WO2019117429A1 - 로그인 인증 서버 및 그 동작 방법 - Google Patents
로그인 인증 서버 및 그 동작 방법 Download PDFInfo
- Publication number
- WO2019117429A1 WO2019117429A1 PCT/KR2018/010311 KR2018010311W WO2019117429A1 WO 2019117429 A1 WO2019117429 A1 WO 2019117429A1 KR 2018010311 W KR2018010311 W KR 2018010311W WO 2019117429 A1 WO2019117429 A1 WO 2019117429A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- information
- server
- group
- authentication
- user
- Prior art date
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0884—Network architectures or network communication protocols for network security for authentication of entities by delegation of authentication, e.g. a proxy authenticates an entity to be authenticated on behalf of this entity vis-à-vis an authentication entity
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0876—Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
- H04L63/104—Grouping of entities
Definitions
- the present invention disclosed by this application relates to a login authentication server and a method thereof, and more particularly to a login authentication server and a method thereof, and more particularly to a login authentication server and a method thereof, in connection with a server holding personal information on members of a group, And a login authentication server for authenticating a login and a method thereof.
- a login operation may be performed in which the user informs and registers himself / herself in the system in order to use the computer system. This is not necessary for a single-user system, but for multi-user systems, it is essential to verify that the person you want to connect to is a legitimate user before starting work.
- Owning-based authentication is an authentication method that uses unique information input to a separate medium that is occupied or owned by a user. For example, there is an authentication technique using OTP (One Time Password).
- Knowledge-based authentication is an authentication method that utilizes user's knowledge.
- Feature - based authentication is the authentication method using the physical characteristics of the user, and it is the most secure because it uses the unique information.
- the existing login authentication technology may cause a serious security problem when members share an account within a group composed of a plurality of members.
- the collaboration of its members is essential. Therefore, to efficiently collaborate, it is common to use groupware that connects members' accounts over a network. You may also share one account for a particular site for business, cost, or convenience reasons.
- An object of the present invention is to provide a server and a method for managing log-in to a website of an account assigned to a member of a group, in association with a server for holding personal information of a group including a plurality of members.
- Another object of the present invention is to provide a system and method for continuously updating the account assigned to a member of a group by continuously receiving personal information of the group from a server holding the personal information of the group including a plurality of members, And to provide a method thereof.
- a log-in authentication server for determining the validity of a user requesting a log-in with a group service account of the group based on personal information about members belonging to the group
- a communication unit communicatively connected to transmit and receive data; The method comprising the steps of: obtaining an authentication request for the user requesting login of a service operated by the service operation server from a service operation server; and transmitting user information and human information included in the authentication request, Based on whether the user is authorized to log in to the group service account based on the information obtained from the personal information server providing information on the members belonging to the group, And a controller for transmitting the authentication result to the login authentication server.
- a login authentication server for determining the validity of a user who logs in to a group authentication account of a group based on personal information about members belonging to the group, A communication unit for connecting and receiving data; Obtaining an authentication request for the group authentication account of the log-in authentication server from the terminal, user information and personal information included in the authentication request, wherein the personal information includes at least one member
- a control unit for determining whether the user is authorized to log in to the group authentication account based on the information obtained from the personal information server providing information, generating an authentication result, and transmitting the authentication result to the terminal;
- a login authentication server may be provided.
- the login authentication server and its operation method in association with a server that holds personal information of a group including a plurality of members, by managing log-in to an account assigned to members of the group, The change of the member can be reflected immediately, and the login authentication server and its operation method can be provided which are convenient and have enhanced security.
- FIG. 1 is a schematic block diagram of a login authentication system for performing a method of operation of a login authentication server in connection with some embodiments disclosed by the present application.
- FIG. 2 is a block diagram illustrating a configuration for a login authentication server associated with some embodiments disclosed by the present application.
- FIG. 3 is a block diagram illustrating a login authentication method of a login authentication server in connection with some embodiments disclosed by the present application.
- FIG. 4 is a diagram illustrating a method for creating an authentication account of a login authentication server in connection with some embodiments disclosed by the present application.
- FIG. 5 is a diagram illustrating a login authentication method of a login authentication server associated with some embodiments disclosed by the present application.
- FIG. 6 is a diagram illustrating a login authentication method of a login authentication server in connection with some embodiments disclosed by the present application.
- Figure 7 is a diagram illustrating a method by which a login authentication server associated with some embodiments disclosed by the present application establishes access rights to a service administration server for a group member.
- FIG. 8 is a diagram for explaining how a login authentication server associated with some embodiments disclosed by the present application sets access authority to a service operation server for a group member.
- FIG. 9 is a diagram illustrating a login authentication method of a login authentication server in connection with some embodiments disclosed by the present application.
- a login authentication server for determining the validity of a user requesting a login with a group service account of the group based on personal information about a member belonging to the group includes a service operation server and a personal information server A communication unit communicatively connected to transmit and receive data; Acquiring an authentication request for the user requesting login from the service operation server for a service operated by the service operation server,
- the user information and the human information included in the authentication request wherein the human information is information obtained from a human information server that provides information on at least one member belonging to the organization, And a control unit for determining whether or not the user has the right to log in using the group service account, generating an authentication result, and transmitting the authentication result to the service operation server.
- the personal information is information for identifying a member belonging to the group, and when the control unit judges based on the personal information and the user information, if the user is a member belonging to the group, You can accept.
- the personal information is information for identifying a member belonging to the group, and when the control unit judges based on the personal information and the user information, if the user is not a member belonging to the group, Can be rejected.
- the personal information may include at least one of a name, a resident registration number, an address, a contact, a position in the group, and the like.
- the authentication request includes group information for identifying the group, and the control unit can generate an authentication result based on the human information about the group identified according to the group information.
- the authentication request may include group information about an entity requesting a login, and the controller may notify the service operation server that the entity corresponding to the group information can not log in if the entity corresponding to the group information is not in the personal information.
- the control unit may receive the personal information about the group at predetermined time intervals.
- the control unit may receive the personal information about the group through the communication unit when the personal information of the group of the personal information server changes.
- the human information for the group may be information provided to the human information server from a group server associated with the group.
- control unit includes reference authentication information capable of identifying the group or the member associated with the login request, and a control unit configured to determine, based on the user authentication information acquired from the user corresponding to the reference authentication information, You can further determine whether you are authorized to log in to the group service account.
- the reference authentication information may be at least one of OTP (One Time Password) and biometric information of a member belonging to the organization.
- the control unit may transmit a message for acquiring authentication comparison information to a terminal identified according to the terminal information included in the authentication request.
- the service operation server includes a first service operation server
- the member belonging to the group includes a first member
- the control unit identifies the first member received from the first service operation server as a first member It is possible to restrict the login and to reject the authentication request.
- the service operation server includes a second service operation server
- the user information received from the second service operating server is information for identifying the first member, and if the personal information includes information on the first member, the first member can accept the authentication.
- the access right may be granted for each period, and the control unit may reject the authentication request for the first service operating server for the first period according to the access right granted to the first member.
- a log-in authentication server for determining the validity of a user who logs in to a group authentication account of the group based on personal information about members belonging to the group,
- a communication unit communicatively connected to transmit and receive data; Obtaining an authentication request for the group authentication account of the log-in authentication server from the terminal, user information and personal information included in the authentication request, wherein the personal information includes at least one member
- a control unit for determining whether the user is authorized to log in to the group authentication account based on the information obtained from the personal information server providing information, generating an authentication result, and transmitting the authentication result to the terminal; . ≪ / RTI >
- the login authentication server is communicatively coupled to a service administration server, and when the user is logged in with the group account, the login authentication server is connected to the service administration server associated with the group account, Lt; / RTI >
- an operation method of a login authentication server for determining the validity of a user requesting a login to a group service account of the group based on personal information about members belonging to the group, Obtaining an authentication request for the user who has requested a login from a server for a service operated by the service operation server; Determining whether the user is authorized to log in to the group service account based on the user information and the personal information included in the authentication request, and generating an authentication result, wherein the personal information includes at least one group - information obtained from a personal information server providing information on the members belonging to the user; And transmitting the authentication result to the service operation server.
- FIG. 1 is a schematic block diagram of a login authentication system for performing a method of operation of a login authentication server 100 in connection with some embodiments disclosed by the present application.
- the login authentication system may include a service operation server 300, a login authentication server 100, a personal information server 200, and a terminal 400.
- the service operation server 300, the login authentication server 100, the personal information server 200, and the terminal 400 can be communicatively connected on the network and can exchange necessary data with each other.
- the service operation server 300 may be a server for providing online services to a plurality of users through a communication network.
- the service operation server 300 may be a server used for operating a web site, an online game, an e-mail, an online application, or the like.
- the service operation server 300 stores information related to a user and can assign a service account to each of the users in order to provide the service to the user.
- the service account may include a personal service account assigned to each individual user or a group service account corresponding to a single entity composed of a plurality of users.
- the service operation server 300 can request the login authentication server 100 to verify the user's individuality for the identification and security of the user at the time of the login request of the user with each service account.
- the service operation server 300 provides the service by accepting the login of the received service account, and if the validity is not verified, the service operation server 300 may deny the login of the service account.
- the login authentication server 100 may be a server that performs validation of the user of the service operation server 300. In other words, it is possible to authenticate the service account and the user through the service operation server 300 to determine whether the user requesting the login is a legitimate user.
- the login authentication server 100 can manage the authentication account in correspondence with each service account.
- the authentication account can store authentication information that can identify and authenticate the user of the service account.
- the login authentication server 100 may perform authentication for one user through each authentication account, or may perform authentication for a group composed of a plurality of users through each authentication account.
- the authentication account is a group authentication account used for authentication with the group
- the login authentication server 100 can perform identification for the group and identification for members in the group.
- the method by which the login authentication server 100 authenticates the user may vary.
- the login authentication server 100 may perform, for example, proprietary based authentication, knowledge based authentication, or feature based authentication.
- Ownership-based authentication may be an authentication scheme that uses unique information entered into a separate medium that the user occupies or owns.
- Knowledge-based authentication can be an authentication method that uses knowledge of the user.
- the feature based authentication may be an authentication method using the physical characteristics of the user.
- the manner in which the login authentication server 100 obtains authentication information that can identify and authenticate a user may vary.
- the login authentication server 100 can obtain authentication information from the personal information server 200. [ Or the login authentication server 100 can obtain the authentication information through the service operation server 300. [ Or the login authentication server 100 can obtain authentication information directly from the user through the terminal 400. [
- the authentication account and the service account are described as separate accounts. However, this is merely for the sake of explanation of the operations of the login authentication server 100 and the service operation server 300, It does not have to be separate and separate. Therefore, the authentication account and the service account are the IDs of the same organization. In some embodiments, the authentication account and service account may be the same. This relationship can be applied throughout the specification.
- the personal information server 200 may be a server that holds personal information about a user.
- the personal information server 200 may hold information about an individual user.
- the human information server 200 can hold information about a group composed of a plurality of members.
- the personal information held by the personal information server 200 may vary.
- the personal information may be information identifying an individual, such as a name, a resident registration number, an address, a contact, and / or a telephone number.
- human information may be information that identifies a group such as the name of the group, the address of the group, the names of the members in the group, the membership and / or the rank of the members in the group, and identifies members in the group.
- the personal information server 200 may provide the personal information to the login authentication server 100.
- the personal information server 200 can provide the personal information to the requested user or the requested group under the request of the login authentication server 100.
- the personal information server 200 can provide the personal authentication information to the login authentication server 100 according to a predetermined time or according to predetermined conditions.
- the personal information server 200 may, in some cases, perform the steps of obtaining the consent of the individual or organization associated with the personal information before providing the personal information.
- the personal information server 200 can acquire the personal information by various methods. For example, the personal information server 200 can receive information on members in the organization and organization chart from an organization such as a corporation. Also, the personal information server 200 can update the information about the members in the group according to a request such as addition of a new member, exclusion of an existing member, etc. from an organization such as a corporation.
- the personal information server 200 may be, for example, a server that manages information on a corporation of the health insurance management corporation.
- the terminal 400 may be an electronic device operated by a user who requests login to a service account to use a server provided by the service operation server 300.
- the terminal 400 may be an electronic device such as a PC (Personal Computer), a tablet, a cellular phone, a PDA, or a PMP.
- the terminal 400 may receive information identifying the user from the user. For example, the terminal 400 may receive from the user information on the user's personal information such as the user's name, resident registration number, address and / or contact information, or the user's group, or biometric information , Knowledge information, proprietary information, and the like. If desired, the terminal 400 may have a special input for collecting information.
- the terminal 400 receives a service account requested by the user to log in and transmits the service account to the service operation server 300 to request a login for the service provided by the service operation server 300.
- FIG. 2 is a block diagram illustrating a configuration for a login authentication server 100 in connection with some embodiments disclosed by the present application.
- the login authentication server 100 may include a communication unit 110, a storage unit 120, and a control unit 130.
- the components shown in FIG. 2 are the components that are typically included in the login authentication server 100. Accordingly, it is needless to say that the login authentication server 100 including more or fewer components than those shown in the figures can be implemented.
- the communication unit 110 is communicatively connected to the outside such as the human information server 200, the service operation server 300, and the terminal 400 to enable information exchange.
- the communication unit 110 may be wired or wirelessly connected to the external server and the terminal 400, but may be implemented by wireless communication.
- the information exchanged may be in various formats.
- the information may be in the form of digital data encoded by a protocol. Or in the form of a broadcast signal, a voice signal, and a frequency or infrared signal for communication.
- the storage unit 120 may store various kinds of information.
- the storage unit 120 may store data temporarily or semi-permanently. Examples of the storage unit 120 include a hard disk drive (HDD), a solid state drive (SSD), a flash memory, a ROM (Read-Only Memory), a RAM (Random Access Memory) And so on.
- HDD hard disk drive
- SSD solid state drive
- flash memory a ROM (Read-Only Memory)
- RAM Random Access Memory
- the storage unit 120 may store an operation program for driving the login authentication server 100.
- the storage unit 120 may store the personal information, the authentication information, and the user information used in the operation of the login authentication server 100.
- the storage unit 120 may store information related to the authentication account, such as the personal information of the user matched to the authentication account, the information of the organization matched to the authentication account, and the like.
- the storage unit 120 may store information on the access right granted to the members in the authentication account.
- the control unit 130 may be implemented by a computer or the like in accordance with hardware, software, or a combination thereof so as to perform calculation and processing of various information. It may be a processor that stores and processes data in terms of hardware, and may be provided in a form of a program or a code that drives a circuit in software.
- the control unit 130 processes the information received from the communication unit 110 and the information stored in the storage unit 120 to perform an authentication procedure for the authentication account in which the authentication request is received.
- FIG. 3 is a block diagram that schematically illustrates a login authentication method of the login authentication server 100 in connection with some embodiments disclosed by the present application.
- the login authentication server 100 may be communicatively coupled to the personal information server 200 and a plurality of service operation servers 300.
- the login authentication method is briefly described.
- the following description does not limit the authentication method of the login authentication server 100, and the order and whether or not the respective steps are performed can be variously It is possible to change beforehand.
- the login authentication server 100 may request the personal information server 200 to provide personal information on the authentication account.
- the login authentication server 100 may receive personal information on the authentication account from the personal information server 200. [
- the step of requesting the personal information server 200 for the login authentication server 100 to receive the personal information is not necessarily preceded. For example, if the log-in authentication server 100 performs the first request for the personal information to the personal information server 200, then the personal information may be periodically provided.
- the login authentication server 100 can receive an authentication request for the service account requested to be logged in through the terminal 400 from the first service operating server 300-1.
- the authentication request may include user information about the user.
- the login authentication server 100 may refer to the information about the authentication account corresponding to the service account in which the authentication request is received.
- the login authentication server 100 can determine whether or not to authenticate based on the personal information about the organization and the user related to the authentication account and the user information received through the service operation server 300. [ Details will be described later.
- the login authentication server 100 may transmit the authentication result to the service operation server 300 and the service operation server 300 may determine whether the terminal 400 is allowed to log in based on the authentication result.
- FIG. 4 is a diagram illustrating a method for creating an authentication account of the login authentication server 100 in connection with some embodiments disclosed by the present application.
- the login authentication server 100 is requested to create a group authentication account from the service operation server 300 or the terminal 400, and receives information on a group to use the group authentication account (S1100).
- the authentication and management target of the group authentication account may be a member belonging to a group or organization.
- An organization can be, for example, a corporation, and members can be office workers belonging to a corporation.
- the information on the group is information for identifying the group.
- the group when the group is a corporation, it may be a company name, a code assigned to the corporation, a business registration number of the corporation, and /
- the login authentication server 100 may generate a group authentication account related to the organization (S1200).
- the login authentication server 100 can match and store the group information with respect to the group authentication account.
- the login authentication server 100 may request the personal information server 200 to provide personal information on members in the group (S1300).
- the personal information about the members in the group is information for identifying the members constituting the group, and may be information about the organizational structure of the group members, personal information about the members, and the like.
- the login authentication server 100 can receive personal information about the organization from the human information server 200 (S1400).
- the human information server 200 can provide the login authentication server 100 with reference to information about the requested organization. A procedure may be performed in which the human information server 200 asks for an agreement with the group or determines the validity of the login authentication server 100, if necessary.
- the personal information server 200 may periodically or periodically transmit the personal information to the personal information server 200, even if there is no information provision request from the login authentication server 100 Provide visual information.
- the login authentication server 100 may match and store the personal information in the group authentication account associated with the organization (S1500).
- the login authentication server 100 may store the personal information related to the group received from the personal information server 200 in a manner matching the group authentication account related to the group. In this way, information for identifying the group and information for identifying the members in the group can be managed together with the group authentication account.
- the login authentication server 100 may update the previously stored personal information matching the group authentication account with the newly received personal information.
- the personal information server 200 can transmit all the personal information about the group to the login authentication server 100 at one time.
- the personal information server 200 may notify the login authentication server 100 of only the personal information having the change among the personal information related to the group. For example, when a part of members of a group leaves the group, the personal information server 200 can notify the login authentication server 100 of only the personal information about the members who have left the group, Can delete only the personal information about the member who has left the previously stored personal information.
- the login authentication server 100 receives only the personal information about the added member from the personal information server 200, adds the personal information about the added member to the stored personal information can do.
- the personal information matched to the group authentication account is constantly updated to quickly reflect changes in the members in the group.
- the information provided by the personal information server 200 is the personal information about the members in the group
- the information provided by the personal information server 200 is not limited to the personal information about the members.
- the personal information server 200 may transmit information such as a group address, a group name, and the like to the login authentication server 100 as general information about the group.
- the login authentication server 100 may store information related to a group such as an address of a group in addition to the personal information of the group in the group authentication account.
- the login authentication server 100 transmits the group related information such as the address of the newly received group, Group authentication account.
- the login authentication server 100 can provide the service operation server 300 with group related information such as the changed group address, group name, and the like. For example, when changing the address of a group, the login authentication server 100 may provide a push message informing the service operation server 300 having the group service account of the group that the group address is changed. As a result, the service operation servers 300, in which the group service account is registered, can obtain updated information about the group and utilize the information for service provision.
- the members that match the group's group authentication account may be granted different privileges to reflect the personnel system such as organizational chart included in the personal information.
- members within an organization may include general members and managers who manage general members.
- the administrator can manage the access rights and the usage status of the members matched with the group authentication account to the service operation server 300, and can perform a higher level function than the general members. More details will be given later.
- FIG. 5 is a diagram illustrating a login authentication method of the login authentication server 100 related to some embodiments disclosed by the present application.
- the login authentication server 100 acquires the personal information about the members in the group from the personal information server 200 (S1400), and after matching the personal information with the group authentication account related to the group (S1500) .
- the above-described two processes are not limited to one-time but may be performed periodically or under conditions such as when variation occurs in human information, and may be performed by changing the steps have.
- the terminal 400 can request the service operating server 300 to log in the group service account from the user and provide the user information (S2100).
- the user information may be information about a user who is a terminal 400 user and who wants to log into the service operation server 300.
- the user information may include information about the user, such as the user's name, phone number and / or resident registration number, and information related to the user's organization, such as the organization's information and / .
- the terminal 400 may receive user information from a user.
- the terminal 400 may request the login of the group service account for the first group, and may provide the first user's name to the service operating server 300.
- the service operation server 300 may request the login authentication server 100 to authenticate the user (S2200).
- the service operation server 300 specifies the group service account requested to be logged in from the terminal 400 and can request the login authentication server 100 to authenticate the group service account and the user.
- the service operation server 300 may provide the login authentication server 100 with information on the user information and the group received from the terminal 400.
- the service operation server 300 receives a login request of the first user for the service account related to the first group from the terminal 400, and determines whether the first user is a valid user for the first group service account And may request authentication of the login authentication server 100. Also, the service operation server 300 may provide the first user name received from the terminal 400 to the login authentication server 100.
- the login authentication server 100 can authenticate the user based on the personal information matched to the group authentication account and the user information (S2300).
- the login authentication server 100 can refer to the group authentication account managed by the login authentication server 100 in correspondence with the group service account from which the authentication request is received from the service operation server 300. [ The login authentication server 100 can confirm the information about the group that the user wants to log in through the terminal 400 and the service operation server 300 and can find the group authentication account assigned to the group.
- the login authentication server 100 can determine whether the user is actually a member of a group based on the personal information and the user information.
- the personal information includes information about the members belonging to the requested organization. Accordingly, when the personal information is compared with the user information, it can be determined whether or not the user belongs to the group requested to be logged in.
- the login authentication server 100 when the authentication server 100 receives the authentication request, the login authentication server 100 refers to the first group authentication account corresponding to the first group service account, and acquires personal information about the members of the organization matched with the first group authentication account .
- the login authentication server 100 can authenticate that the first user belongs to the first group when the personal information includes the name of the first user. On the contrary, if the personal information does not include the name of the first user, the login authentication server 100 may determine that the first user is not in the first group.
- the login authentication server 100 may additionally perform the step of determining whether the mobile user is the same person as the legitimate user of the service account and the authentication account.
- the login authentication server 100 may store the authentication information capable of specifying the identity of the group member, which is a legitimate user of the group service account and the group authentication account, in association with the personal information about the members of the group authentication account.
- the group authentication account can be matched with personal information about the member and authentication information about the member.
- the authentication information stored in advance to specify a legitimate user is hereinafter referred to as reference authentication information.
- the reference authentication information may be, for example, feature-based information such as biometric information of a member, knowledge base information such as a password, and proprietary information such as a certificate.
- the login authentication server 100 can request and obtain the user authentication information that can be matched with the reference authentication information from the user of the terminal 400 through the terminal 400 and the service operation server 300 to the user of the terminal 400 . Or the user authentication information may be obtained through the terminal 400 together with the user information. Then, the login authentication server 100 compares the reference authentication information of the stored member with the user authentication information received from the terminal 400 and the service operation server 300 through the operator of the terminal 400, ) Can authenticate that the operator is a user of the legitimate terminal 400 and a member of the organization.
- This step may be performed in the case where a person who operates the terminal 400 to input user information inputs the user information by stealing a user specified by the user information.
- the comparison of the personal information and the user information is to certify whether or not the user belongs to the organization in an organizational aspect, and the authentication using the authentication information is performed when the user of the terminal 400 is a legitimate user And certify that they are the same person in terms of identity and identity with group members.
- the authentication information is described as information for authenticating individual members.
- the authentication information may be information corresponding to a group as information for authenticating a group to which the member belongs.
- the same password may be set for a group.
- the login authentication server 100 can provide the authentication result to the service operation server 300 (S2400), and the service operation server 300 logs in with the group service account of the terminal 400 based on the authentication result (S2500).
- the service administration server 300 permits the first user's terminal 400 to log in with the group service account of the first group . Conversely, the service administration server 300 may reject the login of the first user's terminal 400 for the first group of group service accounts if login authentication fails.
- FIG. 6 is a diagram illustrating a login authentication method of the login authentication server 100 related to some embodiments disclosed by the present application.
- the login authentication method described below with reference to FIG. 6 is a login authentication method for requesting login using a service account through the login terminal 420 and acquiring authentication information through the mobile terminal 410.
- the login authentication server 100 may acquire the personal information about the members in the group from the personal information server 200 (S1400) and match the group information with the group information related to the group (S1500).
- the above-described two processes are not limited to one-time but may be performed periodically or under conditions such as when variation occurs in human information, and may be performed by changing the steps have.
- FIG. 4 the technical matters other than those described in the operation method of the login authentication server 100 may be the same as those described in FIGS. 4 and 5.
- FIG. 4 the technical matters other than those described in the operation method of the login authentication server 100 may be the same as those described in FIGS. 4 and 5.
- the service operation server 300 may receive the login request and the mobile identification information from the login terminal 420 into the group service account (S3100).
- the login terminal 420 is a terminal requesting login using a service account, and can receive information on a group service account from a user.
- the login terminal 420 may receive the mobile identification information from the user.
- the mobile identification information is information that identifies the mobile terminal 410.
- the mobile identification information may be a phone number that connects to the mobile terminal 410.
- Mobile identification information may then be used to identify the user on behalf of the user information at login authentication server 100.
- the service operation server 300 does not have to receive the user information.
- the service operation server 300 may receive user information from the mobile terminal 410 as needed.
- the service operation server 300 informs the login authentication server 100 of the login request of the user for the group service account, and may request the user for authentication (S3200).
- the login authentication server 100 can acquire user authentication information from the mobile terminal 410 (S3400).
- the user authentication information can be obtained by the message.
- user authentication information can be entered through an application triggered by an input window or message in a messenger application triggered by the message.
- the login authentication method By receiving the authentication information via the mobile terminal 410, which is generally occupied and used by the user, the login authentication method has the advantage that the user can receive authentication information from the user anywhere.
- the login authentication server 100 may perform the first authentication based on the authentication information (S3400).
- the login authentication server 100 can store the reference authentication information necessary for authenticating a legitimate user in association with the group authentication account.
- the reference authentication information can be stored for the group or for the individual of the group member.
- the login authentication server 100 receives the reference authentication information stored for the group or the member in the group authentication account in which the authentication request is received and the user authentication information received through the mobile terminal 410 and the service operation server 300 It is possible to determine whether the group member is the same person as the user of the mobile terminal 410.
- the login authentication server 100 may transmit a message to the mobile terminal 410 specified according to the identification information of the mobile terminal 410. Thereafter, the message at mobile terminal 410 may be driven by a messenger application. At the mobile terminal 410, the message may trigger an application that receives biometric information.
- the mobile terminal 410 can receive biometric information from a user and transmit it to the login authentication server 100. Then, the login authentication server compares the biometric information of the legitimate user, that is, the group member, stored in advance, with the biometric information acquired from the mobile terminal 410, and if the user matches the biometric information acquired from the mobile terminal 410, . When the mismatch occurs, the login authentication server 100 may determine that the user of the mobile terminal 410 is different from the group member.
- the login authentication server 100 can perform the secondary authentication based on the personal information and the user information (S3600).
- the login authentication server 100 can know the information on the organization and its members corresponding to the group authentication account requested for authentication based on the human information received through the human information server 200.
- the login authentication server 100 can acquire user information through the mobile terminal 410. [ The user information may be received together upon login request.
- the login authentication server 100 may query the communication company server to acquire personal information about the user of the mobile identification information.
- the user information may be mobile identification information itself.
- the login authentication server 100 can perform the secondary authentication based on the personal information and the user information.
- the login authentication server 100 can determine that the user belongs to the group in which the login is requested when the personal information matches the user information. On the other hand, when there is a discrepancy between the personal information and the user information, it can be determined that the user does not belong to the group requested to be logged in.
- the login authentication server 100 determines that the user is belonging to the organization can do.
- the login authentication server 100 can notify the service operation server 300 of the authentication result for the first authentication and the second authentication (S3700).
- the login authentication server 100 can notify the service operation server 300 of the authentication success if the user is authenticated as a member of the organization requested to be authenticated as a result of the first authentication and the second authentication.
- the service administration server 300 may accept or reject the login to the group service account of the login terminal 420 according to the authentication result. If the authentication has been accepted, the service administration server 300 may then accept the login to the service account via the login terminal 420. Thereafter, the service of the service operation server may be provided through the login terminal 420.
- both the first authentication and the second authentication may not necessarily be performed in order to notify the authentication result.
- the login authentication server 100 notifies the service operation server 300 of the authentication failure before performing the second authentication It is possible.
- the login authentication server 100 transmits the authentication failure to the service operation server 300 without having to proceed with the first authentication .
- FIG. 7 is a diagram illustrating a method by which the login authentication server 100 related to some embodiments disclosed by the present application sets access authority to the service operation server 300 for a group member.
- FIG. 8 is a diagram for explaining how the login authentication server 100 related to some embodiments disclosed by the present application sets access authority to the service operation server 300 for a group member.
- FIG. 4 the technical matters other than those described in the operation method of the login authentication server 100 may be the same as those described in FIGS. 4 and 5.
- FIG. 4 the technical matters other than those described in the operation method of the login authentication server 100 may be the same as those described in FIGS. 4 and 5.
- the login authentication server 100 acquires the personal information about the members in the group from the personal information server 200 (S1400), and after the matching of the personal information to the group authentication accounts related to the group (S1500) . (S1500) after matching the personal information with the group authentication account related to the group.
- the above-described two processes are not limited to one-time but may be performed periodically or under conditions such as when variation occurs in human information, and may be performed by changing the steps have.
- the login authentication server 100 may set different rights for each of the members to access the service operation server 300 for each service operation server 300 based on the personal information of the group matched to the group authentication account ).
- the login authentication server 100 may set different access rights to the service operation server 300 for each of the members matched to the group authentication account.
- information matched to one group authentication account can be viewed.
- one group authentication account there is information on members A, B and C as personal information, and authentication information A, B and C can be matched as reference authentication information for authenticating the identity of each member.
- Each of the members A, B, and C may be set to have different access rights to the first service operating server 300 and the second service operating server 300.
- the access right to the first service operating server 300 can be set for the member B while the second user can access the second service operating server 300.
- the access right may be a step-by-step restriction on the service provided by the service operation server 300.
- the login authentication server 100 may set different access rights for each member according to the security level of various services provided by the service operation server 300.
- the login authentication server 100 may set different access grant periods for each member.
- the login authentication server 100 may set access rights differently according to various conditions such as a member's job title, vacation status, sick leave, and the like.
- the access authority can be set by the user corresponding to the administrator.
- the administrator of the group authentication account can assign the access right of the members differently according to various conditions such as position, vacation status, sick leave, and the like depending on the period.
- the login authentication server 100 may notify the service operation server 300 of an authentication failure of the service operation server 300 having a limited access right.
- the login authentication server 100 sets the access right to the new member You can ask the manager for something. For example, when a user corresponding to the administrator then logs in with the group authentication account, the login authentication server 100 can transmit a message requesting access permission setting to the logged-in terminal 400.
- the login authentication server 100 may set the access right of the new member according to the setting given by the administrator, and the access right may be set for each period.
- This type of access rights setting can be applied to the case where a part of members is withdrawn according to human information. That is, the administrator of the group authentication account can be set so that the access authority of a part of the member who has left is retained only for a specific service for a certain period of time.
- the terminal 400 may provide a login request and user information for the group service account to the service operation server 300 in operation S4200.
- the service operation server 300 transmits an authentication request to the login authentication server 100 (S4300).
- step S4200 may be substantially the same as the step S2100, and the step S4300 may be substantially the same as the step S2200.
- the login authentication server 100 can authenticate the user based on the personal information and the user information in the group authentication account (S4400).
- the login authentication server 100 can notify the service operating server 300 of the result of authentication failure (S4410).
- the login authentication server 100 can inquire the access right of the requested member to the service operation server 300 (S4500).
- the login authentication server 100 can notify the service operation server 300 of the determination result based on the authentication result and the access right (S4600).
- the service operation server 300 when requesting the group service account login to the first service operation server 300 with the same user information as the member B, the service operation server 300 is notified that the first service operation server 300 can not be accessed .
- the login authentication server 100 can notify the service operation server 300 of the notification due to the authentication failure and the notification due to the limitation of the access right.
- the login authentication server 100 notifies the second service operation server 300 that the second service operation server 300 can access the second service operation server 300 with the same user information as the member B, ).
- the service administration server 300 may then refuse or accept the login of the user to the service administration server 300 through the group service account based on the authentication result and the access result.
- FIG. 9 is a diagram illustrating a login authentication method of the login authentication server 100 related to some embodiments disclosed by the present application.
- the operation of the login authentication server 100 described with reference to FIG. 9 relates to a user logging into the group authentication account of the login authentication server 100 directly via the terminal 400.
- the login authentication server 100 can receive a login request and user information for the group authentication account through the terminal 400 (S5100).
- the login authentication information may further receive information on the group for identifying the group authentication account to log in.
- the login authentication server 100 can acquire the personal information on the members in the group from the personal information server 200 (S5200). The login authentication server 100 may then match the personal information to the group authentication account associated with the organization.
- the above-described two processes are not limited to one-time but may be performed periodically or under conditions such as when variation occurs in human information, and may be performed by changing the steps have.
- FIG. 4 the technical matters other than those described in the operation method of the login authentication server 100 may be the same as those described in FIGS. 4 and 5.
- FIG. 4 the technical matters other than those described in the operation method of the login authentication server 100 may be the same as those described in FIGS. 4 and 5.
- the login authentication server 100 can determine whether the login authentication is performed based on the personal information and the user information (S5300). This step may be substantially the same as the step for S2300. The login authentication server 100 can determine whether the user is actually a member of a group based on the personal information and the user information.
- the login authentication server 100 can notify the service operation server 300 of login authentication to the user's group authentication account (S5400).
- the login authentication server 100 may notify a plurality of service operation servers 300 of the login of the user with the group authentication account in association with one group authentication account.
- the service operation server 300 having received the login authentication can also leave the user in the login state for the group service account.
- the login authentication server 100 may notify login authentication only to a part of a plurality of service operation servers 300 associated with the group authentication account.
- the selection of the service operation server 300 to be logged in among the plurality of service operation servers 300 may be received by the login authentication server 100 through the terminal 400. [ This selection can be received before or after login to the group authentication account.
- the login authentication server 100 may newly create a group service account in the service operation server 300 with the logged-in group authentication account You can also request it. At this time, information on all the members corresponding to the personal information in the group authentication account can be associated with the group service account. Thus, by joining the service operation server 300 with one group authentication account, all members in the group authentication account can be joined to the service operation server 300 together.
- the personal information of the member transmitting from the group authentication account to the group service account may be optional by the user.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Hardware Design (AREA)
- Computer Security & Cryptography (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Power Engineering (AREA)
- Information Transfer Between Computers (AREA)
Abstract
Description
Claims (18)
- 단체에 소속된 구성원에 대한 인적 정보에 기초하여 상기 단체의 그룹 서비스 계정으로 로그인을 요청하는 사용자의 유효성을 판단하는 로그인 인증 서버로서,서비스 운영 서버 및 인적 정보 서버와 통신 상 연결되어 데이터를 송수신하는 통신부;서비스 운영 서버로부터 상기 서비스 운영 서버가 운영하는 서비스에 대한 로그인을 요청한 상기 사용자에 대한 인증 요청을 획득하고, 상기 인증 요청에 포함된 사용자 정보 및 인적 정보 -이때, 상기 인적 정보는, 적어도 하나의 상기 단체에 소속된 구성원에 대한 정보를 제공하는 인적 정보 서버로부터 획득한 정보임- 에 기초하여 상기 사용자가 상기 그룹 서비스 계정으로 로그인할 권한이 있는지 여부를 판단하여 인증 결과를 생성하고, 상기 서비스 운영 서버로 상기 인증 결과를 전송하는 제어부;를 포함하는,로그인 인증 서버.
- 제1 항에 있어서,상기 인적 정보는, 상기 단체에 소속된 구성원을 식별하는 정보로서,상기 제어부는 상기 인적 정보와 상기 사용자 정보를 기초로 판단할 때, 상기 사용자가 상기 단체에 소속된 구성원인 경우, 상기 인증 요청을 수락하는로그인 인증 서버.
- 제1 항에 있어서,상기 인적 정보는, 상기 단체에 소속된 구성원을 식별하는 정보로서,상기 제어부는 상기 인적 정보와 상기 사용자 정보를 기초로 판단할 때, 상기 사용자가 상기 단체에 소속된 구성원이 아닌 경우, 상기 인증 요청을 거절하는로그인 인증 서버.
- 제1 항에 있어서,상기 인적 정보는성명, 주민등록번호, 주소, 연락처, 상기 단체 내 직책 등 중 적어도 어느 하나를 포함하는로그인 인증 서버.
- 제1 항에 있어서,상기 인증 요청은 상기 단체를 식별하는 그룹 정보를 포함하고,상기 제어부는 상기 그룹 정보에 따라 식별된 상기 단체에 관한 상기 인적 정보에 기초하여 인증 결과를 생성하는로그인 인증 서버.
- 제1 항에 있어서,상기 인증 요청은 로그인을 요청하는 단체에 관한 그룹 정보를 포함하고,상기 제어부는 상기 그룹 정보에 대응되는 단체가 인적 정보에 없는 경우, 로그인할 수 없음을 상기 서비스 운영 서버로 알리는로그인 인증 서버.
- 제1 항에 있어서,상기 제어부는 미리 정해진 시간 간격마다 상기 단체에 대한 상기 인적 정보를 수신하는로그인 인증 서버.
- 제1 항에 있어서,상기 제어부는 상기 인적 정보 서버의 상기 단체에 대한 상기 인적 정보가 변동되면 상기 통신부를 통해 상기 그룹에 대한 인적 정보를 수신하는로그인 인증 서버.
- 제1 항에 있어서,상기 그룹에 대한 상기 인적 정보는 상기 그룹과 관련된 그룹 서버로부터 상기 인적 정보 서버에게 제공된 정보인,로그인 인증 서버.
- 제1 항에 있어서,상기 제어부는 상기 로그인 요청과 관련된 상기 단체 또는 상기 구성원을 식별할 수 있는 기준 인증 정보와, 상기 기준 인증 정보에 대응하여 상기 사용자로부터 획득된 사용자 인증 정보에 기초하여 상기 그룹 서비스 계정으로 로그인할 권한이 있는지 여부를 더 판단하는로그인 인증 서버.
- 제10 항에 있어서,상기 기준 인증 정보는 OTP(One Time Password), 상기 단체에 소속된 구성원의 생체 정보 중 적어도 어느 하나일 수 있다.로그인 인증 서버.
- 제10 항에 있어서,상기 인증 요청은 로그인 단말기를 통해 수신되며,상기 제어부는 상기 인증 요청에 포함된 모바일 단말기 정보에 따라 식별되는 모바일 단말기에 사용자 인증 정보를 획득하기 위한 메시지를 전송하는로그인 인증 서버.
- 제1 항에 있어서,상기 서비스 운영 서버는 제1 서비스 운영 서버를 포함하고,상기 인적 정보에 따라 상기 단체에 소속된 상기 구성원은 제1 구성원을 포함하고,상기 제어부는상기 제1 구성원에 대해 부여된 접근 권한에 따라서 상기 제1 서비스 운영 서버로부터 수신되는 상기 사용자 정보가 제1 구성원을 식별하는 정보인 경우, 로그인을 제한하여 상기 인증 요청을 거절하는로그인 인증 서버.
- 제13 항에 있어서,상기 서비스 운영 서버는 제2 서비스 운영 서버를 포함하고,상기 제어부는상기 제1 구성원에 대해 부여되고, 상기 제2 서비스 운영 서버에 대응하여 설정된 접근 권한에 따라서 상기 제2 서비스 운영 서버로부터 수신되는 상기 사용자 정보가 제1 구성원을 식별하는 정보이고, 상기 인적 정보에 상기 제1 구성원에 대한 정보가 있는 경우, 상기 제1 구성원에 대하여 인증을 수락하는로그인 인증 서버.
- 제13 항에 있어서,상기 접근 권한은 기간 별로 부여될 수 있고,상기 제어부는,상기 제1 구성원에 부여된 접근 권한에 따라서 제1 기간에 대해서는 상기 제1 서비스 운영 서버에 대한 인증 요청을 거절하는로그인 인증 서버.
- 단체에 소속된 구성원에 대한 인적 정보에 기초하여 상기 단체의 그룹 인증계정으로 로그인하는 사용자의 유효성을 판단하는 로그인 인증 서버로서,인적 정보 서버 및 상기 사용자의 단말기와 통신 상 연결되어 데이터를 송수신하는 통신부;상기 단말기로부터 상기 로그인 인증 서버의 상기 그룹 인증 계정에 대한 인증 요청을 획득하고, 상기 인증 요청에 포함된 사용자 정보 및 인적 정보 -이때, 상기 인적 정보는, 적어도 하나의 상기 단체에 소속된 구성원에 대한 정보를 제공하는 인적 정보 서버로부터 획득한 정보인- 에 기초하여 상기 사용자가 상기 그룹 인증 계정으로 로그인할 권한이 있는지 여부를 판단하여 인증 결과를 생성하고, 상기 단말기로 상기 인증 결과를 전송하는 제어부;를 포함하는,로그인 인증 서버.
- 제16 항에 있어서,상기 로그인 인증 서버는 서비스 운영 서버와 통신상 연결되고,상기 제어부는 상기 사용자가 상기 그룹 계정으로 로그인 되면, 상기 사용자의 로그인 인증 결과를 상기 그룹 계정에 연계된 상기 서비스 운영 서버에 알리는로그인 인증 서버.
- 단체에 소속된 구성원에 대한 인적 정보에 기초하여 상기 단체의 그룹 서비스 계정으로 로그인을 요청하는 사용자의 유효성을 판단하는 로그인 인증 서버의 동작 방법으로,상기 서비스 운영 서버로부터 상기 서비스 운영 서버가 운영하는 서비스에 대한 로그인을 요청한 상기 사용자에 대한 인증 요청을 획득하는 단계;상기 인증 요청에 포함된 사용자 정보 및 인적 정보에 기초하여 상기 사용자가 상기 그룹 서비스 계정으로 로그인할 권한이 있는지 여부를 판단하여 인증 결과를 생성하는 단계 - 이때, 상기 인적 정보는, 적어도 하나의 상기 단체에 소속된 구성원에 대한 정보를 제공하는 인적 정보 서버로부터 획득한 정보인 -; 및상기 서비스 운영 서버로 상기 인증 결과를 전송하는 단계;를 포함하는로그인 인증 서버의 동작 방법.
Applications Claiming Priority (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
KR1020170173173A KR101865874B1 (ko) | 2017-12-15 | 2017-12-15 | 로그인 인증 서버 및 그 동작 방법 |
KR10-2017-0173173 | 2017-12-15 |
Publications (1)
Publication Number | Publication Date |
---|---|
WO2019117429A1 true WO2019117429A1 (ko) | 2019-06-20 |
Family
ID=63102765
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
PCT/KR2018/010311 WO2019117429A1 (ko) | 2017-12-15 | 2018-09-04 | 로그인 인증 서버 및 그 동작 방법 |
Country Status (2)
Country | Link |
---|---|
KR (1) | KR101865874B1 (ko) |
WO (1) | WO2019117429A1 (ko) |
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN113328862A (zh) * | 2021-06-15 | 2021-08-31 | 支付宝(杭州)信息技术有限公司 | 企业人员的认证方法、装置及系统 |
Citations (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
JP2004157645A (ja) * | 2002-11-05 | 2004-06-03 | Axa Life Insurance Co Ltd | 認証システム及びその方法、ならびに認証プログラム |
KR20070107395A (ko) * | 2006-05-03 | 2007-11-07 | 주식회사컬처앤파트너스 | 회원 인증을 통한 서비스 제공 시스템 및 서비스 제공 방법 |
KR20120033823A (ko) * | 2010-09-30 | 2012-04-09 | 삼성전자주식회사 | 서버 및 그 서비스 제공 방법 |
KR20130123339A (ko) * | 2012-05-02 | 2013-11-12 | 주식회사 시큐브 | 이중 인증 로그인 시스템 |
KR20140137084A (ko) * | 2013-05-22 | 2014-12-02 | 롯데정보통신 주식회사 | Cctv 영상 서비스 제공 시스템 및 방법 |
-
2017
- 2017-12-15 KR KR1020170173173A patent/KR101865874B1/ko active IP Right Grant
-
2018
- 2018-09-04 WO PCT/KR2018/010311 patent/WO2019117429A1/ko active Application Filing
Patent Citations (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
JP2004157645A (ja) * | 2002-11-05 | 2004-06-03 | Axa Life Insurance Co Ltd | 認証システム及びその方法、ならびに認証プログラム |
KR20070107395A (ko) * | 2006-05-03 | 2007-11-07 | 주식회사컬처앤파트너스 | 회원 인증을 통한 서비스 제공 시스템 및 서비스 제공 방법 |
KR20120033823A (ko) * | 2010-09-30 | 2012-04-09 | 삼성전자주식회사 | 서버 및 그 서비스 제공 방법 |
KR20130123339A (ko) * | 2012-05-02 | 2013-11-12 | 주식회사 시큐브 | 이중 인증 로그인 시스템 |
KR20140137084A (ko) * | 2013-05-22 | 2014-12-02 | 롯데정보통신 주식회사 | Cctv 영상 서비스 제공 시스템 및 방법 |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN113328862A (zh) * | 2021-06-15 | 2021-08-31 | 支付宝(杭州)信息技术有限公司 | 企业人员的认证方法、装置及系统 |
CN113328862B (zh) * | 2021-06-15 | 2022-07-22 | 支付宝(杭州)信息技术有限公司 | 企业人员的认证方法、装置及系统 |
Also Published As
Publication number | Publication date |
---|---|
KR101865874B1 (ko) | 2018-07-23 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
WO2020050424A1 (ko) | 블록체인 기반의 모바일 단말 및 IoT 기기 간의 다중 보안 인증 시스템 및 방법 | |
WO2014007516A1 (ko) | 단일 인증 서비스 시스템 및 이의 운용 방법 | |
WO2013025085A2 (en) | Apparatus and method for supporting family cloud in cloud computing system | |
WO2020189926A1 (ko) | 블록체인 네트워크를 이용하여 사용자의 아이덴티티를 관리하는 방법 및 서버, 그리고, 블록체인 네트워크 기반의 사용자 아이덴티티를 이용하여 사용자를 인증하는 방법 및 단말 | |
WO2016153303A1 (ko) | 무선 통신 시스템에서 단말의 프로파일 설치 방법 및 장치 | |
WO2020189927A1 (ko) | 블록체인 네트워크를 이용하여 사용자의 아이덴티티를 관리하는 방법 및 서버, 그리고, 블록체인 네트워크 기반의 사용자 아이덴티티를 이용하여 사용자를 인증하는 방법 및 단말 | |
WO2022050652A1 (en) | Method, apparatus, and computer readable storage medium for controlling account | |
WO2017119548A1 (ko) | 보안성이 강화된 사용자 인증방법 | |
WO2016080595A1 (ko) | 멀티 넘버 서비스 제공 방법 | |
WO2012108661A2 (ko) | 네트워크 통신망에서의 쌍방향 가입자 보안 인증 시스템과 방법 및 이 방법을 기록한 기록매체 | |
WO2015157942A1 (zh) | 接入无线网络的装置及方法 | |
WO2021071116A1 (ko) | 브라우저의 웹스토리지를 이용한 간편인증 방법 및 시스템 | |
WO2015126037A1 (ko) | 일회용 랜덤키를 이용한 본인 확인 및 도용 방지 시스템 및 방법 | |
WO2020022700A1 (ko) | 디지털 키를 처리 및 인증하는 보안 요소 및 그 동작 방법 | |
WO2021261728A1 (ko) | 다기능을 가지는 보안 연결을 제공하는 보안 통신 장치 및 그 동작 방법 | |
WO2019027139A1 (ko) | 시간 종속적인 블록체인 기반 자가검증 사용자인증 방법 | |
WO2020141782A1 (ko) | 블록체인 네트워크를 이용하여 사용자의 아이덴티티를 관리하는 방법 및 서버, 그리고, 블록체인 네트워크 기반의 사용자 아이덴티티를 이용하여 사용자를 인증하는 방법 및 단말 | |
WO2020141783A1 (ko) | 블록체인 네트워크를 이용하여 사용자의 아이덴티티를 관리하는 방법 및 서버, 그리고, 블록체인 네트워크 기반의 사용자 아이덴티티를 이용하여 사용자를 인증하는 방법 및 단말 | |
WO2020138686A1 (ko) | 가전기기, 단말 장치 및 이의 무선 연결 방법 | |
WO2019117429A1 (ko) | 로그인 인증 서버 및 그 동작 방법 | |
WO2012146072A1 (zh) | 一种移动设备通信方法及移动设备 | |
WO2020171466A1 (ko) | 전자 장치 및 전자 장치에서의 인증 방법 | |
WO2024043613A1 (ko) | 이력서 생성 및 관리 서비스를 제공하기 위한 서버 장치 및 그 동작 방법 | |
WO2015026083A1 (ko) | 휴대폰 본인인증 도용방지와 스미싱 방지를 위한 문자메시지 보안시스템 및 방법 | |
WO2019194412A1 (en) | Network apparatus and control method thereof |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 18887531 Country of ref document: EP Kind code of ref document: A1 |
|
NENP | Non-entry into the national phase |
Ref country code: DE |
|
122 | Ep: pct application non-entry in european phase |
Ref document number: 18887531 Country of ref document: EP Kind code of ref document: A1 |
|
32PN | Ep: public notification in the ep bulletin as address of the adressee cannot be established |
Free format text: NOTING OF LOSS OF RIGHTS PURSUANT TO RULE 112(1) EPC (EPO FORM 1205A DATED 20/01/2021) |
|
122 | Ep: pct application non-entry in european phase |
Ref document number: 18887531 Country of ref document: EP Kind code of ref document: A1 |