WO2017128487A1 - 一种鉴权方法及鉴权装置 - Google Patents

一种鉴权方法及鉴权装置 Download PDF

Info

Publication number
WO2017128487A1
WO2017128487A1 PCT/CN2016/074896 CN2016074896W WO2017128487A1 WO 2017128487 A1 WO2017128487 A1 WO 2017128487A1 CN 2016074896 W CN2016074896 W CN 2016074896W WO 2017128487 A1 WO2017128487 A1 WO 2017128487A1
Authority
WO
WIPO (PCT)
Prior art keywords
authentication
touch
handwriting
information
password information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/CN2016/074896
Other languages
English (en)
French (fr)
Inventor
刘标
孙幸幸
徐超
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Original Assignee
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Yulong Computer Telecommunication Scientific Shenzhen Co Ltd filed Critical Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Publication of WO2017128487A1 publication Critical patent/WO2017128487A1/zh
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication

Definitions

  • the present invention relates to the field of communications technologies, and in particular, to an authentication method and an authentication device.
  • the embodiment of the invention provides an authentication method and an authentication device, so as to improve the diversity and security of authentication.
  • a first aspect of the embodiments of the present invention provides an authentication method, including:
  • Obtaining a touch parameter for a touch operation of the terminal preset area where the touch parameter includes a touch force and a touch track, and the touch operation is for a preset account identifier;
  • An authentication result is generated based on the password information and the handwriting information.
  • the handwriting information includes a handwriting contour feature, a handwriting sequence feature, and a handwriting velocity feature;
  • the determining the handwriting information based on the touch track and the touch force includes:
  • the handwriting velocity feature is determined based on the touch strength.
  • the method before the obtaining the touch parameter for the touch operation of the preset area of the terminal, the method further includes:
  • an authentication touch parameter of the authentication touch operation associated with the account identifier Acquiring an authentication touch parameter of the authentication touch operation associated with the account identifier, where the authentication touch parameter includes a power of authentication and an authentication track;
  • the authentication password information is determined based on the authentication trajectory, and the authentication handwriting information is determined based on the authentication trajectory and the authentication authority.
  • the generating the authentication result based on the password information and the handwriting information includes:
  • the generating the authentication result based on the password information and the handwriting information includes:
  • a second aspect of the embodiments of the present invention provides an authentication apparatus, including:
  • the acquiring module is configured to acquire a touch parameter for a touch operation of the terminal preset area, where the touch parameter includes a touch force and a touch track, and the touch operation is performed for the preset account identifier;
  • a first determining module configured to determine password information based on the touch track
  • a second determining module configured to determine handwriting information based on the touch track and the touch force
  • an authentication module configured to generate an authentication result based on the password information and the handwriting information.
  • the handwriting information includes a handwriting contour feature, a handwriting sequence feature, and a handwriting velocity feature;
  • the second determining module is configured to determine the handwriting contour feature and the handwriting sequence feature based on the touch track; and determine the handwriting velocity feature based on the touch force.
  • the device further includes:
  • a registration module configured to acquire an account identifier input by a user and account information associated with the account identifier, and obtain an account identifier associated with the account identifier, before the acquiring module acquires a touch parameter for a touch operation of the preset area of the terminal
  • An authentication touch parameter of the touch operation the authentication touch parameter includes a power of authentication and an authentication track; determining authentication password information based on the authentication track, based on the authentication track and the authentication power Determine the authentication handwriting information.
  • the authentication module is specifically configured to detect whether the password information matches the pre-stored authentication password information, and generate an authentication failure when detecting that the password information does not match the pre-stored authentication password information. Authentication result;
  • the authentication module is specifically configured to detect whether the password information and the handwriting information match the pre-stored authentication password information and the authentication handwriting information;
  • the terminal or the server obtains the touch parameter for the touch operation of the preset area of the terminal, where the touch parameter includes the touch force and the touch track, and the touch
  • the control operation is for the preset account identifier
  • the terminal or the server determines the password information based on the touch track, determines the handwriting information based on the touch track and the touch force
  • the terminal or the server is based on the password information and The handwriting information generates an authentication result.
  • the terminal or the server authenticates the validity of the user by using the password information and the touch track in two ways, which is beneficial to improving the diversity of the authentication, thereby improving the security and reliability of the authentication.
  • FIG. 1 is a schematic flow chart of an authentication method according to a first embodiment of the present invention
  • FIG. 2 is a schematic flow chart of an authentication method according to a second embodiment of the present invention.
  • FIG. 3 is a schematic flowchart of an authentication method according to a third embodiment of the present invention.
  • FIG. 4 is a schematic structural diagram of an authentication apparatus according to a fourth embodiment of the present invention.
  • FIG. 5 is a schematic structural diagram of an authentication apparatus according to a fifth embodiment of the present invention.
  • references to "an embodiment” herein mean that a particular feature, structure, or characteristic described in connection with the embodiments can be included in at least one embodiment of the invention.
  • the appearances of the phrases in various places in the specification are not necessarily referring to the same embodiments, and are not exclusive or alternative embodiments that are mutually exclusive. Those skilled in the art will understand and implicitly understand that the embodiments described herein can be combined with other embodiments.
  • FIG. 1 is a schematic flowchart of an authentication method according to a first embodiment of the present invention.
  • the authentication method in the embodiment of the present invention may be applied to a mobile terminal, or may be applied to a corresponding server. .
  • the authentication method in the embodiment of the present invention includes the following steps:
  • S101 Obtain a touch parameter for a touch operation of a preset area of the terminal, where the touch parameter includes a touch force and a touch track, and the touch operation is for a preset account identifier.
  • the authentication method in the embodiment of the present invention can be applied to the mobile terminal, or can be applied to the corresponding server.
  • the server acquires the terminal for the terminal.
  • the touch parameter of the touch operation of the preset area when the authentication method is applied to the terminal, the terminal directly acquires the touch parameter of the touch operation of the user for the preset area of the terminal.
  • the terminal may be a general-purpose electronic device such as a smart phone, a tablet computer, a notebook computer, or a wearable device (such as a smart watch) including a touch display screen.
  • the touch display screen is an integration of the touch screen and the display screen, and the touch display screen can be provided with a pressure sensor array, and the mobile terminal can detect the pressure parameter through the pressure sensor array, wherein the pressure sensor
  • the pressure sensor may be a resistance strain gauge pressure sensor, a semiconductor strain gauge pressure sensor, a piezoresistive pressure sensor, an inductive pressure sensor, a capacitive pressure sensor, a resonant pressure sensor, etc., and the invention includes, but is not limited to, the above manner. Touch strength.
  • the touch display screen may include: a screen; an indium tin oxide pattern disposed under the screen; a touch sensor disposed under the indium tin oxide pattern; and the touch sensor a lower indium tin oxide substrate; and a pressure sensor disposed on an upper surface or a lower surface of the indium tin oxide substrate; or
  • the touch display screen may include: a screen; an indium tin oxide pattern disposed under the screen; a touch sensor disposed under the indium tin oxide pattern; and disposed on the Touch the pressure sensor below the sensor.
  • the method further includes:
  • an authentication touch parameter of the authentication touch operation associated with the account identifier Acquiring an authentication touch parameter of the authentication touch operation associated with the account identifier, where the authentication touch parameter includes a power of authentication and an authentication track;
  • the authentication password information is determined based on the authentication trajectory, and the authentication handwriting information is determined based on the authentication trajectory and the authentication authority.
  • the terminal determines the password information based on the touch track of the touch operation of the user for the preset area of the display, and the terminal base is used.
  • the specific implementation manner of determining the password information of the touch track for the touch operation of the display preset area may be that the terminal extracts the password information by the touch track based on the image recognition algorithm, wherein the password information may be a character or a number. Chinese characters, etc.
  • the server determines the password information based on the touch track sent by the terminal for the touch operation of the preset area of the terminal.
  • the handwriting information includes a handwriting outline feature, a handwriting sequence feature, and a handwriting velocity feature.
  • the specific implementation manner of determining the handwriting information based on the touch track and the touch force may be:
  • the handwriting velocity feature is determined based on the touch strength.
  • the terminal determines the handwriting information based on the touch track and the touch strength of the touch operation performed by the user on the preset area of the terminal;
  • the server determines the handwriting information based on the touch track and the touch force of the touch operation performed by the user on the preset area of the terminal.
  • the specific implementation manner of generating the authentication result based on the password information and the handwriting information may also be:
  • the terminal or the server obtains the touch parameter for the touch operation of the preset area of the terminal, where the touch parameter includes the touch force and the touch track, and the touch
  • the control operation is for the preset account identifier
  • the terminal or the server determines the password information based on the touch track, determines the handwriting information based on the touch track and the touch force
  • the terminal or the server is based on the password information and The handwriting information generates an authentication result.
  • the terminal or the server authenticates the validity of the user by using the password information and the touch track in two ways, which is beneficial to improving the diversity of the authentication, thereby improving the security and reliability of the authentication.
  • FIG. 2 is a schematic flowchart of an authentication method according to a second embodiment of the present invention. As shown in FIG. 2, the method includes the following steps:
  • the terminal acquires an account identifier input by the user and account information associated with the account identifier.
  • the terminal acquires an authentication touch parameter of an authentication touch operation associated with the account identifier, where the authentication touch parameter includes a power of authentication and an authentication track.
  • the terminal determines the authentication password information based on the authentication trajectory, and determines the authentication handwriting information based on the authentication trajectory and the authentication authority.
  • the terminal acquires a touch parameter for a touch operation of the terminal preset area, where the touch parameter includes a touch force and a touch track, and the touch operation is for a preset account identifier.
  • the terminal determines the password information based on the touch track.
  • the terminal determines handwriting information based on the touch track and the touch force.
  • the handwriting information includes a handwriting outline feature, a handwriting sequence feature, and a handwriting velocity feature.
  • the specific implementation manner of determining the handwriting information based on the touch track and the touch force may be:
  • the handwriting contour feature and the handwriting sequence feature are determined based on the touch track.
  • the handwriting velocity feature is determined based on the touch strength.
  • the terminal generates an authentication result based on the password information and the handwriting information.
  • the specific implementation manner that the terminal generates an authentication result based on the password information and the handwriting information may be:
  • the terminal detects whether the password information matches the pre-stored authentication password information
  • the terminal When detecting that the password information does not match the pre-stored authentication password information, the terminal generates an authentication result that the authentication fails;
  • the terminal detects whether the touch strength matches the pre-stored authentication power
  • the terminal When it is detected that the touch strength does not match the pre-stored authentication power, the terminal generates an authentication result of the authentication failure.
  • the specific implementation manner of the terminal generating the authentication result based on the password information and the handwriting information may also be:
  • the terminal detects whether the password information and the handwriting information match the pre-stored authentication password information and the authentication handwriting information;
  • the terminal After detecting that the password information matches the pre-stored authentication password information, and detecting that the handwriting information matches the pre-stored authentication handwriting information, the terminal generates an authentication result of successful authentication.
  • the terminal or the server obtains the touch parameter for the touch operation of the preset area of the terminal, where the touch parameter includes the touch force and the touch track, and the touch
  • the control operation is for the preset account identifier
  • the terminal or the server determines the password information based on the touch track, determines the handwriting information based on the touch track and the touch force
  • the terminal or the server is based on the password information and The handwriting information generates an authentication result.
  • the terminal or the server authenticates the validity of the user by using the password information and the touch track in two ways, which is beneficial to improving the diversity of the authentication, thereby improving the security and reliability of the authentication.
  • FIG. 3 is a schematic flowchart of an authentication method according to a third embodiment of the present invention. As shown in FIG. 3, the authentication method in the embodiment of the present invention includes the following steps:
  • the terminal acquires an account identifier input by the user and account information associated with the account identifier, and sends the account information to a server that establishes a communication connection with the terminal.
  • the manner in which the foregoing terminal establishes a communication connection with the server may be a wireless communication connection manner including WI-FI, Bluetooth, or a mobile network (2G, 3G or 4G, etc.).
  • the terminal acquires an authentication touch parameter of the authentication touch operation associated with the account identifier, where the authentication touch parameter includes a power of authentication and an authentication track.
  • the terminal determines the authentication password information based on the authentication trajectory, determines the authentication handwriting information based on the authentication trajectory and the authentication authority, and sends the authentication password information and the authentication handwriting information to the server.
  • the terminal sends the authentication password information and the authentication handwriting information to the server, so that the authentication password information and the authentication handwriting information are stored in the server, thereby preventing the
  • the occurrence of the phenomenon that the authentication password information and the authentication handwriting information are stolen when stored in the terminal can further improve the security and reliability in the authentication process.
  • the terminal acquires a touch parameter for a touch operation of the preset area of the terminal, where the touch parameter includes a touch force and a touch track, and the touch operation is for a preset account identifier.
  • the terminal determines password information based on the touch track, and sends the password information to the server.
  • the terminal determines handwriting information based on the touch track and the touch force, and sends the note information to the server.
  • the handwriting information includes a handwriting outline feature, a handwriting sequence feature, and a handwriting velocity feature
  • the specific implementation manner of the terminal determining the handwriting information based on the touch track and the touch force may be:
  • the terminal determines the handwriting velocity feature based on the touch strength.
  • the server generates an authentication result based on the password information and the handwriting information.
  • the server generates an authentication result based on the password information and the handwriting information may be:
  • the server detects whether the password information matches the pre-stored authentication password information
  • the server When the server detects that the password information does not match the pre-stored authentication password information, the server generates an authentication result that fails authentication;
  • the server detects whether the touch strength matches the pre-stored authentication power
  • the server When the server detects that the touch force does not match the pre-stored authentication power, the server generates an authentication result of the authentication failure.
  • the specific implementation manner of the server generating the authentication result based on the password information and the handwriting information may also be:
  • the server detects whether the password information and the handwriting information match the pre-stored authentication password information and the authentication handwriting information
  • the server When the server detects that the password information matches the pre-stored authentication password information, and detects that the handwriting information matches the pre-stored authentication handwriting information, the server generates a successful authentication result.
  • the terminal or the server obtains the touch parameter for the touch operation of the preset area of the terminal, where the touch parameter includes the touch force and the touch track, and the touch
  • the control operation is for the preset account identifier
  • the terminal or the server determines the password information based on the touch track, determines the handwriting information based on the touch track and the touch force
  • the terminal or the server is based on the password information and The handwriting information generates an authentication result.
  • the terminal or the server authenticates the validity of the user by using the password information and the touch track in two ways, which is beneficial to improving the diversity of the authentication, thereby improving the security and reliability of the authentication.
  • the device embodiment of the present invention is used to perform the method for implementing the first to third embodiments of the present invention.
  • the device embodiment of the present invention is used to perform the method for implementing the first to third embodiments of the present invention.
  • the device embodiment of the present invention is used to perform the method for implementing the first to third embodiments of the present invention.
  • Only parts related to the embodiment of the present invention are shown, and the specific technical details are not disclosed. Please refer to Embodiment 1 to Embodiment 3 of the present invention.
  • FIG. 4 is a schematic structural diagram of an authentication apparatus according to a fourth embodiment of the present invention.
  • the authentication apparatus in the embodiment of the present invention includes the following modules:
  • the obtaining module 401 is configured to obtain a touch parameter for a touch operation of the preset area of the terminal, where the touch parameter includes a touch force and a touch track, and the touch operation is performed for the preset account identifier;
  • the first determining module 402 is configured to determine password information based on the touch track
  • the second determining module 403 is configured to determine handwriting information based on the touch track and the touch force
  • the authentication module 404 is configured to generate an authentication result based on the password information and the handwriting information.
  • the handwriting information includes a handwriting contour feature, a handwriting sequence feature, and a handwriting velocity feature;
  • the second determining module 403 is specifically configured to determine the handwriting contour feature and the handwriting sequence feature based on the touch track; and determine the handwriting velocity feature based on the touch intensity.
  • the device may further include:
  • the registration module 405 is configured to obtain an account identifier input by the user and account information associated with the account identifier, and obtain the account identifier associated with the account identifier, before the acquiring module acquires the touch parameter for the touch operation of the preset area of the terminal.
  • the authentication touch parameter of the authentication touch operation, the authentication touch parameter includes a power of authentication and an authentication track; determining authentication password information based on the authentication track, based on the authentication track and the authentication power Determine the handwriting information.
  • the authentication module 404 is specifically configured to detect whether the password information matches the pre-stored authentication password information, and generate an authentication when detecting that the password information does not match the pre-stored authentication password information. Failed authentication result;
  • the authentication module 404 is specifically configured to detect whether the password information and the handwriting information match the pre-stored authentication password information and the authentication handwriting information;
  • the terminal or the server obtains the touch parameter for the touch operation of the preset area of the terminal, where the touch parameter includes the touch force and the touch track, and the touch
  • the control operation is for the preset account identifier
  • the terminal or the server determines the password information based on the touch track, determines the handwriting information based on the touch track and the touch force
  • the terminal or the server is based on the password information and The handwriting information generates an authentication result.
  • the terminal or the server authenticates the validity of the user by using the password information and the touch track in two ways, which is beneficial to improving the diversity of the authentication, thereby improving the security and reliability of the authentication.
  • FIG. 5 is a schematic structural diagram of an authentication apparatus according to an embodiment of the present invention.
  • the authentication apparatus in the embodiment of the present invention includes at least one processor 501, such as a CPU, at least one receiver 503, at least one memory 504, at least one transmitter 505, and at least one communication bus 502.
  • the communication bus 502 is used to implement connection communication between these components.
  • the receiver 503 and the transmitter 505 of the device in the embodiment of the present invention may be a wired sending port, or may be a wireless device, for example, including an antenna device, for performing signaling or data communication with other node devices.
  • the memory 504 may be a high speed RAM memory or a non-volatile memory such as at least one disk memory.
  • the memory 504 can optionally also be at least one storage device located remotely from the aforementioned processor 501.
  • a set of program codes is stored in memory 504, and said processor 501 can invoke code stored in memory 504 via communication bus 502 to perform related functions.
  • the processor 501 is configured to acquire a touch parameter for a touch operation of a preset area of the terminal, where the touch parameter includes a touch force and a touch track, and the touch operation is for a preset account identifier;
  • the touch track determines password information; determines handwriting information based on the touch track and the touch force; and generates an authentication result based on the password information and the handwriting information.
  • the handwriting information includes a handwriting contour feature, a handwriting sequence feature, and a handwriting velocity feature.
  • the processor 501 is specifically configured to determine handwriting information based on the touch track and the touch velocity. Determining the handwriting contour feature and the handwriting sequence feature based on the touch track; determining the handwriting velocity feature based on the touch intensity.
  • the processor 501 is further configured to acquire an account identifier input by the user and account information associated with the account identifier, before acquiring the touch parameter for the touch operation of the preset area of the terminal;
  • the authentication touch parameter includes a authentication power and an authentication track; determining the authentication password information based on the authentication track, based on the The authentication trajectory and the authentication power determine the authentication handwriting information.
  • the processor 501 is configured to detect whether the password information matches the pre-stored authentication password information when the authentication result is generated based on the password information and the handwriting information; When the password information does not match the pre-stored authentication password information, an authentication result of the authentication failure is generated;
  • the processor 501 is configured to detect the password information and the handwriting information and the pre-stored authentication password information and the authentication when the authentication result is generated based on the password information and the handwriting information. Whether the handwriting information matches; when the password information is detected to match the pre-stored authentication password information, and the handwriting information is detected to match the pre-stored authentication handwriting information, the authentication result of the successful authentication is generated.
  • the foregoing authentication device may be applied to the mobile terminal or may be applied to the server.
  • the above mobile terminal method may be any device having a storage function and a touch screen, such as: a tablet computer, a mobile phone, an e-reader, a remote controller, a personal computer (PC), a notebook computer, a car.
  • Devices such as devices, network TVs, and wearable devices.
  • the mobile terminal includes a touch display screen, and the touch display screen is the touch screen and the display screen Integrated, the touch display screen may be provided with a pressure sensor array, and the mobile terminal can detect the pressure parameter through the pressure sensor array, wherein the pressure sensor can be, for example, a resistance strain gauge pressure sensor, a semiconductor strain gauge pressure sensor, and a piezoresistive type.
  • the pressure sensor can be, for example, a resistance strain gauge pressure sensor, a semiconductor strain gauge pressure sensor, and a piezoresistive type.
  • the pressure sensor, the inductive pressure sensor, the capacitive pressure sensor, the resonant pressure sensor, and the like are included in the embodiment of the present invention, but are not limited to the above manner to obtain the touch force.
  • the touch display screen may include: a screen; an indium tin oxide pattern disposed under the screen; a touch sensor disposed under the indium tin oxide pattern; and the touch sensor a lower indium tin oxide substrate; and a pressure sensor disposed on an upper surface or a lower surface of the indium tin oxide substrate; or
  • the touch display screen may include: a screen; an indium tin oxide pattern disposed under the screen; a touch sensor disposed under the indium tin oxide pattern; and disposed on the Touch the pressure sensor below the sensor.
  • the terminal or the server obtains the touch parameter for the touch operation of the preset area of the terminal, where the touch parameter includes the touch force and the touch track, and the touch
  • the control operation is for the preset account identifier
  • the terminal or the server determines the password information based on the touch track, determines the handwriting information based on the touch track and the touch force
  • the terminal or the server is based on the password information and The handwriting information generates an authentication result.
  • the terminal or the server authenticates the validity of the user by using the password information and the touch track in two ways, which is beneficial to improving the diversity of the authentication, thereby improving the security and reliability of the authentication.
  • the embodiment of the present invention further provides a computer storage medium, wherein the computer storage medium may store a program, and the program includes some or all of the steps of the monitoring method of any one of the service processes described in the foregoing method embodiments.
  • the disclosed apparatus may be implemented in other ways.
  • the device embodiments described above are merely illustrative.
  • the division of the unit is only a logical function division.
  • there may be another division manner for example, multiple units or components may be combined or may be Integrate into another system, or some features can be ignored or not executed.
  • the mutual coupling or direct coupling or communication connection shown or discussed may be an indirect coupling or communication connection through some interface, device or unit, and may be electrical or otherwise.
  • the units described as separate components may or may not be physically separated, and the components displayed as units may or may not be physical units, that is, may be located in one place, or may be distributed to multiple network units. Some or all of the units may be selected according to actual needs to achieve the purpose of the solution of the embodiment.
  • each functional unit in each embodiment of the present invention may be integrated into one processing unit, or each unit may exist physically separately, or two or more units may be integrated into one unit.
  • the above integrated unit can be implemented in the form of hardware or in the form of a software functional unit.
  • the integrated unit if implemented in the form of a software functional unit and sold or used as a standalone product, may be stored in a computer readable storage medium.
  • the technical solution of the present invention which is essential or contributes to the prior art, or all or part of the technical solution, may be embodied in the form of a software product stored in a storage medium.
  • a number of instructions are included to cause a computer device (which may be a personal computer, server or network device, etc.) to perform all or part of the steps of the methods described in various embodiments of the present invention.
  • the foregoing storage medium includes: a U disk, a Read-Only Memory (ROM), a Random Access Memory (RAM), a removable hard disk, a magnetic disk, or an optical disk, and the like. .
  • the program may be stored in a computer readable storage medium, and the storage medium may include: Flash disk, read-only memory (English: Read-Only Memory, referred to as: ROM), random accessor (English: Random Access Memory, Jane Called: RAM), disk or CD.
  • ROM Read-Only Memory
  • RAM Random Access Memory

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Collating Specific Patterns (AREA)
  • User Interface Of Digital Computer (AREA)

Abstract

本发明实施例公开了一种鉴权方法及鉴权装置,包括:获取针对终端预设区域的触控操作的触控参数(S101),所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识;基于所述触控轨迹确定密码信息(S102);基于所述触控轨迹和所述触控力度确定笔迹信息(S103);基于所述密码信息和所述笔迹信息生成鉴权结果(S104)。本发明实施例提供技术方案有利于提升鉴权的多样性,进而提升鉴权的安全性和可靠性。

Description

一种鉴权方法及鉴权装置
本申请要求于2016年1月28日提交中国专利局,申请号为201610058536.8、发明名称为“一种鉴权方法及鉴权装置”的中国专利申请的优先权,其全部内容通过引用结合在本申请中。
技术领域
本发明涉及通信技术领域,具体涉及一种鉴权方法及鉴权装置。
背景技术
随着微电子技术的发展,智能手机等移动终端的功能越来越多样化,用户可以通过智能手机随时随地的浏览网页、查看图片、玩游戏、完成支付等。现有带有触摸屏终端的手机,在进行数据传输认证或数据密码保护时,需要通过输入数字密码进行鉴权,将用户输入的数字密码与预存的鉴权密码进行比较,当数字密码相同时,鉴权成功。
但是在现有技术的密码方式鉴权的过程中,由于鉴权方式单一,密码一旦被人窃取,用户的手机内存储的数据或者账户的安全就会受到威胁,数据的安全性就会大大的降低。
发明内容
本发明实施例提供了一种鉴权方法及鉴权装置,以期提升鉴权的多样性和安全性。
本发明实施例第一方面提供一种鉴权方法,包括:
获取针对终端预设区域的触控操作的触控参数,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识;
基于所述触控轨迹确定密码信息;
基于所述触控轨迹和所述触控力度确定笔迹信息;
基于所述密码信息和所述笔迹信息生成鉴权结果。
可选的,所述笔迹信息包括笔迹轮廓特征、笔迹顺序特征和笔迹力度特征;
所述基于所述触控轨迹和所述触控力度确定笔迹信息,包括:
基于所述触控轨迹确定所述笔迹轮廓特征和所述笔迹顺序特征;
基于所述触控力度确定所述笔迹力度特征。
可选的,所述获取针对终端预设区域的触控操作的触控参数之前,所述方法还包括:
获取用户输入的账户标识及与所述账户标识关联的账户信息;
获取与所述账户标识关联的鉴权触控操作的鉴权触控参数,所述鉴权触控参数包括鉴权力度和鉴权轨迹;
基于所述鉴权轨迹确定鉴权密码信息,基于所述鉴权轨迹和鉴权力度确定鉴权笔迹信息。
可选的,所述基于所述密码信息和所述笔迹信息生成鉴权结果,包括:
检测所述密码信息与预存的鉴权密码信息是否匹配;
在检测到所述密码信息与预存的鉴权密码信息不匹配时,生成鉴权失败的鉴权结果;
或者,
检测所述触控力度与预存的鉴权力度是否匹配;
在检测到所述触控力度与预存的鉴权力度不匹配时,生成鉴权失败的鉴权结果。
可选的,所述基于所述密码信息和所述笔迹信息生成鉴权结果,包括:
检测所述密码信息和笔迹信息与预存的鉴权密码信息和鉴权笔迹信息是否匹配;
在检测到所述密码信息与预存的鉴权密码信息匹配,且检测到所述笔迹信息与预存的鉴权笔迹信息匹配时,生成鉴权成功的鉴权结果。
本发明实施例第二方面提供一种鉴权装置,包括:。
获取模块,用于获取针对终端预设区域的触控操作的触控参数,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识;
第一确定模块,用于基于所述触控轨迹确定密码信息;
第二确定模块,用于基于所述触控轨迹和所述触控力度确定笔迹信息;
鉴权模块,用于基于所述密码信息和所述笔迹信息生成鉴权结果。
可选的,所述笔迹信息包括笔迹轮廓特征、笔迹顺序特征和笔迹力度特征;
所述第二确定模块,具体用于基于所述触控轨迹确定所述笔迹轮廓特征和所述笔迹顺序特征;基于所述触控力度确定所述笔迹力度特征。
可选的,所述装置还包括:
注册模块,用于所述获取模块获取针对终端预设区域的触控操作的触控参数之前,获取用户输入的账户标识及与所述账户标识关联的账户信息;获取与所述账户标识关联的鉴权触控操作的鉴权触控参数,所述鉴权触控参数包括鉴权力度和鉴权轨迹;基于所述鉴权轨迹确定鉴权密码信息,基于所述鉴权轨迹和鉴权力度确定鉴权笔迹信息。
可选的,所述鉴权模块,具体用于检测所述密码信息与预存的鉴权密码信息是否匹配;在检测到所述密码信息与预存的鉴权密码信息不匹配时,生成鉴权失败的鉴权结果;
或者,检测所述触控力度与预存的鉴权力度是否匹配;在检测到所述触控力度与预存的鉴权力度不匹配时,生成鉴权失败的鉴权结果。
可选的,所述鉴权模块,具体用于检测所述密码信息和笔迹信息与预存的鉴权密码信息和鉴权笔迹信息是否匹配;
在检测到所述密码信息与预存的鉴权密码信息匹配,且检测到所述笔迹信息与预存的鉴权笔迹信息匹配时,生成鉴权成功的鉴权结果。
可以看出,本发明实施例技术方案中,首先终端或者服务器获取针对终端预设区域的触控操作的触控参数,其中,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识,其次,终端或者服务器基于所述触控轨迹确定密码信息,基于所述触控轨迹和所述触控力度确定笔迹信息,最终,终端或者服务器基于所述密码信息和所述笔迹信息生成鉴权结果。其中,终端或者服务器通过对密码信息和触控轨迹两种方式对用户的合法性进行鉴权,有利于提升鉴权的多样性,进而提升鉴权的安全性和可靠性。
附图说明
为了更清楚地说明本发明实施例或现有技术中的技术方案,下面将对实施 例或现有技术描述中所需要使用的附图作简单地介绍,显而易见地,下面描述中的附图仅仅是本发明的一些实施例,对于本领域普通技术人员来讲,在不付出创造性劳动的前提下,还可以根据这些附图获得其他的附图。
图1是本发明第一实施例提供的一种鉴权方法的流程示意图;
图2是本发明第二实施例提供的一种鉴权方法的流程示意图;
图3是本发明第三实施例提供的一种鉴权方法的流程示意图;
图4是本发明第四实施例提供的一种鉴权装置的结构程示意图;
图5是本发明第五实施例提供的一种鉴权装置的结构程示意图。
具体实施方式
为了使本技术领域的人员更好地理解本发明方案,下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述,显然,所描述的实施例仅仅是本发明一部分实施例,而不是全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有作出创造性劳动前提下所获得的所有其他实施例,都属于本发明保护的范围。
本发明的说明书和权利要求书及上述附图中的术语“第一”、“第二”等是用于区别不同对象,而不是用于描述特定顺序。此外,术语“包括”和“具有”以及它们任何变形,意图在于覆盖不排他的包含。例如包含了一系列步骤或单元的过程、方法、系统、产品或设备没有限定于已列出的步骤或单元,而是可选地还包括没有列出的步骤或单元,或可选地还包括对于这些过程、方法、产品或设备固有的其他步骤或单元。
在本文中提及“实施例”意味着,结合实施例描述的特定特征、结构或特性可以包含在本发明的至少一个实施例中。在说明书中的各个位置出现该短语并不一定均是指相同的实施例,也不是与其它实施例互斥的独立的或备选的实施例。本领域技术人员显式地和隐式地理解的是,本文所描述的实施例可以与其它实施例相结合。
请参阅图1,图1是本发明第一实施例提供的一种鉴权方法的流程示意图,本发明实施例中的鉴权方法可以应用在移动终端上,也可以是应用于相应的服务器中。如图1所示,本发明实施例中的鉴权方法包括以下步骤:
S101、获取针对终端预设区域的触控操作的触控参数,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识。
可以理解的,本发明实施例中的鉴权方法可以应用在移动终端上,也可以是应用于相应的服务器中,当所述鉴权方法是应用在服务器上时,服务器获取终端发送的针对终端预设区域的触控操作的触控参数;当所述鉴权方法是应用在终端上时,终端直接获取用户的针对终端预设区域的触控操作的触控参数。
其中,所述终端可以是包括触控显示屏的例如智能手机、平板电脑、笔记本电脑、可穿戴设备(如智能手表)等各类通用电子设备。所述触控显示屏为所述触控屏和所述显示屏的集成,该触控显示屏中可以设置有压力传感器阵列,移动终端能够通过该压力传感器阵列检测压力参数,其中,上述压力传感器例如可以是电阻应变片压力传感器、半导体应变片压力传感器、压阻式压力传感器、电感式压力传感器、电容式压力传感器、谐振式压力传感器等,本发明实施例中包括但不限于上述方式来获取触控力度。
举例来说,所述触控显示屏可以包括:屏面;设置于所述屏面下方的铟锡氧化物图形;设置于所述铟锡氧化物图形下方的触摸传感器;设置于所述触摸传感器下方的铟锡氧化物基板;以及设置于所述铟锡氧化物基板的上表面或者下表面的压力传感器;或者
又举例来说,所述触控显示屏可以包括:屏面;设置于所述屏面下方的铟锡氧化物图形;设置于所述铟锡氧化物图形下方的触摸传感器;以及设置于所述触摸传感器下方的压力传感器。
其中,所述获取针对终端预设区域的触控操作的触控参数之前,所述方法还包括:
获取用户输入的账户标识及与所述账户标识关联的账户信息;
获取与所述账户标识关联的鉴权触控操作的鉴权触控参数,所述鉴权触控参数包括鉴权力度和鉴权轨迹;
基于所述鉴权轨迹确定鉴权密码信息,基于所述鉴权轨迹和鉴权力度确定鉴权笔迹信息。
S102、基于所述触控轨迹确定密码信息。
可以理解的,当本发明实施例中的鉴权方法应用在终端上时,终端基于获取用户针对显示屏预设区域的触控操作的触控轨迹确定密码信息,上述终端基 于获取用户针对显示屏预设区域的触控操作的触控轨迹确定密码信息的具体实现方式可以是终端基于图像识别算法,由触控轨迹提取密码信息,其中,上述密码信息可以是字符、数字、汉字等。
或者,当本发明实施例中的鉴权方法应用在服务器上时,服务器基于终端发送的针对终端预设区域的触控操作的触控轨迹确定密码信息。
S103、基于所述触控轨迹和所述触控力度确定笔迹信息。
其中,所述笔迹信息包括笔迹轮廓特征、笔迹顺序特征和笔迹力度特征。
所述基于所述触控轨迹和所述触控力度确定笔迹信息的具体实现方式可以是:
基于所述触控轨迹确定所述笔迹轮廓特征和所述笔迹顺序特征;
基于所述触控力度确定所述笔迹力度特征。
其中,可以理解的,当本发明实施例中的鉴权方法应用在终端上时,终端基于用户针对终端预设区域的触控操作的所述触控轨迹和所述触控力度确定笔迹信息;当本发明实施例中的鉴权方法应用在服务器上时,服务器基于终端发送的用户针对终端预设区域的触控操作的所述触控轨迹和所述触控力度确定笔迹信息。
S104、基于所述密码信息和所述笔迹信息生成鉴权结果。
可以理解的,所述基于所述密码信息和所述笔迹信息生成鉴权结果的具体实现方式可以是:
检测所述密码信息与预存的鉴权密码信息是否匹配;
在检测到所述密码信息与预存的鉴权密码信息不匹配时,生成鉴权失败的鉴权结果;
或者,
检测所述触控力度与预存的鉴权力度是否匹配;
在检测到所述触控力度与预存的鉴权力度不匹配时,生成鉴权失败的鉴权结果。
可选的,所述基于所述密码信息和所述笔迹信息生成鉴权结果的具体实现方式还可以是:
检测所述密码信息和笔迹信息与预存的鉴权密码信息和鉴权笔迹信息是否匹配;
在检测到所述密码信息与预存的鉴权密码信息匹配,且检测到所述笔迹信息与预存的鉴权笔迹信息匹配时,生成鉴权成功的鉴权结果。
可以看出,本发明实施例技术方案中,首先终端或者服务器获取针对终端预设区域的触控操作的触控参数,其中,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识,其次,终端或者服务器基于所述触控轨迹确定密码信息,基于所述触控轨迹和所述触控力度确定笔迹信息,最终,终端或者服务器基于所述密码信息和所述笔迹信息生成鉴权结果。其中,终端或者服务器通过对密码信息和触控轨迹两种方式对用户的合法性进行鉴权,有利于提升鉴权的多样性,进而提升鉴权的安全性和可靠性。
请参阅图2,图2是本发明第二实施例提供的一种鉴权方法的流程示意图,如图2所示,包括以下步骤:
S201、终端获取用户输入的账户标识及与所述账户标识关联的账户信息。
S202、终端获取与所述账户标识关联的鉴权触控操作的鉴权触控参数,所述鉴权触控参数包括鉴权力度和鉴权轨迹。
S203、终端基于所述鉴权轨迹确定鉴权密码信息,基于所述鉴权轨迹和鉴权力度确定鉴权笔迹信息。
S204、终端获取针对终端预设区域的触控操作的触控参数,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识。
S205、终端基于所述触控轨迹确定密码信息。
S206、终端基于所述触控轨迹和所述触控力度确定笔迹信息。
其中,所述笔迹信息包括笔迹轮廓特征、笔迹顺序特征和笔迹力度特征。
所述基于所述触控轨迹和所述触控力度确定笔迹信息的具体实现方式可以是:
基于所述触控轨迹确定所述笔迹轮廓特征和所述笔迹顺序特征。
基于所述触控力度确定所述笔迹力度特征。
S207、终端基于所述密码信息和所述笔迹信息生成鉴权结果。
可以理解的,所述终端基于所述密码信息和所述笔迹信息生成鉴权结果的具体实现方式可以是:
终端检测所述密码信息与预存的鉴权密码信息是否匹配;
在检测到所述密码信息与预存的鉴权密码信息不匹配时,终端生成鉴权失败的鉴权结果;
或者,
终端检测所述触控力度与预存的鉴权力度是否匹配;
在检测到所述触控力度与预存的鉴权力度不匹配时,终端生成鉴权失败的鉴权结果。
可选的,所述终端基于所述密码信息和所述笔迹信息生成鉴权结果的具体实现方式还可以是:
终端检测所述密码信息和笔迹信息与预存的鉴权密码信息和鉴权笔迹信息是否匹配;
在检测到所述密码信息与预存的鉴权密码信息匹配,且检测到所述笔迹信息与预存的鉴权笔迹信息匹配时,终端生成鉴权成功的鉴权结果。
可以看出,本发明实施例技术方案中,首先终端或者服务器获取针对终端预设区域的触控操作的触控参数,其中,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识,其次,终端或者服务器基于所述触控轨迹确定密码信息,基于所述触控轨迹和所述触控力度确定笔迹信息,最终,终端或者服务器基于所述密码信息和所述笔迹信息生成鉴权结果。其中,终端或者服务器通过对密码信息和触控轨迹两种方式对用户的合法性进行鉴权,有利于提升鉴权的多样性,进而提升鉴权的安全性和可靠性。
请参阅图3,图3是本发明第三实施例提供的一种鉴权方法的流程示意图,如图3所示,本发明实施例中的鉴权方法包括以下步骤:
S301、终端获取用户输入的账户标识及与所述账户标识关联的账户信息,并将所述账户信息发送至与所述终端建立通信连接的服务器。
可以理解的,上述终端与服务器建立通讯连接的方式可以是包括WI-FI、蓝牙、或移动网络(2G、3G或4G等)等无线通信连接方式。
S302、终端获取与所述账户标识关联的鉴权触控操作的鉴权触控参数,所述鉴权触控参数包括鉴权力度和鉴权轨迹。
S303、终端基于所述鉴权轨迹确定鉴权密码信息,基于所述鉴权轨迹和鉴权力度确定鉴权笔迹信息,并将所述鉴权密码信息和所述鉴权笔迹信息发送至 服务器。
可以理解的,终端通过将所述鉴权密码信息和所述鉴权笔迹信息发送至服务器,使得所述鉴权密码信息和所述鉴权笔迹信息存储在所述服务器中,进而可以防止所述鉴权密码信息和所述鉴权笔迹信息存储在终端时被人窃取这一现象的发生,从而可以进一步提升鉴权过程中的安全性和可靠性。
S304、终端获取针对终端预设区域的触控操作的触控参数,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识。
S305、终端基于所述触控轨迹确定密码信息,并将所述密码信息发送至所述服务器。
S306、终端基于所述触控轨迹和所述触控力度确定笔迹信息,并将所述笔记信息发送至所述服务器。
其中,所述笔迹信息包括笔迹轮廓特征、笔迹顺序特征和笔迹力度特征;
所述终端基于所述触控轨迹和所述触控力度确定笔迹信息的具体实现方式可以是:
终端基于所述触控轨迹确定所述笔迹轮廓特征和所述笔迹顺序特征;
终端基于所述触控力度确定所述笔迹力度特征。
S307、所述服务器基于所述密码信息和所述笔迹信息生成鉴权结果。
可以理解的,所述服务器基于所述密码信息和所述笔迹信息生成鉴权结果的具体实现方式可以是:
所述服务器检测所述密码信息与预存的鉴权密码信息是否匹配;
所述服务器在检测到所述密码信息与预存的鉴权密码信息不匹配时,生成鉴权失败的鉴权结果;
或者,
所述服务器检测所述触控力度与预存的鉴权力度是否匹配;
所述服务器在检测到所述触控力度与预存的鉴权力度不匹配时,生成鉴权失败的鉴权结果。
可选的,所述服务器基于所述密码信息和所述笔迹信息生成鉴权结果的具体实现方式还可以是:
所述服务器检测所述密码信息和笔迹信息与预存的鉴权密码信息和鉴权笔迹信息是否匹配;
所述服务器在检测到所述密码信息与预存的鉴权密码信息匹配,且检测到所述笔迹信息与预存的鉴权笔迹信息匹配时,生成鉴权成功的鉴权结果。
可以看出,本发明实施例技术方案中,首先终端或者服务器获取针对终端预设区域的触控操作的触控参数,其中,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识,其次,终端或者服务器基于所述触控轨迹确定密码信息,基于所述触控轨迹和所述触控力度确定笔迹信息,最终,终端或者服务器基于所述密码信息和所述笔迹信息生成鉴权结果。其中,终端或者服务器通过对密码信息和触控轨迹两种方式对用户的合法性进行鉴权,有利于提升鉴权的多样性,进而提升鉴权的安全性和可靠性。
下面为本发明装置实施例,本发明装置实施例用于执行本发明方法实施例一至三实现的方法,为了便于说明,仅示出了与本发明实施例相关的部分,具体技术细节未揭示的,请参照本发明实施例一至实施例三。
请参阅图4,图4是本发明第四实施例提供的一种鉴权装置的结构示意图,如图4所示,本发明实施例中的鉴权装置包括以下模块:
获取模块401,用于获取针对终端预设区域的触控操作的触控参数,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识;
第一确定模块402,用于基于所述触控轨迹确定密码信息;
第二确定模块403,用于基于所述触控轨迹和所述触控力度确定笔迹信息;
鉴权模块404,用于基于所述密码信息和所述笔迹信息生成鉴权结果。
可选的,所述笔迹信息包括笔迹轮廓特征、笔迹顺序特征和笔迹力度特征;
所述第二确定模块403,具体用于基于所述触控轨迹确定所述笔迹轮廓特征和所述笔迹顺序特征;基于所述触控力度确定所述笔迹力度特征。
可选的,所述装置还可以进一步包括:
注册模块405,用于所述获取模块获取针对终端预设区域的触控操作的触控参数之前,获取用户输入的账户标识及与所述账户标识关联的账户信息;获取与所述账户标识关联的鉴权触控操作的鉴权触控参数,所述鉴权触控参数包括鉴权力度和鉴权轨迹;基于所述鉴权轨迹确定鉴权密码信息,基于所述鉴权轨迹和鉴权力度确定鉴权笔迹信息。
可选的,所述鉴权模块404,具体用于检测所述密码信息与预存的鉴权密码信息是否匹配;在检测到所述密码信息与预存的鉴权密码信息不匹配时,生成鉴权失败的鉴权结果;
或者,检测所述触控力度与预存的鉴权力度是否匹配;在检测到所述触控力度与预存的鉴权力度不匹配时,生成鉴权失败的鉴权结果。
可选的,所述鉴权模块404,具体用于检测所述密码信息和笔迹信息与预存的鉴权密码信息和鉴权笔迹信息是否匹配;
在检测到所述密码信息与预存的鉴权密码信息匹配,且检测到所述笔迹信息与预存的鉴权笔迹信息匹配时,生成鉴权成功的鉴权结果。
具体的,上述各个模块的具体实现可参考图1至图3对应实施例中相关步骤的描述,在此不赘述。
可以看出,本发明实施例技术方案中,首先终端或者服务器获取针对终端预设区域的触控操作的触控参数,其中,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识,其次,终端或者服务器基于所述触控轨迹确定密码信息,基于所述触控轨迹和所述触控力度确定笔迹信息,最终,终端或者服务器基于所述密码信息和所述笔迹信息生成鉴权结果。其中,终端或者服务器通过对密码信息和触控轨迹两种方式对用户的合法性进行鉴权,有利于提升鉴权的多样性,进而提升鉴权的安全性和可靠性。
请参考图5,图5是本发明实施例提供的一种鉴权装置的结构示意图。如图5所示,本发明实施例中的鉴权装置包括:至少一个处理器501,例如CPU,至少一个接收器503,至少一个存储器504,至少一个发送器505,至少一个通信总线502。其中,通信总线502用于实现这些组件之间的连接通信。其中,本发明实施例中装置的接收器503和发送器505可以是有线发送端口,也可以为无线设备,例如包括天线装置,用于与其他节点设备进行信令或数据的通信。存储器504可以是高速RAM存储器,也可以是非不稳定的存储器(non-volatile memory),例如至少一个磁盘存储器。存储器504可选的还可以是至少一个位于远离前述处理器501的存储装置。存储器504中存储一组程序代码,且所述处理器501可通过通信总线502,调用存储器504中存储的代码以执行相关的功能。
所述处理器501,用于获取针对终端预设区域的触控操作的触控参数,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识;基于所述触控轨迹确定密码信息;基于所述触控轨迹和所述触控力度确定笔迹信息;基于所述密码信息和所述笔迹信息生成鉴权结果。
可选的,所述笔迹信息包括笔迹轮廓特征、笔迹顺序特征和笔迹力度特征;所述处理器501,在用于基于所述触控轨迹和所述触控力度确定笔迹信息时,具体用于基于所述触控轨迹确定所述笔迹轮廓特征和所述笔迹顺序特征;基于所述触控力度确定所述笔迹力度特征。
可选的,所述处理器501,在用于获取针对终端预设区域的触控操作的触控参数之前,还用于获取用户输入的账户标识及与所述账户标识关联的账户信息;
获取与所述账户标识关联的鉴权触控操作的鉴权触控参数,所述鉴权触控参数包括鉴权力度和鉴权轨迹;基于所述鉴权轨迹确定鉴权密码信息,基于所述鉴权轨迹和鉴权力度确定鉴权笔迹信息。
可选的,所述处理器501,在用于基于所述密码信息和所述笔迹信息生成鉴权结果时,具体用于检测所述密码信息与预存的鉴权密码信息是否匹配;在检测到所述密码信息与预存的鉴权密码信息不匹配时,生成鉴权失败的鉴权结果;
或者,检测所述触控力度与预存的鉴权力度是否匹配;在检测到所述触控力度与预存的鉴权力度不匹配时,生成鉴权失败的鉴权结果。
可选的,所述处理器501,在用于基于所述密码信息和所述笔迹信息生成鉴权结果时,具体用于检测所述密码信息和笔迹信息与预存的鉴权密码信息和鉴权笔迹信息是否匹配;在检测到所述密码信息与预存的鉴权密码信息匹配,且检测到所述笔迹信息与预存的鉴权笔迹信息匹配时,生成鉴权成功的鉴权结果。
其中,上述鉴权装置可以应用在移动终端中,也可以应用在服务器中。当应用在移动终端中时,上述移动终端法可以是任何具备存储功能和触摸屏的设备,例如:平板电脑、手机、电子阅读器、遥控器、个人计算机(Personal Computer,PC)、笔记本电脑、车载设备、网络电视、可穿戴设备等终端。上述移动终端包括触控显示屏,所述触控显示屏为所述触控屏和所述显示屏的 集成,该触控显示屏中可以设置有压力传感器阵列,移动终端能够通过该压力传感器阵列检测压力参数,其中,上述压力传感器例如可以是电阻应变片压力传感器、半导体应变片压力传感器、压阻式压力传感器、电感式压力传感器、电容式压力传感器、谐振式压力传感器等,本发明实施例中包括但不限于上述方式来获取触控力度。
举例来说,所述触控显示屏可以包括:屏面;设置于所述屏面下方的铟锡氧化物图形;设置于所述铟锡氧化物图形下方的触摸传感器;设置于所述触摸传感器下方的铟锡氧化物基板;以及设置于所述铟锡氧化物基板的上表面或者下表面的压力传感器;或者
又举例来说,所述触控显示屏可以包括:屏面;设置于所述屏面下方的铟锡氧化物图形;设置于所述铟锡氧化物图形下方的触摸传感器;以及设置于所述触摸传感器下方的压力传感器。
具体的,上述处理器501的具体执行操作可参考图1至图3对应实施例中相关步骤的描述,在此不赘述。
可以看出,本发明实施例技术方案中,首先终端或者服务器获取针对终端预设区域的触控操作的触控参数,其中,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识,其次,终端或者服务器基于所述触控轨迹确定密码信息,基于所述触控轨迹和所述触控力度确定笔迹信息,最终,终端或者服务器基于所述密码信息和所述笔迹信息生成鉴权结果。其中,终端或者服务器通过对密码信息和触控轨迹两种方式对用户的合法性进行鉴权,有利于提升鉴权的多样性,进而提升鉴权的安全性和可靠性。
本发明实施例还提供一种计算机存储介质,其中,该计算机存储介质可存储有程序,该程序执行时包括上述方法实施例中记载的任何一种服务进程的监控方法的部分或全部步骤。
需要说明的是,对于前述的各方法实施例,为了简单描述,故将其都表述为一系列的动作组合,但是本领域技术人员应该知悉,本发明并不受所描述的动作顺序的限制,因为依据本发明,某些步骤可以采用其他顺序或者同时进行。其次,本领域技术人员也应该知悉,说明书中所描述的实施例均属于优选实施例,所涉及的动作和模块并不一定是本发明所必须的。
在上述实施例中,对各个实施例的描述都各有侧重,某个实施例中没有详述的部分,可以参见其他实施例的相关描述。
在本申请所提供的几个实施例中,应该理解到,所揭露的装置,可通过其它的方式实现。例如,以上所描述的装置实施例仅仅是示意性的,例如所述单元的划分,仅仅为一种逻辑功能划分,实际实现时可以有另外的划分方式,例如多个单元或组件可以结合或者可以集成到另一个系统,或一些特征可以忽略,或不执行。另一点,所显示或讨论的相互之间的耦合或直接耦合或通信连接可以是通过一些接口,装置或单元的间接耦合或通信连接,可以是电性或其它的形式。
所述作为分离部件说明的单元可以是或者也可以不是物理上分开的,作为单元显示的部件可以是或者也可以不是物理单元,即可以位于一个地方,或者也可以分布到多个网络单元上。可以根据实际的需要选择其中的部分或者全部单元来实现本实施例方案的目的。
另外,在本发明各个实施例中的各功能单元可以集成在一个处理单元中,也可以是各个单元单独物理存在,也可以两个或两个以上单元集成在一个单元中。上述集成的单元既可以采用硬件的形式实现,也可以采用软件功能单元的形式实现。
所述集成的单元如果以软件功能单元的形式实现并作为独立的产品销售或使用时,可以存储在一个计算机可读取存储介质中。基于这样的理解,本发明的技术方案本质上或者说对现有技术做出贡献的部分或者该技术方案的全部或部分可以以软件产品的形式体现出来,该计算机软件产品存储在一个存储介质中,包括若干指令用以使得一台计算机设备(可为个人计算机、服务器或者网络设备等)执行本发明各个实施例所述方法的全部或部分步骤。而前述的存储介质包括:U盘、只读存储器(ROM,Read-Only Memory)、随机存取存储器(RAM,Random Access Memory)、移动硬盘、磁碟或者光盘等各种可以存储程序代码的介质。
本领域普通技术人员可以理解上述实施例的各种方法中的全部或部分步骤是可以通过程序来指令相关的硬件来完成,该程序可以存储于一计算机可读存储介质中,存储介质可以包括:闪存盘、只读存储器(英文:Read-Only Memory,简称:ROM)、随机存取器(英文:Random Access Memory,简 称:RAM)、磁盘或光盘等。
以上对本发明实施例所提供的一种鉴权方法及鉴权装置进行了详细介绍,本文中应用了具体个例对本发明的原理及实施方式进行了阐述,以上实施例的说明只是用于帮助理解本发明的方法及其核心思想;同时,对于本领域的一般技术人员,依据本发明的思想,在具体实施方式及应用范围上均会有改变之处,综上所述,本说明书内容不应理解为对本发明的限制。

Claims (10)

  1. 一种鉴权方法,其特征在于,包括:
    获取针对终端预设区域的触控操作的触控参数,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识;
    基于所述触控轨迹确定密码信息;
    基于所述触控轨迹和所述触控力度确定笔迹信息;
    基于所述密码信息和所述笔迹信息生成鉴权结果。
  2. 如权利要求1所述的方法,其特征在于,所述笔迹信息包括笔迹轮廓特征、笔迹顺序特征和笔迹力度特征;
    所述基于所述触控轨迹和所述触控力度确定笔迹信息,包括:
    基于所述触控轨迹确定所述笔迹轮廓特征和所述笔迹顺序特征;
    基于所述触控力度确定所述笔迹力度特征。
  3. 如权利要求2所述的方法,其特征在于,所述获取针对终端预设区域的触控操作的触控参数之前,所述方法还包括:
    获取用户输入的账户标识及与所述账户标识关联的账户信息;
    获取与所述账户标识关联的鉴权触控操作的鉴权触控参数,所述鉴权触控参数包括鉴权力度和鉴权轨迹;
    基于所述鉴权轨迹确定鉴权密码信息,基于所述鉴权轨迹和鉴权力度确定鉴权笔迹信息。
  4. 如权利要求3所述的方法,其特征在于,所述基于所述密码信息和所述笔迹信息生成鉴权结果,包括:
    检测所述密码信息与预存的鉴权密码信息是否匹配;
    在检测到所述密码信息与预存的鉴权密码信息不匹配时,生成鉴权失败的鉴权结果;
    或者,
    检测所述触控力度与预存的鉴权力度是否匹配;
    在检测到所述触控力度与预存的鉴权力度不匹配时,生成鉴权失败的鉴权结果。
  5. 如权利要求3所述的方法,其特征在于,所述基于所述密码信息和所述笔迹信息生成鉴权结果,包括:
    检测所述密码信息和笔迹信息与预存的鉴权密码信息和鉴权笔迹信息是否匹配;
    在检测到所述密码信息与预存的鉴权密码信息匹配,且检测到所述笔迹信息与预存的鉴权笔迹信息匹配时,生成鉴权成功的鉴权结果。
  6. 一种鉴权装置,其特征在于,包括:
    获取模块,用于获取针对终端预设区域的触控操作的触控参数,所述触控参数包括触控力度和触控轨迹,所述触控操作针对预设账户标识;
    第一确定模块,用于基于所述触控轨迹确定密码信息;
    第二确定模块,用于基于所述触控轨迹和所述触控力度确定笔迹信息;
    鉴权模块,用于基于所述密码信息和所述笔迹信息生成鉴权结果。
  7. 如权利要求6所述的装置,其特征在于,
    所述笔迹信息包括笔迹轮廓特征、笔迹顺序特征和笔迹力度特征;
    所述第二确定模块,具体用于基于所述触控轨迹确定所述笔迹轮廓特征和所述笔迹顺序特征;基于所述触控力度确定所述笔迹力度特征。
  8. 如权利要求6所述的装置,其特征在于,所述装置还包括:
    注册模块,用于所述获取模块获取针对终端预设区域的触控操作的触控参数之前,获取用户输入的账户标识及与所述账户标识关联的账户信息;获取与所述账户标识关联的鉴权触控操作的鉴权触控参数,所述鉴权触控参数包括鉴权力度和鉴权轨迹;基于所述鉴权轨迹确定鉴权密码信息,基于所述鉴权轨迹和鉴权力度确定鉴权笔迹信息。
  9. 如权利要求8所述的装置,其特征在于,
    所述鉴权模块,具体用于检测所述密码信息与预存的鉴权密码信息是否匹配;在检测到所述密码信息与预存的鉴权密码信息不匹配时,生成鉴权失败的鉴权结果;
    或者,检测所述触控力度与预存的鉴权力度是否匹配;在检测到所述触控力度与预存的鉴权力度不匹配时,生成鉴权失败的鉴权结果。
  10. 如权利要求8所述的装置,其特征在于,
    所述鉴权模块,具体用于检测所述密码信息和笔迹信息与预存的鉴权密码信息和鉴权笔迹信息是否匹配;
    在检测到所述密码信息与预存的鉴权密码信息匹配,且检测到所述笔迹信息与预存的鉴权笔迹信息匹配时,生成鉴权成功的鉴权结果。
PCT/CN2016/074896 2016-01-28 2016-02-29 一种鉴权方法及鉴权装置 Ceased WO2017128487A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201610058536.8 2016-01-28
CN201610058536.8A CN105516983A (zh) 2016-01-28 2016-01-28 一种鉴权方法及鉴权装置

Publications (1)

Publication Number Publication Date
WO2017128487A1 true WO2017128487A1 (zh) 2017-08-03

Family

ID=55724548

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2016/074896 Ceased WO2017128487A1 (zh) 2016-01-28 2016-02-29 一种鉴权方法及鉴权装置

Country Status (2)

Country Link
CN (1) CN105516983A (zh)
WO (1) WO2017128487A1 (zh)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10530770B2 (en) 2017-06-28 2020-01-07 International Business Machines Corporation Pressure-based authentication
KR102629411B1 (ko) * 2018-12-06 2024-01-26 삼성전자주식회사 전자 장치 및 그의 사용자 입력에 기반한 서비스 제공 방법

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN201392536Y (zh) * 2008-11-28 2010-01-27 上海凌锐信息技术有限公司 具有笔迹识别身份确认功能的手持终端
CN201751902U (zh) * 2010-01-27 2011-02-23 江苏华安高技术安防产业有限公司 利用笔迹识别进行开机加解密的手持终端
US20140007001A1 (en) * 2012-06-29 2014-01-02 Xiao-Guang Li Electronic device and encryption and decryption method thereof
CN104407803A (zh) * 2014-11-21 2015-03-11 中国联合网络通信集团有限公司 基于笔迹识别的屏幕解锁方法、装置和电子设备

Family Cites Families (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102722283A (zh) * 2012-06-06 2012-10-10 北京中自科技产业孵化器有限公司 一种触摸屏的解锁方法及装置
CN104331650A (zh) * 2013-07-22 2015-02-04 联想(北京)有限公司 一种信息处理方法以及一种电子设备
CN104579670A (zh) * 2013-10-28 2015-04-29 腾讯科技(深圳)有限公司 一种移动终端的身份验证方法和移动终端
CN104901805B (zh) * 2014-11-17 2016-08-24 深圳市腾讯计算机系统有限公司 一种身份鉴权方法、装置和系统
CN105117632B (zh) * 2015-08-27 2018-01-23 广东欧珀移动通信有限公司 一种终端解锁的方法及终端
CN105160228A (zh) * 2015-08-27 2015-12-16 广东欧珀移动通信有限公司 一种移动终端解锁的方法及移动终端
CN105069347B (zh) * 2015-08-27 2017-11-24 广东欧珀移动通信有限公司 一种解锁的方法及终端

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN201392536Y (zh) * 2008-11-28 2010-01-27 上海凌锐信息技术有限公司 具有笔迹识别身份确认功能的手持终端
CN201751902U (zh) * 2010-01-27 2011-02-23 江苏华安高技术安防产业有限公司 利用笔迹识别进行开机加解密的手持终端
US20140007001A1 (en) * 2012-06-29 2014-01-02 Xiao-Guang Li Electronic device and encryption and decryption method thereof
CN104407803A (zh) * 2014-11-21 2015-03-11 中国联合网络通信集团有限公司 基于笔迹识别的屏幕解锁方法、装置和电子设备

Also Published As

Publication number Publication date
CN105516983A (zh) 2016-04-20

Similar Documents

Publication Publication Date Title
EP3402154B1 (en) Service processing method, device, and system
US9635018B2 (en) User identity verification method and system, password protection apparatus and storage medium
US10097547B2 (en) Security verification method, apparatus and terminal
CN105117663B (zh) 一种应用的加密对象显示方法及装置
WO2014108005A1 (en) Co-verification method, two-dimensional code generation method, and device and system therefor
CN106030511A (zh) 用于在电子装置中处理生物计量信息的方法和设备
WO2017084288A1 (zh) 身份验证方法及装置
CN110765502B (zh) 信息处理方法及相关产品
CN108304105A (zh) 一种应用界面启动方法、移动终端
JP2015201203A (ja) 入力パスワードを検証する方法およびパスワード検証装置、並びにパスワード検証装置を含むコンピュータ・システム
CN106255102B (zh) 一种终端设备的鉴定方法及相关设备
WO2016165557A1 (zh) 验证码的实现方法及装置
CN106599641A (zh) 一种限制终端锁定的方法、装置和终端
CN105610873A (zh) 身份验证方法及装置
CN107704168A (zh) 一种应用程序启动方法及移动终端
CN104994098A (zh) 文件传输方法以及相关装置和传输系统
CN108229139A (zh) 一种密码输入方法及移动终端
KR102012923B1 (ko) 단말기의 보안 관리장치 및 방법
CN108280337A (zh) 一种消息保护方法及移动终端
CN105050061A (zh) 一种基于用户声纹信息的消息发送方法及装置
CN111159687B (zh) 账户信息处理方法、电子设备及服务器
CN104811304B (zh) 身份验证方法及装置
WO2017128487A1 (zh) 一种鉴权方法及鉴权装置
CN110929238B (zh) 一种信息处理方法及设备
CN109547622B (zh) 一种验证方法及终端设备

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 16887371

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 16887371

Country of ref document: EP

Kind code of ref document: A1