingerprint information stored in the authentication information storage unit to perform authentication (S520).
도 8은 본 발명의 다른 실시예에 따라 사용자의 얼굴을 촬영하고 촬영된 얼굴이미지를 본인인증서버(200)로 전송하는 것을 도시한 도면이다.FIG. 8 is a diagram illustrating photographing a user's face and transmitting the photographed face image to the user authentication server 200 according to another embodiment of the present invention.
휴대단말(100)의 제어부(130)는 카메라부(140)가 전방 사용자의 얼굴을 촬영하도록 제어하고, 카메라부(140)는 제어부(130)의 지시에 따라 사용자의 얼굴을 촬영한다.The controller 130 of the mobile terminal 100 controls the camera unit 140 to photograph the front user's face, and the camera unit 140 captures the user's face according to the instruction of the controller 130.
사용자가 도 8(a)와 같이 화면에 표시된 얼굴 윤곽선의 지시선에 따라 얼굴을 맞추면 도 8(b)에 나타난 것과 같이 가변키패드의 비밀번호와 얼굴을 함께 인식할 수 있고 이를 본인인증서버(200)로 전송하여 본인인증을 수행하게 된다.When the user aligns the face according to the indicator of the face outline displayed on the screen as shown in FIG. 8 (a), the user can recognize the password and the face of the variable keypad as shown in FIG. The authentication will be performed by sending.
카메라부(140)가 얼굴을 촬영하기 전에 휴대단말(100)의 플래쉬를 이용하여 조도를 조절하면 사람의 눈은 이에 반응하여 동공이 넓어지거나 좁아지게 되므로, 이를 체크하면 미리 찍어놓은 사용자의 얼굴사진을 이용하여 인증정보를 조작하는 것을 방지할 수 있어 보안성을 높일 수 있다.When the camera unit 140 adjusts the illuminance using the flash of the mobile terminal 100 before photographing the face, the eyes of the person respond to the widening or narrowing of the pupils, so if checked, the user's face photographed in advance It is possible to prevent the manipulation of the authentication information using the can improve the security.
도 9은 본 발명의 일실시예에 따라 가변키패드에 상응하는 식별자를 통해 1차 인증을 수행하는 것을 나타낸 것으로, 도 9(a)는 인증서버에 저장된 가변키패드별로 할당된 식별자를 나타낸 도면이고 도 9(b)는 휴대단말에 저장된 가변키패드에 할당된 식별자를 도시한 도면이다.9 is a diagram illustrating performing primary authentication through an identifier corresponding to a variable keypad according to an embodiment of the present invention. FIG. 9 (a) is a view showing an identifier assigned to each variable keypad stored in an authentication server. 9 (b) shows an identifier assigned to a variable keypad stored in a portable terminal.
도 9에 도시한 바와 같이, 인증 수행부는 복수의 가변키패드를 생성하고, 이에 대응되는 식별자(index)를 생성한다. 즉 본인인증서버에서 가변키패드를 생성할 때 가변키패드 1, 2, 3에 대응하는 식별자인 index 1, 2, 3을 생성하고, 생성된 가변키패드와 식별자를 사전에 휴대단말에 제공한다.As shown in FIG. 9, the authentication execution unit generates a plurality of variable keypads and generates an index corresponding thereto. That is, when the variable keypad is generated in the authentication server, index 1, 2 and 3, which are identifiers corresponding to the variable keypads 1, 2 and 3, are generated, and the generated variable keypad and the identifier are previously provided to the mobile terminal.
인증서버는 인증요청을 받으면 저장된 식별자 중 하나를 선택하여 이를 휴대단말에 제공하고, 휴대단말은 식별자를 전달받은 후 식별자에 해당하는 가변키패드를 선택하여 화면에 표시한다.When the authentication server receives the authentication request, the authentication server selects one of the stored identifiers and provides the same to the portable terminal. The portable terminal receives the identifier and selects a variable keypad corresponding to the identifier to display on the screen.
인증서버는 휴대단말로부터 수신한 암호키의 위치정보, 입력순서 및 지문정보를 미리 저장돼있던 암호키의 위치정보, 입력순서 및 지문정보와 비교하여 2차인증을 수행한다.The authentication server performs the second authentication by comparing the location information, the input order and the fingerprint information of the encryption key received from the mobile terminal with the location information, the input order and the fingerprint information of the encryption key previously stored.
이와 같은 실시예에 따르면 가변키패드 배치구조가 인증서버에서 휴대단말로 전송되지 않으므로 전송패킷의 해킹에 의해 가변키패드 배치구조를 알아낼 수 없어 보안이 보다 향상된다.According to this embodiment, since the variable keypad layout structure is not transmitted from the authentication server to the mobile terminal, the variable keypad layout structure cannot be found by hacking of the transmission packet, thereby improving security.
이상과 같은 가변키패드와 지문정보 및 얼굴인식을 이용한 사용자 인증 방법과 장치를 통해 사용자는 보다 보안이 향상된 환경에서 금융거래를 진행할 수 있는 장점을 가지므로 사용자는 안심하고 휴대단말과 이동통신망을 이용한 금융거래를 진행할 수 있다.Through the user authentication method and device using the variable keypad, fingerprint information, and face recognition as described above, the user has the advantage of proceeding financial transactions in a more secure environment. You can proceed with the transaction.
이상, 본 발명의 구성에 대하여 첨부 도면을 참조하여 상세히 설명하였으나, 이는 예시에 불과한 것으로서, 본 발명이 속하는 기술분야에 통상의 지식을 가진자라면 본 발명의 기술적 사상의 범위 내에서 다양한 변형과 변경이가능함은 물론이다. 따라서 본 발명의 보호 범위는 전술한 실시예에 국한되어서는 아니되며 이하의 특허청구범위의 기재에 의하여 정해져야 할 것이다.As mentioned above, the configuration of the present invention has been described in detail with reference to the accompanying drawings, which are merely examples, and those skilled in the art to which the present invention pertains various modifications and changes within the scope of the technical idea of the present invention. Of course this is possible. Therefore, the protection scope of the present invention should not be limited to the above-described embodiment but should be defined by the following claims.

Claims (11)

  1. 암호키와 사용자의 지문을 입력받는 지문입력부를 포함하는 가변키패드를 생성하되, 상기 암호키 각각의 위치가 매 생성시마다 가변 되도록 생성하는 가변키패드 생성부;A variable keypad generation unit including a cryptographic key and a fingerprint input unit configured to receive a user's fingerprint, wherein the variable keypad generation unit generates a variable keypad to be changed at each generation;
    휴대단말 사용자의 인증정보를 저장하는 인증정보 저장부; 및An authentication information storage unit for storing authentication information of the mobile terminal user; And
    생성된 상기 가변키패드의 정보를 원격의 휴대단말로 제공하고, 상기 휴대단말로부터 사용자가 입력한 순서에 따른 상기 암호키의 위치정보 및 상기 지문입력부에 사용자가 입력한 지문정보를 수신하여 이를 이용하여 본인 인증을 수행하는 인증수행부Providing the generated information of the variable keypad to the remote portable terminal, and receives the location information of the encryption key and the fingerprint information input by the user to the fingerprint input unit in accordance with the order input by the user from the portable terminal Certification department that performs identity verification
    를 포함하는 비밀번호 및 지문정보 혼합 본인인증서버.Password and fingerprint information mixed authentication server comprising a.
  2. 제1항에 있어서, 상기 가변키패드 생성부는The method of claim 1, wherein the variable keypad generation unit
    상기 지문입력부의 위치가 매 가변키패드 생성시마다 가변되도록 생성하는 것Generating the fingerprint input unit so that the position of the fingerprint input unit is variable every time the variable keypad is generated;
    인 비밀번호 및 지문정보 혼합 본인인증서버.Password and fingerprint information mixed authentication server.
  3. 제1항에 있어서, 상기 인증수행부는The method of claim 1, wherein the authentication performing unit
    상기 수신한 암호키의 위치정보로부터 상기 사용자가 입력한 비밀번호를 추출한 다음, 추출된 상기 비밀번호와 수신한 상기 지문정보를 상기 인증정보 저장부에 기저장된 상기 인증정보와 비교하여 인증을 수행하는 것Extracting the password input by the user from the received location information of the encryption key, and performing authentication by comparing the extracted password and the received fingerprint information with the authentication information previously stored in the authentication information storage unit;
    인 비밀번호 및 지문정보 혼합 본인인증서버.Password and fingerprint information mixed authentication server.
  4. 제1항에 있어서, 상기 인증수행부는The method of claim 1, wherein the authentication performing unit
    상기 가변 키패드 생성시마다 상기 비밀번호에 대응하는 각 암호키의 위치정보 및 입력순서를 저장하고,Whenever the variable keypad is generated, location information and input order of each encryption key corresponding to the password are stored.
    상기 휴대단말로부터 사용자가 입력한 순서에 따른 상기 암호키의 위치정보 및 상기 지문정보를 수신하면,When receiving the location information and the fingerprint information of the encryption key in the order input by the user from the portable terminal,
    이를 상기 인증정보 저장부에 기저장된 암호키의 위치정보, 입력순서 및 지문정보와 비교하여 인증을 수행하는 것Performing authentication by comparing this with the location information, input order and fingerprint information of the encryption key previously stored in the authentication information storage unit.
    인 비밀번호 및 지문정보 혼합 본인인증서버.Password and fingerprint information mixed authentication server.
  5. 제1항에 있어서, 상기 인증수행부는The method of claim 1, wherein the authentication performing unit
    상기 가변키패드 생성시마다 생성된 상기 가변키패드에 상응하는 식별자를 저장하고, 저장된 상기 식별자를 상기 휴대단말에 제공하며,Storing an identifier corresponding to the variable keypad generated each time the variable keypad is generated, and providing the stored identifier to the mobile terminal;
    상기 휴대단말로부터 식별자를 수신하면 이를 기저장된 식별자와 비교하여 제1차 인증을 수행하고,When receiving an identifier from the mobile terminal, the first authentication is performed by comparing the identifier with a previously stored identifier,
    제1차 인증 수행결과가 성공이면, 상기 휴대단말로부터 수신한 암호키의 위치정보, 입력순서 및 지문정보를 상기 인증정보 저장부에 기저장된 암호키의 위치정보, 입력순서 및 지문정보와 비교하여 인증을 수행하는 것If the first authentication is successful, the location information, the input order, and the fingerprint information of the encryption key received from the mobile terminal are compared with the location information, the input order, and the fingerprint information of the encryption key previously stored in the authentication information storage unit. Performing authentication
    인 비밀번호 및 지문정보 혼합 본인인증서버.Password and fingerprint information mixed authentication server.
  6. 암호키와 지문입력부를 포함하되 상기 암호키 각각의 위치가 매 생성시마다 가변되도록 생성되는 가변 키패드를 표시하는 표시부; 및A display unit for displaying a variable keypad including an encryption key and a fingerprint input unit, wherein the positions of the encryption keys are varied in every generation; And
    본인인증서버로부터 상기 가변 키패드의 정보를 제공받고, 상기 가변 키패드를 통하여 획득한 상기 암호키의 위치정보, 암호키의 입력순서 및 지문정보를 상기 본인인증서버로 전달하는 제어부;A control unit which receives the information of the variable keypad from the identity authentication server, and transmits the position information of the encryption key, the input order of the encryption key, and the fingerprint information to the identity authentication server;
    를 포함하는 본인인증 휴대단말.Self-contained mobile terminal comprising a.
  7. 제6항에 있어서, The method of claim 6,
    사용자의 얼굴을 촬영할 수 있는 카메라부를 더 포함하고,Further comprising a camera unit for taking a picture of the user,
    상기 제어부는 상기 카메라부가 전방 사용자의 얼굴을 촬영하도록 제어하고, 촬영된 얼굴 이미지를 상기 본인인증서버로 전달하는 것The controller controls the camera unit to photograph the face of the front user, and transmits the photographed face image to the identity verification server.
    인 본인인증 휴대단말.In person authentication mobile terminal.
  8. 암호키와 지문입력부를 포함하는 가변키패드를 생성하되, 상기 암호키 각각의 위치가 매 생성시마다 가변되도록 생성하는 단계;Generating a variable keypad including an encryption key and a fingerprint input unit, wherein the positions of each of the encryption keys are varied at each generation;
    생성된 상기 가변키패드를 휴대단말로 전송하는 단계;Transmitting the generated variable keypad to a mobile terminal;
    상기 휴대단말로부터 사용자가 입력한 순서에 따른 상기 암호키의 위치정보 및 상기 사용자가 상기 지문입력부에 입력한 지문정보를 수신하는 단계; 및Receiving location information of the encryption key and fingerprint information input by the user to the fingerprint input unit according to the order input by the user from the portable terminal; And
    수신한 상기 암호키의 위치정보 및 상기 지문정보를 토대로 본인 인증을 수행하는 단계;Performing identity authentication based on the received location information of the encryption key and the fingerprint information;
    를 포함하는 비밀번호 및 지문정보 혼합 본인 인증 방법.Password and fingerprint information mixed identity authentication method comprising a.
  9. 제8항에 있어서,The method of claim 8,
    상기 생성하는 단계는 상기 지문입력부의 위치가 매 가변키패드 생성시마다 가변되도록 생성하는 것The generating may be performed such that the position of the fingerprint input unit is changed every time the variable keypad is generated.
    인 비밀번호 및 지문정보 혼합 본인 인증 방법.Password and fingerprint information mixed authentication method.
  10. 제8항에 있어서, 상기 본인 인증을 수행하는 단계는The method of claim 8, wherein performing the identity verification
    상기 암호키 일부의 위치정보를 토대로 본인 인증을 수행하는 것Performing identity authentication based on the location information of a part of the encryption key
    인 비밀번호 및 지문정보 혼합 본인 인증 방법.Password and fingerprint information mixed authentication method.
  11. 제8항에 있어서, The method of claim 8,
    상기 본인 인증을 수행하는 단계는The step of performing the identity verification
    상기 휴대단말로부터 사용자가 입력한 순서에 따른 상기 암호키의 위치정보로부터 상기 사용자가 입력한 비밀번호를 추출한 후, 추출한 상기 비밀번호와 수신한 상기 지문정보를 인증정보 저장부에 기저장된 비밀번호 및 지문정보와 비교하여 본인 인증을 수행하는 것After extracting the password input by the user from the location information of the encryption key according to the order input by the user from the portable terminal, the extracted password and the received fingerprint information and the password and fingerprint information previously stored in the authentication information storage unit; Performing identity verification by comparison
    인 비밀번호 및 지문정보 혼합 본인 인증 방법.Password and fingerprint information mixed authentication method.
PCT/KR2016/011593 2015-10-14 2016-10-14 User authentication method and system, which use variable keypad WO2017065576A1 (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
KR10-2015-0143455 2015-10-14
KR1020150143455A KR101722028B1 (en) 2015-10-14 2015-10-14 Method of user authentication using a variable keypad and, the system thereof

Publications (1)

Publication Number Publication Date
WO2017065576A1 true WO2017065576A1 (en) 2017-04-20

Family

ID=58500829

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/KR2016/011593 WO2017065576A1 (en) 2015-10-14 2016-10-14 User authentication method and system, which use variable keypad

Country Status (2)

Country Link
KR (1) KR101722028B1 (en)
WO (1) WO2017065576A1 (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11036845B2 (en) 2015-05-27 2021-06-15 Licentia Group Limited Authentication methods and systems
US11048784B2 (en) 2012-07-20 2021-06-29 Licentia Group Limited Authentication method and system

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR101792008B1 (en) * 2017-05-10 2017-11-01 주식회사 올아이티탑 Electronic payment system using face and finger recognition and method for processing thereof
KR101814167B1 (en) * 2017-05-19 2018-01-03 주식회사 올아이티탑 Electronic payment system using face and finger recognition and method for processing thereof
KR102401506B1 (en) * 2017-12-08 2022-05-25 삼성전자주식회사 Electric apparatus and method for control thereof
KR102507281B1 (en) * 2018-03-23 2023-03-08 삼성전자주식회사 Electornic device comprising fingerprint sensor and method for operating thereof
CN115346293B (en) * 2022-08-18 2023-11-24 上海创飞纵横科技集团有限公司 Industrial park project data security encryption storage device and system

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR101228088B1 (en) * 2012-07-06 2013-02-01 세종대학교산학협력단 System and method for inputing password
KR20130042802A (en) * 2011-10-19 2013-04-29 서울대학교산학협력단 System and method for authentication security using of user terminal
KR20140049705A (en) * 2012-10-18 2014-04-28 변현 Fingerprint locking system
KR101464446B1 (en) * 2013-10-07 2014-11-24 재단법인대구경북과학기술원 Method for user vertification using face recognition and head pose estimation and apparatus thereof
KR101514706B1 (en) * 2014-06-26 2015-04-23 주식회사 하렉스인포텍 Method of user authentication using a variable keypad and biometrics and, the system thereof

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR20060002521A (en) * 2004-07-02 2006-01-09 현대정보기술주식회사 Mobile banking method using fingerprint authentication and system thereof

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR20130042802A (en) * 2011-10-19 2013-04-29 서울대학교산학협력단 System and method for authentication security using of user terminal
KR101228088B1 (en) * 2012-07-06 2013-02-01 세종대학교산학협력단 System and method for inputing password
KR20140049705A (en) * 2012-10-18 2014-04-28 변현 Fingerprint locking system
KR101464446B1 (en) * 2013-10-07 2014-11-24 재단법인대구경북과학기술원 Method for user vertification using face recognition and head pose estimation and apparatus thereof
KR101514706B1 (en) * 2014-06-26 2015-04-23 주식회사 하렉스인포텍 Method of user authentication using a variable keypad and biometrics and, the system thereof

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11048784B2 (en) 2012-07-20 2021-06-29 Licentia Group Limited Authentication method and system
US11048783B2 (en) 2012-07-20 2021-06-29 Licentia Group Limited Authentication method and system
US11194892B2 (en) 2012-07-20 2021-12-07 Licentia Group Limited Authentication method and system
US11036845B2 (en) 2015-05-27 2021-06-15 Licentia Group Limited Authentication methods and systems
US11048790B2 (en) 2015-05-27 2021-06-29 Licentia Group Limited Authentication methods and systems

Also Published As

Publication number Publication date
KR101722028B1 (en) 2017-03-31

Similar Documents

Publication Publication Date Title
WO2017065576A1 (en) User authentication method and system, which use variable keypad
WO2015199501A1 (en) User authentication method and system using variable keypad and biometric identification
WO2011118871A1 (en) Authentication method and system using portable terminal
WO2018030707A1 (en) Authentication system and method, and user equipment, authentication server, and service server for performing same method
WO2017043717A1 (en) Biometric user authentication method
CN104298910B (en) Portable electronic device and interactive face login method
WO2015163558A1 (en) Payment method using biometric information recognition, and device and system for same
WO2017052277A1 (en) Method and system for authenticating identity using variable keypad
WO2022097982A1 (en) Method and server for providing face recognition-based digital signature service
JP2012138011A (en) Information processing system, information processing method and program
WO2020241987A1 (en) Apparatus and method for user authentication based on face recognition and handwritten signature verification
WO2011136464A1 (en) Password security input system using shift value of password key and password security input method thereof
WO2014112695A1 (en) System for securing electronic device through two-factor authentication and method for securing electronic device using same
WO2017200239A2 (en) Method and apparatus for user authentication on basis of touch input including fingerprint information
WO2019245437A1 (en) Method and electronic device for authenticating a user
WO2017065577A1 (en) User authentication method and system using variable key pad and face recognition
WO2017209364A1 (en) Card payment processing system using biometric information and processing method thereof
WO2017078358A1 (en) Security communication system and method using biometrics
WO2016200084A1 (en) Iris recognition usb device using otp function and method of controlling same
US20230032328A1 (en) Apparatus and methods for content-based biometric authentication
WO2017018861A1 (en) Financial device using biometric information, and operation method therefor
WO2017052276A1 (en) System and method for providing automated teller service using mobile terminal
KR102508876B1 (en) Non-face-to-face Authentication System for Fintech service Using AI-based Facial Recognition Algorithm and Method thereof
WO2015133700A1 (en) User device for performing unlocking on basis of location of pupil, method for unlocking user device on basis of location of pupil, and recording medium having computer program recorded therein
KR20160001737A (en) System and method for cloud mobile certification

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 16855793

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 16855793

Country of ref document: EP

Kind code of ref document: A1