WO2019214030A1 - 多应用程序共享密码解锁方法、装置、设备及存储介质 - Google Patents
多应用程序共享密码解锁方法、装置、设备及存储介质 Download PDFInfo
- Publication number
- WO2019214030A1 WO2019214030A1 PCT/CN2018/094413 CN2018094413W WO2019214030A1 WO 2019214030 A1 WO2019214030 A1 WO 2019214030A1 CN 2018094413 W CN2018094413 W CN 2018094413W WO 2019214030 A1 WO2019214030 A1 WO 2019214030A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- password
- application
- login
- user
- name
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Images
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
- G06F21/41—User authentication where a single sign-on provides access to a plurality of computers
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/45—Structures or tools for the administration of authentication
- G06F21/46—Structures or tools for the administration of authentication by designing passwords or checking the strength of passwords
Definitions
- the present invention relates to the field of mobile terminals, and in particular, to a multi-application shared password unlocking method, apparatus, device, and storage medium.
- the existing application unlocking can only implement login of one application or platform.
- different password settings are required for different applications, which will result in too many passwords being set. The situation so that users cannot quickly log in to the corresponding application.
- the gesture password can be used to unlock the application.
- the gesture password is set relatively simple, the gesture password is leaked during the gesture password input process, so that the gesture password is safe. Sexuality is not high; if the gesture password setting is more complicated, it will inevitably increase the user operation complexity and cause inconvenience to the user.
- the embodiment of the present invention provides a method, a device, a device, and a storage medium for unlocking a multi-application shared password, so as to solve the problem that a login password is mixed when a user sets a different login password for multiple applications, and the login password is complicated.
- the embodiment of the present application provides a multi-application shared password unlocking method, including:
- the password and the terminal identifier and the first program identifier are stored in a program information record table;
- the second login request includes a second user login name, a second program identifier, and the terminal identifier;
- the second application is an associated application of the first application, and the first user login name and the second user login name are associated with the terminal device corresponding to the terminal identifier, The verification of the second login request is completed based on the associated password.
- the embodiment of the present application provides a multi-application shared password unlocking apparatus, including:
- a first login request obtaining module configured to acquire a first login request sent by the first application, where the first login request includes a first user login name, a first login password, a first program identifier, and a terminal identifier;
- an associated password obtaining module configured to perform identity verification based on the first user login name, the first login password, and the first program identifier, and acquire an association corresponding to the first user login name when the identity verification is passed a password, and storing the associated password and the terminal identifier and the first program identifier in a program information record table;
- a second login request obtaining module configured to acquire a second login request sent by the second application, where the second login request includes a second user login name, a second program identifier, and the terminal identifier;
- a second login request verification module configured to: on the terminal device corresponding to the terminal identifier, the second application is an associated application of the first application, and the first user login name and the first When the two user login names are associated, the verification of the second login request is completed based on the associated password.
- an embodiment of the present application provides a computer device, including a memory, a processor, and computer readable instructions stored in the memory and executable on the processor, where the processor executes the computer The following steps are implemented when reading the instruction:
- the password and the terminal identifier and the first program identifier are stored in a program information record table;
- the second login request includes a second user login name, a second program identifier, and the terminal identifier;
- the second application is an associated application of the first application, and the first user login name and the second user login name are associated with the terminal device corresponding to the terminal identifier, The verification of the second login request is completed based on the associated password.
- embodiments of the present application provide one or more non-volatile readable storage media storing computer readable instructions, wherein the computer readable instructions are executed by one or more processors such that The one or more processors implement the following steps:
- the password and the terminal identifier and the first program identifier are stored in a program information record table;
- the second login request includes a second user login name, a second program identifier, and the terminal identifier;
- the second application is an associated application of the first application, and the first user login name and the second user login name are associated with the terminal device corresponding to the terminal identifier, The verification of the second login request is completed based on the associated password.
- FIG. 1 is a flowchart of a multi-application shared password unlocking method in Embodiment 1 of the present application
- FIG. 2 is another flowchart of a method for unlocking a multi-application shared password in Embodiment 1 of the present application
- FIG. 3 is still another flowchart of a method for unlocking a multi-application shared password in Embodiment 1 of the present application;
- FIG. 4 is a specific flow chart of step S40 of Figure 1;
- FIG. 5 is a schematic block diagram of a multi-application shared password unlocking device in Embodiment 2 of the present application.
- FIG. 6 is a schematic diagram of a computer device in Embodiment 4 of the present application.
- FIG. 1 is a flow chart showing a method for unlocking a multi-application shared password in the embodiment.
- the multi-application shared password unlocking method is applied to log in multiple related applications on the same terminal device, multiple associated applications can use a login password to complete the login verification process, thereby implementing the associated application to complete login verification based on a login password.
- the multi-application shared password unlocking method can be applied to terminal devices such as computers, smart phones, and tablets, and is used to log in to multiple associated applications on the same terminal device through a shared password. As shown in FIG. 1, the multi-application shared password unlocking method includes the following steps:
- S10 Acquire a first login request sent by the first application, where the first login request includes a first user login name, a first login password, a first program identifier, and a terminal identifier.
- the first application is an application installed on the terminal device.
- the first login request refers to a request to log in to the first application.
- the login request further carries the first user login name, the first login password, the first program identifier, and the terminal identifier.
- the first server refers to a server corresponding to the first application.
- the first user login name refers to the user login name of the first application.
- the first login password refers to a login password corresponding to the first user login name that is logged into the first application.
- the first program identifier is used to identify an identifier corresponding to the first application, and the first program identifier can uniquely identify the first application.
- the terminal identifier is an identifier of a terminal device that logs in to the first application, and the terminal identifier includes, but is not limited to, an IMEI code (International Mobile Equipment Identity) and an SN (Serial Number) of the mobile terminal.
- IMEI code International Mobile Equipment Identity
- SN Serial Number
- the IMEI code is stored in a terminal device such as a smart phone and a tablet, and one mobile terminal device corresponds to an IMEI code, and the IMEI code can be used to uniquely identify the mobile terminal device.
- the SN code is the product serial number used to verify the legal identity of the product. A set of genuine products only corresponds to a set of product serial numbers.
- S20 Perform identity verification based on the first user login name, the first login password, and the first program identifier.
- the authentication is passed, obtain an associated password corresponding to the first user login name, and associate the password with the terminal identifier and the first A program identification is stored in the program information record table.
- the first server corresponding to the first application performs identity verification on the user based on the first user login name, the first login password, and the first program identifier, if the first user
- the identity verification of the user is passed.
- the first server may first determine, according to the first program identifier, the first application that sends the first login request, and then query whether all user information in the first application exists to be related to the first user login name and the first login password. The matching user information, if it exists, the authentication is passed.
- the first server corresponding to the first application acquires an associated password corresponding to the first user login name.
- the associated password refers to a password that the first application and other related applications can share the same password to log in.
- the associated application refers to an application stored in advance associated with the first application, which is defined by the developer and may be a different application developed under the same company. For example, the auto insurance APP, the life insurance APP, and the wealth management APP developed by the Ping An Group are interrelated applications. If the first application in this embodiment is a car insurance APP, the associated application is a life insurance APP, a wealth management APP or a Ping An Group. Other apps developed.
- the associated password specifically refers to a password that the associated application installed on the same terminal device can share after the first application authenticates.
- the associated password is a password randomly generated by the server. After the first server acquires the associated password, the first server stores the associated password and the terminal identifier and the first program identifier in the program information record table.
- the program information record table is a table for recording application information, including a record downloading application and an associated password. Recording the download of the application includes recording the first program ID of the application, the terminal ID, and the download time.
- S30 Acquire a second login request sent by the second application, where the second login request includes a second user login name, a second program identifier, and a terminal identifier.
- the second application refers to an application that is not logged in to the first application that is logged in on the terminal device corresponding to the same terminal identifier.
- the second login request refers to the login request of the second application.
- the second server associated with the second application acquires a second login request sent by the second application, where the login request carries a second user login name, a second program identifier, and a terminal identifier.
- the second server refers to a server corresponding to the second application.
- the second user login name refers to the user login name corresponding to the second application.
- the second program identifier refers to a program identifier corresponding to the second application for uniquely identifying the second application.
- the first application and the second application are related applications developed by the same group, enterprise, or developer at the time of development, and the first application and the second application share one server
- the first The server and the second server are the same server. If the first application and the second application are developed, although the same application, enterprise or developer-developed associated application, but the first application and the second application do not share a server, then an associated server needs to be set up. Implementing information interaction between the first server and the second server.
- the association server refers to a server for implementing information interaction between the first server and the second server, and the association server is connected to the first server and the second server.
- the second server When acquiring the second login request, the second server queries the pre-stored associated application information table based on the second program identifier in the second login request to ensure whether the second application is an associated application of the first application.
- the associated application information table refers to a table for recording whether there is an association relationship between the first application and the second application.
- each set of associated application information includes at least two program identifications in which an association relationship exists.
- the associated application information table is stored in the server; when the first server and the second server do not belong to the same server, the associated application table is Stored in the associated server.
- the associated application information table is stored in the associated server, so that the data in the associated application information table is conveniently managed, and an associated application information table is stored in the server corresponding to each application. According to the associated application information table, it may be determined whether the first application identifier and the second application corresponding to the second program identifier are the associated application.
- the associated user name information table is a table for recording whether a user login name has an association relationship. If any user logs in with the user login name and login password on the Auto Insurance APP, Life Insurance APP, and Financial App in advance, the user login name and login password corresponding to all associated applications need to be stored in the associated user name information table. After obtaining the second user login name of the second login request, the associated user name information table is queried according to the second user login name to determine whether the second user login name and the first user login name are associated.
- the associated user name information table is stored in the server; when the first server and the second server do not belong to the same server, the associated application table is Stored in the associated server.
- the multi-application shared password unlocking method further includes: setting an effective time of the associated password.
- the effective time is used to verify the validity of the associated password after the associated password is sent to the terminal device corresponding to the terminal identifier.
- the effective time of the associated password can further protect the information security of the user.
- the server corresponding to the second application obtains the associated password sent by the terminal device corresponding to the terminal identifier
- the server corresponding to the second application determines the verification of the second login request.
- the associated password is sent to the terminal device corresponding to the terminal identifier, so that the user can log in to the second application based on the obtained associated password, simplify the verification process, and ensure the security of the user logging in to the second application.
- the second server After the second server obtains the second login request of the second application, the second server needs to compare the terminal identifier carried in the second login request with the program information record table stored in the first server, and determine the second application. Whether the terminal identifier is consistent with the terminal identifier corresponding to the first application, and if yes, the second server identifies the second program identifier and the second user login name and the associated application information table and the associated user name information table carried by the second login request. Performing a query comparison, when determining that the second application is the associated application of the first application, and the second user login name is associated with the first user login name, the second server sends the associated password to the terminal device corresponding to the terminal identifier. .
- the server sends the associated password stored in the program information record table to the terminal device corresponding to the terminal identifier.
- the association server acquires the associated password stored in the first server, and sends the associated password to the second server.
- the associated password will have a corresponding valid time. Therefore, when the associated password is sent, the effective time is also sent to the second server, and the second server obtains the valid time within the specified validity time.
- the associated password sent by the terminal device passes the verification of the second login request.
- the second login request performs verification of the second login request based on the acquired associated password. Specifically, after the effective time of the associated password is configured in advance, and the associated password is sent to the terminal device corresponding to the terminal identifier, if the user inputs the second user login name and the associated password on the associated application within a preset time, The verification of the second login request corresponding to the second user login name may be completed.
- the multi-application shared password unlocking method implements multiple applications, and only one login password and associated password can enable the user to complete login of multiple applications installed on the same terminal device, and solve multiple application settings.
- the login password is confusing.
- the login password of one application is leaked, the login password of other applications will also leak the security problem, ensuring the security of the user login application.
- the multi-application shared password unlocking method further includes: configuring a first login password corresponding to the first user login name on the login password setting interface, where the first login password includes a gesture password.
- the login password setting interface refers to an interface for setting a login password. If the user does not register the first user login name and the first login password of the first application, the first application requests the user to enter the login password setting interface, and the user registers the first user login name on the login password setting interface, and simultaneously sets and The first login password corresponding to the first user login name.
- the first login password includes a gesture password
- the setting rule of the gesture password refers to a verification manner of verifying whether the coordinates of the target pattern conform to a preset matching rule based on coordinates of a specific pattern set in advance.
- the target pattern refers to a pattern selected by the user for unlocking the first login password.
- the preset matching rule refers to a rule for verifying whether the position coordinates of the target pattern and the initial position match.
- the gesture password in this embodiment includes a picture bottom layer, a dynamic coordinate layer, and an activity layer.
- the gesture password specifically includes three layers, the first layer is the bottom layer of the image, the second layer is the dynamic coordinate layer, and the third layer is the active layer.
- the bottom layer of the image refers to a layer of a picture with a specific pattern pre-selected when the user sets a gesture password in the gesture password setting interface.
- the specific pattern includes patterns with special shapes, such as buttons and plates, to help the user remember.
- the dynamic coordinate layer refers to a coordinate layer for locating the position of the third layer active layer, and the coordinates of the dynamic coordinate layer are movable coordinates.
- the active layer refers to the layer where the target pattern selected by the user is located, and the active layer includes a circular outline and a character pattern. Each character pattern is located in a circular outline, and the character pattern of the active layer can be dragged in full screen in the terminal device screen, and the position coordinates of the circular contour are positioned by the dynamic coordinate layer.
- the first login password corresponding to the first user login name is configured on the login password setting interface, and specifically includes the following steps:
- the initial position is the position of the particular pattern selected on the bottom layer of the image.
- determining the initial position of the gesture password at the bottom of the picture is determined by the location of the particular pattern selected in the bottom layer of the picture.
- a specific circular outline is set for each particular pattern of the bottom layer of the image, and the initial position of the gesture password is determined by the shape and radius of the circular outline.
- the circular contour can better and more completely reflect the size of a specific pattern than the contours of other shapes, and it is easier to determine the position of a specific pattern by the center of the circle.
- the target pattern is a pattern that the user selects according to personal preference.
- the position coordinates of the target pattern can be obtained through the dynamic coordinate layer.
- the dynamic coordinate layer determines the position of the target pattern based on the Cartesian coordinate system.
- the character patterns of the active layer include, but are not limited to, Chinese uppercase numbers, Chinese lowercase numbers, Arabic numerals, zodiac signs, and heavenly branches (ten days, twelve earth branches) and other character patterns. Specifically, the position coordinates of the target character pattern are also determined by their corresponding circular contours.
- S53 Determine, according to the dynamic coordinate layer, whether the position coordinate of the target pattern and the initial position of the gesture password meet the preset matching rule; if yes, the first login password corresponding to the first user login name is successfully set.
- test verification refers to the process of testing and verifying the position coordinates and initial position of the target pattern on the active layer. If the matching rule is met, the verification succeeds, and the first login password corresponding to the first user login name is successfully set.
- the verification criterion of the matching rule is specifically: when the center coordinate of the circular contour corresponding to the target pattern and the center coordinate distance of a specific pattern of the initial position are less than or equal to a preset value (for example, 0.15 times of the preset radius), the verification is passed.
- a preset value for example, 0.15 times of the preset radius
- the associated password in this embodiment may also refer to a gesture password, which is a pattern consistent with the target pattern selected in the system by randomly allocating a certain number of character patterns.
- the server sends a certain number of character patterns to the terminal device corresponding to the terminal identifier, and the user needs to select a pattern consistent with the target pattern among the plurality of character patterns on the terminal device, and then move the target.
- the pattern is such that the position coordinates and the initial position of the target pattern meet the verification criteria of the matching rule set in advance.
- the verification criterion of the matching rule is met, the second login request corresponding to the second application is successfully verified.
- the target pattern when moving the target pattern on the active layer, the target pattern cannot be moved separately. Therefore, when verifying the target pattern, the entire active layer needs to be moved, and then the position coordinates and the initial position of the target pattern are calculated. Whether the coordinates meet the verification criteria of the matching rule, and if the verification criteria of the matching rule are met, the second login request corresponding to the second application is successfully verified. Since the active layer must rely on the dynamic coordinate layer to determine the position coordinates of the target pattern, and the dynamic coordinate layer has only one coordinate system, when moving the target pattern, the corresponding active layer moves as a whole, which is convenient for acquiring the target pattern based on the dynamic coordinate layer. The position coordinate is used to verify whether the position coordinates of the target pattern meet the verification criteria of the matching rule.
- the login password is set by determining whether the position coordinate of the target pattern and the initial position of the gesture password conform to a preset matching rule. If the matching rule is met, the login application passes. This solution is used to unlock the application.
- the use of the target pattern to complete the verification of the gesture password reduces the operational complexity of the application unlocking. At the same time, due to the uncertainty of the position of the target pattern, the security of unlocking the gesture password is improved.
- the multi-application shared password unlocking method further includes the following steps:
- the server sets a valid time for the associated password after obtaining the associated password corresponding to the first user login name. Used to verify whether the time that the terminal device sends the associated password to the server is within the valid time.
- the associated server sets an effective time for the associated password to verify the terminal device to send the association after acquiring the associated password. Whether the password is given to the server within the valid time.
- the associated password in this embodiment is provided with at least 6 characters, and the character may include a string formed by random combination of Arabic numerals and/or English letters.
- the effective time is set to 30s. Based on this setting, since the exhaustive number of 6 digits of Arabic numerals and English letters is not exhaustive within 30s, the associated password is set to at least 6 English letters and/or Arabic. The combination of the number and the effective time of the associated password can increase the difficulty of the associated password being cracked and improve the security of the associated password verification.
- the multi-application shared password unlocking method further includes the following steps:
- the terminal device of the second login request sends the acquired associated password to the corresponding server within the valid time
- the server performs the step of completing the verification of the second login request based on the associated password.
- the association server sends the associated password and valid time acquired from the first server to the second login request.
- the terminal device identified by the terminal, and the associated server sends the terminal identifier and the valid time to the second server.
- the second server obtains the associated password sent by the terminal device corresponding to the terminal identifier within the specified valid time, the second server performs the step of completing the verification of the second login request based on the associated password.
- the step of performing the verification of the second login request based on the associated password is performed, and the security of the second login request verification is ensured.
- the acquisition time of the second login request exceeds the valid time, it indicates that the verification of the second login request based on the associated password exceeds the valid time. At this time, the associated password is invalid, and the second login cannot be based on the associated password. Requesting verification, so the user needs to resend the first login request, and when the first login request is verified, obtain the associated password, and then verify whether the second program identifier in the second login request is associated with the first program identifier, first Whether the user login name is associated with the second user login name.
- steps S21-S23 by setting a valid time for the associated password, the verification of the second login request based on the associated password is performed within the valid time; when the valid time is exceeded, the step of acquiring the first login request is re-executed, and the association is improved.
- the password verifies the security of the second login request.
- step S40 if the second application is the associated application of the first application, and the first user login name and the second user login, on the terminal device corresponding to the terminal identifier
- the verification of the second login request is completed based on the associated password, which includes the following steps:
- the service is pre-stored based on the terminal identifier query.
- a program information record table in the server determining whether the terminal identifier has a first program identifier corresponding to the second program identifier in the program information record table, indicating a first login request of the first application program and a second login request of the second application program The login request is logged in on the same terminal device.
- the second server compares the obtained terminal identifier with the terminal identifier stored in the first server, if the first The terminal identifier corresponding to the terminal identifier of the second login request exists in the server, and the first login request of the first application and the second login request of the second application are determined to be logged in on the same terminal device.
- the query is preset according to the first program identifier carried in the first login request and the second program identifier carried in the second login request.
- the associated application information table determines whether the second program identifier is associated with the first program identifier.
- the associated application information table is stored on the server; the first application and the second application are When the corresponding first server and the second server do not share one server, the associated application information table is stored on the associated server. Storing the associated application information table on the associated server can avoid the problem that the associated application information table needs to be stored on each server when the first server and the second server do not belong to the same server, which is convenient for querying and obtaining.
- the second application corresponding to the second program identifier and the first application corresponding to the first program identifier may be determined to be related.
- the second application is the associated application of the first application.
- S44 Query a preset user name information table according to the second user login name and the first user login name in the second login request, and determine whether the second user login name and the first user login name are associated.
- the associated user name information table is stored on the corresponding server; the first application and the first server corresponding to the second application When the second server does not belong to the same server, the associated user name information table is stored on the associated server.
- the second application is the associated application of the first application
- the terminal device For example, on a terminal device, if the second user login name and the first user login name are not verified, the user A logs in the first application on the terminal device, and the user B logs in on the terminal device.
- the second application when the second application and the first application are associated with each other, the terminal device receives an associated password, and if the user B inputs the associated password to perform verification of the second login request, the user A is caused.
- the information leakage in the second application causes the second application of the user A to have a login security uncertainty.
- the associated user name information table is used to determine whether the second user login name and the first user login name are associated with each other, so that the associated password can be sent to the terminal device to ensure the security of the user login.
- the server After determining that the second user login name is associated with the first user login name, and the first server and the second server corresponding to the first application and the second application belong to the same server, the server records the associated password in the table based on the program information. Complete verification of the second login request.
- the second server After determining that the second user login name is associated with the first user login name, and the first server and the second server corresponding to the first application and the second application do not belong to the same server, the second server acquires the storage through the association server. The associated password at the first server is then sent to the terminal device corresponding to the terminal identifier. The terminal device sends the associated password to the second server to verify the second login request within the effective time.
- the second application can complete the verification of the second login request based on the associated password, so that the user can still complete the verification of the second login request without inputting the login password of the second application. For easy user login.
- the multi-application shared password unlocking method by determining that the second application is logged in on the same terminal device as the first application, is associated with each other, and the second user login name and the first application corresponding to the second application
- the first user login name corresponding to the program is associated
- the first application verifies the verification
- the login of the plurality of applications is implemented based on the associated password, so that the plurality of applications can share one login password.
- the user only needs to input a login password to an application on the terminal device, and other applications associated with the application can implement password-free login, enabling fast login of multiple applications.
- the login password is verified by gesture password, which saves the login time of the user login application and is convenient for the user to operate.
- the associated password is sent, the corresponding valid time is set for the associated password, which improves the security of the user login application.
- FIG. 5 is a schematic block diagram showing a multi-application shared password unlocking apparatus corresponding to the multi-application shared password unlocking method in the first embodiment.
- the multi-application shared password unlocking apparatus includes a first login request acquisition module 10, an associated password acquisition module 20, a second login request acquisition module 30, and a second login request verification module 40.
- the implementation functions of the first login request acquisition module 10, the associated password acquisition module 20, the second login request acquisition module 30, and the second login request verification module 40 are the same as those of the multi-application shared password unlocking method in the embodiment.
- the present embodiment will not be described in detail.
- the first login request obtaining module 10 is configured to obtain a first login request sent by the first application, where the first login request includes a first user login name, a first login password, a first program identifier, and a terminal identifier.
- the associated password obtaining module 20 is configured to perform identity verification based on the first user login name, the first login password, and the first program identifier, and obtain an associated password corresponding to the first user login name when the identity verification is passed, and associate the password
- the password and terminal identification and the first program identification are stored in the program information record table.
- the second login request obtaining module 30 is configured to obtain a second login request sent by the second application, where the second login request includes a second user login name, a second program identifier, and a terminal identifier.
- the second login request verification module 40 is configured to: if the second application is an associated application of the first application, and the first user login name is associated with the second user login name, The verification of the second login request is completed based on the associated password.
- the multi-application shared password unlocking device is further configured to configure a first login password corresponding to the first user login name on the login password setting interface, where the first login password includes a gesture password.
- the multi-application shared password unlocking device further includes an initial password setting unit 51, a position coordinate acquiring unit 52 of the target pattern, and a first login password setting unit 53.
- the initial password setting unit 51 is configured to acquire an initial position of the gesture password in the bottom layer of the picture.
- the position coordinate acquiring unit 52 of the target pattern is configured to acquire the position coordinates of the target pattern in the active layer.
- the first login password setting unit 53 is configured to determine, according to the dynamic coordinate layer, whether the position coordinate of the target pattern and the initial position of the gesture password meet a preset matching rule; if yes, the first login corresponding to the first user login name The password is set successfully.
- the multi-application shared password unlocking device further includes an effective time setting unit 21.
- the effective time setting unit 21 is configured to set an effective time of the associated password.
- the multi-application shared password unlocking device further includes a first valid time determining unit 22 and a second effective time determining unit 23.
- the first valid time determining unit 22 is configured to perform the step of completing the verification of the second login request based on the associated password if the acquisition time of the second login request is within the valid time.
- the second valid time judging unit 23 is configured to re-execute the step of acquiring the first login request sent by the first application if the acquisition time of the second login request exceeds the valid time.
- the second login request verification module 40 includes a program information record table query unit 41, an associated application information table query unit 42, an associated application determination unit 43, an associated user name information table query unit 44, and a second login request verification unit. 45.
- the program information record table querying unit 41 is configured to query, according to the terminal identifier in the second login request, whether the first program identifier corresponding to the terminal identifier exists in the program information record table.
- the associated application information table querying unit 42 is configured to: if there is a first program identifier corresponding to the terminal identifier, query the preset related application information table based on the second program identifier and the first program identifier in the second login request And determining whether the second program identifier and the first program identifier are associated.
- the associated application determining unit 43 is configured to: if the second program identifier is associated with the first program identifier, determine, on the terminal device corresponding to the terminal identifier, that the second application is the associated application of the first application.
- the associated user name information table querying unit 44 is configured to query a preset user name information table based on the second user login name and the first user login name in the second login request, and determine the second user login name and the first user login name. Whether it is related.
- the second login request verification unit 45 is configured to complete verification of the second login request based on the associated password if the second user login name is associated with the first user login name.
- the embodiment provides a computer readable storage medium on which computer readable instructions are stored, and when the computer readable instructions are executed by the processor, the multi-application shared password unlocking method in Embodiment 1 is implemented, in order to avoid Repeat, no longer repeat them here.
- the computer readable instructions are executed by the processor, the functions of the modules/units in the multi-application shared password unlocking device in Embodiment 2 are implemented. To avoid repetition, details are not described herein again.
- the computer readable storage medium may include any entity or device capable of carrying the computer readable instruction code, a recording medium, a USB flash drive, a removable hard drive, a magnetic disk, an optical disk, a computer memory, a read only memory (ROM, Read-Only Memory), Random Access Memory (RAM), electrical carrier signals, and telecommunications signals.
- FIG. 6 is a schematic diagram of a computer device according to an embodiment of the present application.
- computer device 60 of this embodiment includes a processor 61, a memory 62, and computer readable instructions 63 stored in memory 62 and executable on processor 61.
- the processor 61 executes the computer readable instructions 63
- the steps of the multi-application shared password unlocking method in the above-described Embodiment 1 are implemented, such as steps S10 to S40 shown in FIG. 1.
- the processor 61 executes the computer readable instructions 63
- the functions of the modules/units in the foregoing device embodiments are implemented.
- the first login request obtaining module 10 the associated password obtaining module 20
- the second login request are obtained as shown in FIG.
- the functions of module 30 and second login request verification module 40 are obtained as shown in FIG.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Theoretical Computer Science (AREA)
- Computer Hardware Design (AREA)
- Software Systems (AREA)
- Physics & Mathematics (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- User Interface Of Digital Computer (AREA)
- Information Transfer Between Computers (AREA)
Abstract
本申请公开一种多应用程序共享密码解锁方法、装置、设备及存储介质。该方法包括:基于第一用户登录名、第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与第一用户登录名相对应的关联密码,并将关联密码与终端标识和第一程序标识存储在程序信息记录表中;获取第二应用程序发送的第二登录请求,第二登录请求包括第二用户登录名、第二程序标识和终端标识;若在终端标识对应的终端设备上,第二应用程序为第一应用程序的关联应用程序,且第一用户登录名和第二用户登录名相关联时,则基于关联密码完成第二登录请求的验证。该方法可实现应用程序的快捷登录,节省用户登录多应用程序的登录时间,同时保证了用户登录应用程序的安全性。
Description
本申请以2018年5月9日提交的申请号为201810439259.4,名称为“多应用程序共享密码解锁方法、装置、设备及存储介质”的中国发明专利申请为基础,并要求其优先权。
本申请涉及移动终端领域,尤其涉及一种多应用程序共享密码解锁方法、装置、设备及存储介质。
现有的应用程序解锁仅能实现一个应用程序或者平台的登录,当用户使用多个应用程序时需要对不同的应用程序进行不同的密码设置,会导致设置的密码过多,出现用户记混密码的情况,从而使得用户无法快捷地登录相应的应用程序。当用户对多个应用程序设置同样的登录密码时,若一个应用程序的登录密码泄露,其他应用程序的登录密码也会泄露,存在安全隐患。同时,在第二个应用程序登录时,可以采用手势密码解锁应用程序,此时,若手势密码设置的比较简单,使得手势密码输入过程中,其手势动作泄露该手势密码,使得该手势密码安全性不高;若手势密码设置的比较复杂时,势必会增加用户操作复杂度,给用户造成不便。
发明内容
本申请实施例提供一种多应用程序共享密码解锁方法、装置、设备及存储介质,以解决用户对多个应用程序设置不同的登录密码时出现登录密码记混的问题,同时解决登录密码复杂、安全性不高的问题。
第一方面,本申请实施例提供一种多应用程序共享密码解锁方法,包括:
获取第一应用程序发送的第一登录请求,所述第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识;
基于所述第一用户登录名、所述第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与所述第一用户登录名相对应的关联密码,并将所述关联密码与所述终端标识和所述第一程序标识存储在程序信息记录表中;
获取第二应用程序发送的第二登录请求,所述第二登录请求包括第二用户登录名、第二程序标识和所述终端标识;
若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证。
第二方面,本申请实施例提供一种多应用程序共享密码解锁装置,包括:
第一登录请求获取模块,用于获取第一应用程序发送的第一登录请求,所述第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识;
关联密码获取模块,用于基于所述第一用户登录名、所述第一登录密码和第一程序标 识进行身份验证,在身份验证通过时,获取与所述第一用户登录名相对应的关联密码,并将所述关联密码与所述终端标识和所述第一程序标识存储在程序信息记录表中;
第二登录请求获取模块,用于获取第二应用程序发送的第二登录请求,所述第二登录请求包括第二用户登录名、第二程序标识和所述终端标识;
第二登录请求验证模块,用于若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证。
第三方面,本申请实施例提供一种计算机设备,包括存储器、处理器以及存储在所述存储器中并可在所述处理器上运行的计算机可读指令,所述处理器执行所述计算机可读指令时实现如下步骤:
获取第一应用程序发送的第一登录请求,所述第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识;
基于所述第一用户登录名、所述第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与所述第一用户登录名相对应的关联密码,并将所述关联密码与所述终端标识和所述第一程序标识存储在程序信息记录表中;
获取第二应用程序发送的第二登录请求,所述第二登录请求包括第二用户登录名、第二程序标识和所述终端标识;
若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证。
第四方面,本申请实施例提供一个或多个存储有计算机可读指令的非易失性可读存储介质,其特征在于,所述计算机可读指令被一个或多个处理器执行时,使得所述一个或多个处理器实现如下步骤:
获取第一应用程序发送的第一登录请求,所述第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识;
基于所述第一用户登录名、所述第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与所述第一用户登录名相对应的关联密码,并将所述关联密码与所述终端标识和所述第一程序标识存储在程序信息记录表中;
获取第二应用程序发送的第二登录请求,所述第二登录请求包括第二用户登录名、第二程序标识和所述终端标识;
若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证。
本申请的一个或多个实施例的细节在下面的附图及描述中提出。本申请的其他特征和优点将从说明书、附图以及权利要求书变得明显。
为了更清楚地说明本申请实施例的技术方案,下面将对本申请实施例的描述中所需要使用的附图作简单地介绍,显而易见地,下面描述中的附图仅仅是本申请的一些实施例,对于本领域普通技术人员来讲,在不付出创造性劳动性的前提下,还可以根据这些附图获得其他的附图。
图1是本申请实施例1中多应用程序共享密码解锁方法的一流程图;
图2是本申请实施例1中多应用程序共享密码解锁方法的另一流程图;
图3是本申请实施例1中多应用程序共享密码解锁方法的又一流程图;
图4是图1中步骤S40的一具体流程图;
图5是本申请实施例2中多应用程序共享密码解锁装置的一原理框图;
图6是本申请实施例4中计算机设备的一示意图。
下面将结合本申请实施例中的附图,对本申请实施例中的技术方案进行清楚、完整地描述,显然,所描述的实施例是本申请一部分实施例,而不是全部的实施例。基于本申请中的实施例,本领域普通技术人员在没有作出创造性劳动前提下所获得的所有其他实施例,都属于本申请保护的范围。
实施例1
图1示出本实施例中多应用程序共享密码解锁方法的流程图。该多应用程序共享密码解锁方法应用在同一终端设备上登录多个关联应用程序时,多个关联应用程序可以使用一个登录密码完成登录验证过程,从而实现关联应用程序基于一个登录密码完成登录验证的目的。该多应用程序共享密码解锁方法可应用在电脑、智能手机和平板等终端设备上,用于对同一终端设备上的多个关联应用程序通过共享密码进行登录。如图1所示,多应用程序共享密码解锁方法包括如下步骤:
S10:获取第一应用程序发送的第一登录请求,第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识。
第一应用程序是安装在终端设备上的一个应用程序。第一登录请求是指登录第一应用程序的请求。在与终端设备通过网络相连的第一服务器获取第一应用程序发送的第一登录请求时,该登录请求还携带有第一用户登录名、第一登录密码、第一程序标识和终端标识。其中,第一服务器是指第一应用程序对应的服务器。第一用户登录名是指登录第一应用程序的用户登录名。第一登录密码是指登录第一应用程序的与第一用户登录名相对应的登录密码。第一程序标识是指用于识别第一应用程序对应的标识,该第一程序标识可以唯一识别出第一应用程序。终端标识是指登录第一应用程序的终端设备的标识,该终端标识包括但不限于移动终端的IMEI码(International Mobile Equipment Identity,国际移动终端设备身份标识)和SN(Serial Number,序列号)。
其中,IMEI码存储在智能手机和平板等终端设备中,一个移动终端设备对应一个IMEI码,该IMEI码可用于唯一识别移动终端设备。SN码是产品序列号,用于验证产品的合法身份,一套正版的产品只对应一组产品序列号。用户在移动终端设备上下载应用程序时, 应用程序对应的第一服务器会获取移动终端设备对应的IME I码和SN码。
S20:基于第一用户登录名、第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与第一用户登录名相对应的关联密码,并将关联密码与终端标识和第一程序标识存储在程序信息记录表中。
具体地,当用户在登陆第一应用程序时,与第一应用程序对应的第一服务器基于第一用户登录名、第一登录密码和第一程序标识进行对用户进行身份验证,若第一用户登录名、第一登录密码和第一程序标识与第一服务器存储的信息一致时,则对该用户的身份验证通过。例如,第一服务器可以先基于第一程序标识确定发送该第一登录请求的第一应用程序,然后,查询第一应用程序中所有的用户信息是否存在与第一用户登录名和第一登录密码相匹配的用户信息,若存在,则身份验证通过。
在用户的身份验证通过时,与第一应用程序对应的第一服务器获取一个与第一用户登录名相对应的关联密码。其中,关联密码是指第一应用程序和其他关联应用程序可以共享同一个密码进行登录的密码。关联应用程序是指预先存储的与第一应用程序相关联的应用程序,该关联应用程序是由开发商定义的,可以是同一公司下开发的不同的应用程序。例如,平安集团开发的车险APP、寿险APP和理财APP等属于相互关联的应用程序,若本实施例中的第一应用程序为车险APP,则其关联应用程序为寿险APP、理财APP或者平安集团开发的其他APP。关联密码具体是指第一应用程序进行身份验证通过后,在同一终端设备上安装的关联应用程序可以共享的密码。
该关联密码是服务器随机生成的一个密码。在第一服务器获取关联密码后,第一服务器将关联密码与终端标识和第一程序标识存储在程序信息记录表中。其中,程序信息记录表是用于记录应用程序信息的表,包括记录应用程序的下载情况和关联密码。记录应用程序的下载情况包括记录应用程序的第一程序标识、终端标识和下载时间等情况。
将第一应用程序的关联密码、终端标识和第一程序标识存储在程序信息记录表中,便于后续识别第二应用程序是否为第一应用程序的关联应用程序并完成第二应用程序的第二登录请求的验证。
S30:获取第二应用程序发送的第二登录请求,第二登录请求包括第二用户登录名、第二程序标识和终端标识。
第二应用程序是指在同一终端标识对应的终端设备上登录的不属于第一应用程序的应用程序。第二登录请求是指第二应用程序的登录请求。与第二应用程序关联的第二服务器获取第二应用程序发送的第二登录请求,该登录请求携带有第二用户登录名、第二程序标识和终端标识。其中,第二服务器是指第二应用程序对应的服务器。第二用户登录名是指第二应用程序对应的用户登录名。第二程序标识是指第二应用程序对应的程序标识,用于唯一识别第二应用程序。
本实施例中,若第一应用程序和第二应用程序在开发时,是同一集团、企业或者开发者开发的关联应用程序,且第一应用程序和第二应用程序共用一个服务器时,第一服务器和第二服务器为同一服务器。若第一应用程序和第二应用程序在开发时,虽然是同一集团、 企业或者开发者开发的关联应用程序,但是第一应用程序和第二应用程序没有共用一个服务器,则需要设置一个关联服务器实现第一服务器和第二服务器之间的信息交互。其中,关联服务器是指是指用于实现第一服务器和第二服务器之间信息交互的服务器,关联服务器与第一服务器和第二服务器相连。
S40:若在终端标识对应的终端设备上,第二应用程序为第一应用程序的关联应用程序,且第一用户登录名和第二用户登录名相关联时,则基于关联密码完成第二登录请求的验证。
第二服务器在获取第二登录请求时,则基于第二登录请求中的第二程序标识查询预先存储的关联应用程序信息表,以确保第二应用程序是否为第一应用程序的关联应用程序。其中,关联应用程序信息表是指用于记录第一应用程序和第二应用程序之间是否存在关联关系的表。在关联应用程序信息表中,每一组关联应用程序信息包括存在关联关系的至少两个程序标识。
本实施例中,当第一服务器和第二服务器为同一个服务器时,关联应用程序信息表存储在该服务器中;当第一服务器和第二服务器不属于同一个服务器时,则关联应用程序表存储在关联服务器中。将关联应用程序信息表存储在关联服务器中,便于对关联应用程序信息表中的数据进行集中管理,避免每个应用程序对应的服务器中都存储一份关联应用程序信息表。根据关联应用程序信息表,可以确定第一程序标识和第二程序标识对应的第一应用程序和第二应用程序是否为关联应用程序。
若确定第二应用程序是第一应用程序的关联应用程序时,则基于预先设置的关联用户名信息表查询用户登录名和第二用户登录名是否关联,在确定第一用户登录名和第二用户登录名相关联时,则将程序信息记录表中关联密码发送给终端标识对应的终端设备。关联用户名信息表是指用于记录用户登录名是否存在关联关系的表。如任一用户预先在车险APP、寿险APP和理财APP上采用各自的用户登录名和登录密码进行登录时,需将所有关联应用程序对应的用户登录名和登录密码存储在关联用户名信息表上,以便在获取第二登录请求的第二用户登录名后,根据该第二用户登录名查询关联用户名信息表,以确定第二用户登录名和第一用户登录名是否相关联。
本实施例中,当第一服务器和第二服务器为同一个服务器时,关联用户名信息表存储在该服务器中;当第一服务器和第二服务器不属于同一个服务器时,则关联应用程序表存储在关联服务器中。将关联用户名信息表存储在关联服务器中,便于对关联用户名信息表中的数据进行集中管理,避免每个应用程序对应的服务器中都存储一份关联用户名信息表。判断第一用户登录名和第二用户登录名的关联性可以确定用户的登录身份,避免不同用户在同一台终端设备登录第二应用程序和第一应用程序,也可获取该关联密码,保证用户的登录安全和信息安全。
进一步地,该多应用程序共享密码解锁方法还包括:设置关联密码的有效时间。有效时间是指将关联密码发送给终端标识对应的终端设备后,用于验证关联密码有效的时间,设置关联密码的有效时间可以进一步保障用户的信息安全性。在规定的有效时间内,第二 应用程序对应的服务器获取到终端标识对应的终端设备发送的关联密码后,通过第二登录请求的验证。将关联密码发送给终端标识对应的终端设备,便于用户基于获取的关联密码进行第二应用程序的登录,简化验证的过程,保障用户登录第二应用程序的安全性。
在第二服务器获取第二应用程序的第二登录请求后,第二服务器需将第二登录请求携带的终端标识与存储在第一服务器中的程序信息记录表进行对比,判断第二应用程序的终端标识是否与第一应用程序对应的终端标识一致,若一致,则第二服务器将第二登录请求携带的第二程序标识和第二用户登录名与关联应用程序信息表和关联用户名信息表进行查询比较,当确定第二应用程序为第一应用程序的关联应用程序,且第二用户登录名与第一用户登录名相关联时,第二服务器将关联密码发送给终端标识对应的终端设备。可以理解地,当第一服务器与第二服务器属于同一服务器时,则该服务器将存储在程序信息记录表中的关联密码发送给终端标识对应的终端设备。当第一服务器与第二服务器不属于同一个服务器时,则关联服务器获取第一服务器中存储的关联密码,并发送给第二服务器。在发送关联密码给第二服务器时,该关联密码都会有一对应的有效时间,因此,在发送关联密码时,也会将有效时间发送给第二服务器,第二服务器在规定的有效时间内获取到终端设备发送的关联密码,则第二登录请求的验证通过。
通过判断第二应用程序是否为第一应用程序的关联应用程序,同时判断第二用户登录名和第一用户登录名是否关联,当确定第二应用程序是第一应用程序的关联应用程序并且确定第二用户登录名和第一用户登录名相关联时,则第二登录请求基于获取的关联密码进行第二登录请求的验证。具体地,由于预先配置了关联密码的有效时间,并将关联密码发送给终端标识对应的终端设备后,若在预设时间内用户在关联应用程序上输入第二用户登录名和该关联密码,即可完成第二用户登录名对应的第二登录请求的验证。
该多应用程序共享密码解锁方法实现了多个应用程序只需一个登录密码和关联密码就可以使用户完成在同一终端设备上安装的多个应用程序的登录,解决了多个应用程序设置多个登录密码容易混淆的问题。同时,解决用户对多个应用程序设置同样的登录密码时,若一个应用程序的登录密码泄露,其他应用程序的登录密码也会泄露的安全隐患问题,保证了用户登录应用程序的安全性。
在一具体实施方式中,多应用程序共享密码解锁方法还包括:在登录密码设置界面上配置与第一用户登录名相对应的第一登录密码,第一登录密码包括手势密码。
具体地,登录密码设置界面是指用于设置登录密码的界面。若用户没有注册第一应用程序的第一用户登录名和第一登录密码时,第一应用程序会要求用户进入登录密码设置界面,用户在登录密码设置界面上注册第一用户登录名,同时设置与第一用户登录名相对应的第一登录密码。
第一登录密码包括手势密码,手势密码的设置规则是指基于预先设定的一特定图案的坐标,验证目标图案的坐标是否符合预先设置的匹配规则的一种验证方式。其中,目标图案是指用户选择的用于解锁第一登录密码的图案。预先设置的匹配规则是指用于验证目标图案的位置坐标和初始位置是否匹配的规则。
本实施例中的手势密码包括图片底层、动态坐标层和活动图层。
具体地,该手势密码具体包括三个层,第一层为图片底层,第二层为动态坐标层,第三层是活动图层。其中,图片底层是指用户在手势密码设置界面设置手势密码时,预先选取的含有特定图案的图片层。该特定图案包括有特殊形状的图案,比如纽扣和盘子等,用来帮助用户记忆。动态坐标层是指用于定位第三层活动图层的位置的坐标层,该动态坐标层的坐标是可移动的坐标。活动图层是指用户选取的目标图案所在的图层,活动图层包括圆形轮廓和字符图案等。其中,每个字符图案都位于一圆形轮廓中,该活动图层的字符图案在终端设备屏幕中是可以被全屏拖动的,圆形轮廓的位置坐标由动态坐标层进行定位。
在一具体实施方式中,如图2所示,在登录密码设置界面上配置与第一用户登录名相对应的第一登录密码,具体包括如下步骤:
S51:在图片底层中获取手势密码的初始位置。
初始位置是指在图片底层上选择的特定图案的位置。在设置手势密码时,应先在图片底层任意选择一个特定图案,并确定该特定图案的初始位置。
具体地,在图片底层确定手势密码的初始位置是通过图片底层中选取的特定图案的位置确定的。为了更方便地确定特定图案的位置,对图片底层的每一特定图案都会设置一特定的圆形轮廓,通过圆形轮廓的形状和半径大小来确定手势密码的初始位置。圆形轮廓相比于其它形状的轮廓可以更好更完整地反映特定图案的大小,更容易通过圆心确定特定图案的位置。
S52:获取活动图层中的目标图案的位置坐标。
具体地,当确定了手势密码的初始位置后,还需要在活动图层选取目标图案并确定目标图案的位置坐标。该目标图案是用户根据个人喜好选择的图案。其中,目标图案的位置坐标可通过动态坐标层获取。当用户在活动图层上选取了目标图案后,动态坐标层则会基于直角坐标系确定目标图案的位置。
活动图层的字符图案包括但不限于中文大写数字、中文小写数字、阿拉伯数字、生肖和天干地支(十天干、十二地支)等字符图案。具体地,目标字符图案的位置坐标也是通过其对应的圆形轮廓确定的。
S53:基于动态坐标层,判断目标图案的位置坐标与手势密码的初始位置是否符合预先设置的匹配规则;若符合,则与第一用户登录名对应的第一登录密码设置成功。
具体地,在确定手势密码的初始位置后需要对选取的目标图案进行测试验证。该测试验证是指对活动图层上的目标图案的位置坐标和初始位置进行测试验证的过程。若符合匹配规则,则验证成功,第一用户登录名对应的第一登录密码设置成功。匹配规则的验证标准具体为:当目标图案对应的圆形轮廓的圆心坐标和初始位置的某一特定图案的圆心坐标距离小于等于预设值(如预设半径的0.15倍)时,则验证通过。其中,预设半径是指圆形轮廓的半径大小,可以理解地,0.15倍还可以是其他具体数值。
本实施例中的关联密码也可以指手势密码,该关联密码为在系统每次随机分配一定数量的字符图案中选取的与目标图案一致的图案。当用户在登录第二应用程序时,服务器会 给终端标识对应的终端设备上发送一定数量的字符图案,用户需要在终端设备上的多个字符图案中选取与目标图案一致图案,然后移动该目标图案,使得目标图案的位置坐标和初始位置符合预先设置的匹配规则的验证标准,当符合匹配规则的验证标准,则第二应用程序对应的第二登录请求验证成功。
进一步地,在移动活动图层上的目标图案时,目标图案不能单独进行移动,因此,对目标图案进行验证时,需要对活动图层整体进行移动,然后通过计算目标图案的位置坐标与初始位置的坐标是否符合匹配规则的验证标准,若符合匹配规则的验证标准,则第二应用程序对应的第二登录请求验证成功。由于活动图层必须依赖于动态坐标层确定目标图案的位置坐标,而动态坐标层只有一个坐标系,因此,在移动目标图案时,对应的活动图层整体移动,方便基于动态坐标层获取目标图案的位置坐标,用于验证目标图案的位置坐标是否符合匹配规则的验证标准。
通过判断目标图案的位置坐标与手势密码的初始位置是否符合预先设置的匹配规则实现登录密码的设置,若符合匹配规则,则登录应用程序通过。采用该方案实现对应用程序的解锁。使用目标图案完成手势密码的验证,降低了应用程序解锁的操作复杂度。同时,由于目标图案位置的不确定性,提高了手势密码解锁的安全性。
在一具体实施方式中,如图3所示,在步骤S20,获取与第一用户登录名相对应的关联密码的步骤之后,该多应用程序共享密码解锁方法还包括如下步骤:
S21:设置关联密码的有效时间。
若第一应用程序和第二应用程序对应的第一服务器和第二服务器属于同一个服务器时,服务器在获取与第一用户登录名相对应的关联密码后,会对该关联密码设置一个有效时间,用于验证终端设备发送关联密码给服务器的时间是否在有效时间内。
若第一应用程序和第二应用程序对应的第一服务器和第二服务器不属于同一个服务器时,则关联服务器在获取关联密码后会对该关联密码设置一个有效时间用于验证终端设备发送关联密码给服务器的时间是否在有效时间内。
本实施例中的关联密码设置有至少6位字符,该字符可以包括阿拉伯数字和/或英文字母随机组合形成的字符串。有效时间设置为30s,基于这种设置,由于6位阿拉伯数字和英文字母的穷举次数在30s内是不可能穷举完全的,因此,将关联密码设置为至少6位英文字母和/或阿拉伯数字组合的字符串,并对关联密码设置有效时间,可以加大关联密码被破解的难度,提高关联密码验证的安全性。
在步骤S30,获取第二应用程序发送的第二登录请求的步骤之后,该多应用程序共享密码解锁方法还包括如下步骤:
S22:若第二登录请求的获取时间在有效时间内,则执行基于关联密码完成第二登录请求的验证的步骤。
当第一应用程序和第二应用程序对应的第一服务器和第二服务器属于同一个服务器时,第二登录请求的终端设备在有效时间内,将获取到的关联密码发送给对应的服务器时,服务器会执行基于关联密码完成第二登陆请求的验证的步骤。
当第一应用程序和第二应用程序对应的第一服务器和第二服务器不属于同一个服务器时,关联服务器会将从第一服务器获取到的关联密码和有效时间发送给第二登录请求携带的终端标识的终端设备,同时关联服务器将终端标识和有效时间发送给第二服务器。第二服务器在规定的有效时间内,获取到终端标识对应的终端设备发送的关联密码后,第二服务器执行基于关联密码完成第二登录请求的验证的步骤。
关联密码在有效时间内验证成功后,执行基于关联密码完成第二登录请求的验证的步骤,保证了第二登录请求验证通过的安全性。
S23:若第二登录请求的获取时间超过有效时间,则需要重新执行获取第一应用程序发送的第一登录请求的步骤。
具体地,若第二登录请求的获取时间超过有效时间,则说明基于关联密码对第二登录请求的验证超过了有效时间时,此时,该关联密码失效,无法基于该关联密码对第二登录请求进行验证,因此需要用户重新发送第一登录请求,并在第一登录请求验证通过时,获取关联密码,然后验证第二登录请求中的第二程序标识是否与第一程序标识关联,第一用户登录名是否与第二用户登录名关联。
步骤S21-S23,通过对关联密码设置有效时间,在有效时间内则执行基于关联密码完成第二登录请求的验证;在超过有效时间,则重新执行获取第一登录请求的步骤,提高了通过关联密码验证第二登录请求的安全性。
在一具体实施方式中,如图4所示,步骤S40,若在终端标识对应的终端设备上,第二应用程序为第一应用程序的关联应用程序,且第一用户登录名和第二用户登录名相关联时,则基于关联密码完成第二登录请求的验证,具体包括如下步骤:
S41:根据第二登录请求中的终端标识,查询程序信息记录表中是否存在与终端标识对应的第一程序标识。
具体地,若第一应用程序和第二应用程序对应的第一服务器和第二服务器属于同一个服务器时,服务器在获取第二登录请求携带的终端标识后,服会基于终端标识查询预先存储在服务器中的程序信息记录表,确定该终端标识在程序信息记录表中是否存在与第二程序标识对应的第一程序标识,表示第一应用程序的第一登录请求和第二应用程序的第二登录请求是在同一终端设备上登录的。
若第一应用程序和第二应用程序对应的第一服务器和第二服务器不属于同一个服务器时,第二服务器会将获取的终端标识和第一服务器中存储的终端标识进行比较,若第一服务器中存在有与第二登录请求的终端标识一致的终端标识,则确定第一应用程序的第一登录请求和第二应用程序的第二登录请求是在同一终端设备上登录的。
S42:若存在与终端标识对应的第一程序标识,则基于第二登录请求中的第二程序标识和第一程序标识,查询预先设置的关联应用程序信息表,确定第二程序标识和第一程序标识是否关联。
在确定第一登录请求和第二登录请求来自于同一终端标识对应的终端设备后,则基于第一登录请求中携带的第一程序标识和第二登录请求携带的第二程序标识,查询预先设置 的关联应用程序信息表,确定第二程序标识与第一程序标识是否关联。
可以理解地,在第一应用程序和第二应用程序对应的第一服务器和第二服务器共用同一个服务器时,关联应用程序信息表存储在该服务器上;在第一应用程序和第二应用程序对应的第一服务器和第二服务器不共用一个服务器时,关联应用程序信息表存储在关联服务器上。将关联应用程序信息表存储在关联服务器上,可以避免当第一服务器和第二服务器不属于同一个服务器时,关联应用程序信息表需要在每个服务器上进行存储的问题,方便查询和获取。
S43:若第二程序标识和第一程序标识关联,则在终端标识对应的终端设备上,确定第二应用程序为第一应用程序的关联应用程序。
在基于关联应用程序信息表查询到第二程序标识和第一程序标识关联时,则可以确定第二程序标识对应的第二应用程序和第一程序标识对应的第一应用程序具有关联性,第二应用程序为第一应用程序的关联应用程序。
S44:基于第二登录请求中的第二用户登录名和第一用户登录名,查询预先设置的关联用户名信息表,确定第二用户登录名和第一用户登录名是否关联。
第一应用程序和第二应用程序对应的第一服务器和第二服务器属于同一个服务器时,关联用户名信息表存储在对应的服务器上;第一应用程序和第二应用程序对应的第一服务器和第二服务器不属于同一个服务器时,关联用户名信息表存储在关联服务器上。
具体地,在确定第二应用程序为第一应用程序的关联应用程序后,还需要查询预先设置的关联用户名信息表,确定第二用户登录名和第一用户登录名是否关联,避免不同的用户在同一终端设备上登录关联应用程序,使得用户登录应用程序的安全性受到威胁。
如在一终端设备上,不进行第二用户登录名和第一用户登录名是否关联的验证,则会出现用户A在该终端设备上登陆了第一应用程序,用户B在该终端设备上登录了第二应用程序,在第二应用程序和第一应用程序相互关联的情况下,该终端设备会收到一关联密码,若用户B输入关联密码进行第二登录请求的验证,则会导致用户A在第二应用程序中的信息泄露,使得用户A的第二应用程序出现登录安全不确定性,因此,在确定第二应用程序为第一应用程序的关联应用程序后,还需要查询预先设置的关联用户名信息表,确定第二用户登录名和第一用户登录名是否关联,才能发送关联密码给该终端设备,保证用户登录的安全性。
S45:若第二用户登录名和第一用户登录名相关联,则基于关联密码完成第二登录请求的验证。
在确定第二用户登录名和第一用户登录名关联,并且第一应用程序和第二应用程序对应的第一服务器和第二服务器属于同一个服务器后,服务器会基于程序信息记录表中的关联密码完成第二登录请求的验证。
在确定第二用户登录名和第一用户登录名关联,并且第一应用程序和第二应用程序对应的第一服务器和第二服务器不属于同一个服务器后,第二服务器会通过关联服务器,获取存储在第一服务器的关联密码,然后发送给终端标识对应的终端设备。终端设备在有效 时间内将关联密码发送给第二服务器完成第二登录请求的验证。
通过步骤S41-S45的验证过程,使得第二应用程序可以基于关联密码完成第二登录请求的验证,使得用户不需要输入第二应用程序的登录密码的情况下依然能够完成第二登录请求的验证,方便用户登录。
该多应用程序共享密码解锁方法,通过确定第二应用程序与第一应用程序在同一终端设备上登录,相互之间为关联应用程序,并且第二应用程序对应的第二用户登录名和第一应用程序对应的第一用户登录名关联时,在第一应用程序验证通过时,基于关联密码实现多个应用程序的登录,使得多个应用程序可以共享一个登录密码。用户只需要在终端设备对某一应用程序输入一次登录密码,与该应用程序关联的其他应用程序都可以实现免密码登录,实现多应用程序的快捷登录。登录密码采用手势密码验证,节省了用户登录应用程序的登录时间,方便用户操作。在发送关联密码时,给关联密码设置对应的有效时间,提高了用户登录应用程序的安全性。
应理解,上述实施例中各步骤的序号的大小并不意味着执行顺序的先后,各过程的执行顺序应以其功能和内在逻辑确定,而不应对本申请实施例的实施过程构成任何限定。
实施例2
图5示出与实施例1中多应用程序共享密码解锁方法一一对应的多应用程序共享密码解锁装置的原理框图。如图5所示,该多应用程序共享密码解锁装置包括第一登录请求获取模块10、关联密码获取模块20、第二登录请求获取模块30和第二登录请求验证模块40。其中,第一登录请求获取模块10、关联密码获取模块20、第二登录请求获取模块30和第二登录请求验证模块40的实现功能与实施例中多应用程序共享密码解锁方法对应的步骤一一对应,为避免赘述,本实施例不一一详述。
第一登录请求获取模块10,用于获取第一应用程序发送的第一登录请求,第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识。
关联密码获取模块20,用于基于第一用户登录名、第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与第一用户登录名相对应的关联密码,并将关联密码与终端标识和第一程序标识存储在程序信息记录表中。
第二登录请求获取模块30,用于获取第二应用程序发送的第二登录请求,第二登录请求包括第二用户登录名、第二程序标识和终端标识。
第二登录请求验证模块40,用于若在终端标识对应的终端设备上,第二应用程序为第一应用程序的关联应用程序,且第一用户登录名和第二用户登录名相关联时,则基于关联密码完成第二登录请求的验证。
优选地,多应用程序共享密码解锁装置还用于在登录密码设置界面上配置与第一用户登录名相对应的第一登录密码,第一登录密码包括手势密码。
优选地,该多应用程序共享密码解锁装置还包括初始密码设置单元51、目标图案的位置坐标获取单元52和第一登录密码设置单元53。
初始密码设置单元51,用于在图片底层中获取手势密码的初始位置。
目标图案的位置坐标获取单元52,用于获取活动图层中的目标图案的位置坐标。
第一登录密码设置单元53,用于基于动态坐标层,判断目标图案的位置坐标与手势密码的初始位置是否符合预先设置的匹配规则;若符合,则与第一用户登录名对应的第一登录密码设置成功。
优选地,多应用程序共享密码解锁装置还包括有效时间设置单元21。
有效时间设置单元21,用于设置关联密码的有效时间。
优选地,在第二登录请求获取模块30之后,多应用程序共享密码解锁装置还包括第一有效时间判断单元22和第二有效时间判断单元23。
第一有效时间判断单元22,用于若第二登录请求的获取时间在有效时间内,则执行基于关联密码完成第二登录请求的验证的步骤。
第二有效时间判断单元23,用于若第二登录请求的获取时间超过有效时间,则需要重新执行获取第一应用程序发送的第一登录请求的步骤。
优选地,第二登录请求验证模块40包括程序信息记录表查询单元41、关联应用程序信息表查询单元42、关联应用程序确定单元43、关联用户名信息表查询单元44和第二登陆请求验证单元45。
程序信息记录表查询单元41,用于根据第二登录请求中的终端标识,查询程序信息记录表中是否存在与终端标识对应的第一程序标识。
关联应用程序信息表查询单元42,用于若存在与终端标识对应的第一程序标识,则基于第二登录请求中的第二程序标识和第一程序标识,查询预先设置的关联应用程序信息表,确定第二程序标识和第一程序标识是否关联。
关联应用程序确定单元43,用于若第二程序标识和第一程序标识关联,则在终端标识对应的终端设备上,确定第二应用程序为第一应用程序的关联应用程序。
关联用户名信息表查询单元44,用于基于第二登录请求中的第二用户登录名和第一用户登录名,查询预先设置的关联用户名信息表,确定第二用户登录名和第一用户登录名是否关联。
第二登陆请求验证单元45,用于若第二用户登录名和第一用户登录名相关联,则基于关联密码完成第二登录请求的验证。
实施例3
本实施例提供一计算机可读存储介质,该计算机可读存储介质上存储有计算机可读指令,该计算机可读指令被处理器执行时实现实施例1中多应用程序共享密码解锁方法,为避免重复,这里不再赘述。或者,该计算机可读指令被处理器执行时实现实施例2中多应用程序共享密码解锁装置中各模块/单元的功能,为避免重复,这里不再赘述。
可以理解地,所述计算机可读存储介质可以包括:能够携带所述计算机可读指令代码的任何实体或装置、记录介质、U盘、移动硬盘、磁碟、光盘、计算机存储器、只读存储器(ROM,Read-Only Memory)、随机存取存储器(RAM,Random Access Memory)、电载波信号和电信信号等。
实施例4
图6是本申请一实施例提供的计算机设备的示意图。如图6所示,该实施例的计算机设备60包括:处理器61、存储器62以及存储在存储器62中并可在处理器61上运行的计算机可读指令63。处理器61执行计算机可读指令63时实现上述实施例1中多应用程序共享密码解锁方法的步骤,例如图1所示的步骤S10至S40。或者,处理器61执行计算机可读指令63时实现上述各装置实施例中各模块/单元的功能,例如图5所示第一登录请求获取模块10、关联密码获取模块20、第二登录请求获取模块30和第二登录请求验证模块40的功能。
所属领域的技术人员可以清楚地了解到,为了描述的方便和简洁,仅以上述各功能单元、模块的划分进行举例说明,实际应用中,可以根据需要而将上述功能分配由不同的功能单元、模块完成,即将所述装置的内部结构划分成不同的功能单元或模块,以完成以上描述的全部或者部分功能。
以上所述实施例仅用以说明本申请的技术方案,而非对其限制;尽管参照前述实施例对本申请进行了详细的说明,本领域的普通技术人员应当理解:其依然可以对前述各实施例所记载的技术方案进行修改,或者对其中部分技术特征进行等同替换;而这些修改或者替换,并不使相应技术方案的本质脱离本申请各实施例技术方案的精神和范围,均应包含在本申请的保护范围之内。
Claims (20)
- 一种多应用程序共享密码解锁方法,其特征在于,包括:获取第一应用程序发送的第一登录请求,所述第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识;基于所述第一用户登录名、所述第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与所述第一用户登录名相对应的关联密码,并将所述关联密码与所述终端标识和所述第一程序标识存储在程序信息记录表中;获取第二应用程序发送的第二登录请求,所述第二登录请求包括第二用户登录名、第二程序标识和所述终端标识;若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证。
- 如权利要求1所述的多应用程序共享密码解锁方法,其特征在于,在所述获取与所述第一用户登录名相对应的关联密码的步骤之后,所述多应用程序共享密码解锁方法还包括:设置所述关联密码的有效时间;在所述获取第二应用程序发送的第二登录请求的步骤之后,所述多应用程序共享密码解锁方法还包括:若所述第二登录请求的获取时间在所述有效时间内,则执行所述基于关联密码完成所述第二登录请求的验证的步骤;若所述第二登录请求的获取时间超过所述有效时间,则需要重新执行所述获取第一应用程序发送的第一登录请求的步骤。
- 如权利要求1所述的多应用程序共享密码解锁方法,其特征在于,所述多应用程序共享密码解锁方法还包括:在登录密码设置界面上配置与所述第一用户登录名相对应的第一登录密码,所述第一登录密码包括手势密码。
- 如权利要求3所述的多应用程序共享密码解锁方法,其特征在于,所述手势密码包括图片底层、动态坐标层和活动图层;所述在登录密码设置界面上配置与所述第一用户登录名相对应的第一登录密码,包括:在所述图片底层中获取所述手势密码的初始位置;获取所述活动图层中的目标图案的位置坐标;基于所述动态坐标层,判断所述目标图案的位置坐标与所述手势密码的初始位置是否符合预先设置的匹配规则;若符合,则与所述第一用户登录名对应的第一登录密码设置成功。
- 如权利要求1所述的多应用程序共享密码解锁方法,其特征在于,所述若在所述终 端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证,包括:根据所述第二登录请求中的终端标识,查询所述程序信息记录表中是否存在与所述终端标识对应的第一程序标识;若存在与所述终端标识对应的所述第一程序标识,则基于所述第二登录请求中的第二程序标识和所述第一程序标识,查询预先设置的关联应用程序信息表,确定所述第二程序标识和所述第一程序标识是否关联;若所述第二程序标识和所述第一程序标识关联,则在所述终端标识对应的终端设备上,确定第二应用程序为第一应用程序的关联应用程序;基于所述第二登录请求中的第二用户登录名和第一用户登录名,查询预先设置的关联用户名信息表,确定所述第二用户登录名和所述第一用户登录名是否关联;若所述第二用户登录名和所述第一用户登录名相关联,则基于关联密码完成所述第二登录请求的验证。
- 一种多应用程序共享密码解锁装置,其特征在于,包括:第一登录请求获取模块,用于获取第一应用程序发送的第一登录请求,所述第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识;关联密码获取模块,用于基于所述第一用户登录名、所述第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与所述第一用户登录名相对应的关联密码,并将所述关联密码与所述终端标识和所述第一程序标识存储在程序信息记录表中;第二登录请求获取模块,用于获取第二应用程序发送的第二登录请求,所述第二登录请求包括第二用户登录名、第二程序标识和所述终端标识;第二登录请求验证模块,用于若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证。
- 如权利要求6所述的多应用程序共享密码解锁装置,其特征在于,所述多应用程序共享密码解锁装置还包括:有效时间设置单元,用于设置所述关联密码的有效时间;第一有效时间判断单元,用于若所述第二登录请求的获取时间在所述有效时间内,则执行所述基于关联密码完成所述第二登录请求的验证的步骤;第二有效时间判断单元,用于若所述第二登录请求的获取时间超过所述有效时间,则需要重新执行所述获取第一应用程序发送的第一登录请求的步骤。
- 如权利要求6所述的多应用程序共享密码解锁装置,其特征在于,所述多应用程序共享密码解锁装置还用于:在登录密码设置界面上配置与所述第一用户登录名相对应的第一登录密码,所述第一登录密码包括手势密码。
- 如权利要求8所述的多应用程序共享密码解锁装置,其特征在于,所述多应用程序 共享密码解锁装置还包括:初始密码设置单元,用于在所述图片底层中获取所述手势密码的初始位置;目标图案的位置坐标获取单元,用于获取所述活动图层中的目标图案的位置坐标;第一登录密码设置单元,用于基于所述动态坐标层,判断所述目标图案的位置坐标与所述手势密码的初始位置是否符合预先设置的匹配规则;若符合,则与所述第一用户登录名对应的第一登录密码设置成功。
- 如权利要求6所述的多应用程序共享密码解锁装置,其特征在于,所述第二登录请求验证模块,包括:程序信息记录表查询单元,用于根据所述第二登录请求中的终端标识,查询所述程序信息记录表中是否存在与所述终端标识对应的第一程序标识;关联应用程序信息表查询单元,用于若存在与所述终端标识对应的所述第一程序标识,则基于所述第二登录请求中的第二程序标识和所述第一程序标识,查询预先设置的关联应用程序信息表,确定所述第二程序标识和所述第一程序标识是否关联;关联应用程序确定单元,用于若所述第二程序标识和所述第一程序标识关联,则在所述终端标识对应的终端设备上,确定第二应用程序为第一应用程序的关联应用程序;关联用户名信息表查询单元,用于基于所述第二登录请求中的第二用户登录名和第一用户登录名,查询预先设置的关联用户名信息表,确定所述第二用户登录名和所述第一用户登录名是否关联;第二登陆请求验证单元,用于若所述第二用户登录名和所述第一用户登录名相关联,则基于关联密码完成所述第二登录请求的验证。
- 一种计算机设备,包括存储器、处理器以及存储在所述存储器中并可在所述处理器上运行的计算机可读指令,其特征在于,所述处理器执行所述计算机可读指令时实现如下步骤:获取第一应用程序发送的第一登录请求,所述第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识;基于所述第一用户登录名、所述第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与所述第一用户登录名相对应的关联密码,并将所述关联密码与所述终端标识和所述第一程序标识存储在程序信息记录表中;获取第二应用程序发送的第二登录请求,所述第二登录请求包括第二用户登录名、第二程序标识和所述终端标识;若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证。
- 如权利要求11所述的计算机设备,其特征在于,在所述获取与所述第一用户登录名相对应的关联密码的步骤之后,所述处理器执行所述计算机可读指令时还实现如下步骤:设置所述关联密码的有效时间;在所述获取第二应用程序发送的第二登录请求的步骤之后,所述处理器执行所述计算机可读指令时还实现如下步骤::若所述第二登录请求的获取时间在所述有效时间内,则执行所述基于关联密码完成所述第二登录请求的验证的步骤;若所述第二登录请求的获取时间超过所述有效时间,则需要重新执行所述获取第一应用程序发送的第一登录请求的步骤。
- 如权利要求11所述的计算机设备,其特征在于,所述处理器执行所述计算机可读指令时还实现如下步骤::在登录密码设置界面上配置与所述第一用户登录名相对应的第一登录密码,所述第一登录密码包括手势密码。
- 如权利要求13所述的计算机设备,其特征在于,所述手势密码包括图片底层、动态坐标层和活动图层;所述在登录密码设置界面上配置与所述第一用户登录名相对应的第一登录密码,包括:在所述图片底层中获取所述手势密码的初始位置;获取所述活动图层中的目标图案的位置坐标;基于所述动态坐标层,判断所述目标图案的位置坐标与所述手势密码的初始位置是否符合预先设置的匹配规则;若符合,则与所述第一用户登录名对应的第一登录密码设置成功。
- 如权利要求11所述的计算机设备,其特征在于,所述若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证,包括:根据所述第二登录请求中的终端标识,查询所述程序信息记录表中是否存在与所述终端标识对应的第一程序标识;若存在与所述终端标识对应的所述第一程序标识,则基于所述第二登录请求中的第二程序标识和所述第一程序标识,查询预先设置的关联应用程序信息表,确定所述第二程序标识和所述第一程序标识是否关联;若所述第二程序标识和所述第一程序标识关联,则在所述终端标识对应的终端设备上,确定第二应用程序为第一应用程序的关联应用程序;基于所述第二登录请求中的第二用户登录名和第一用户登录名,查询预先设置的关联用户名信息表,确定所述第二用户登录名和所述第一用户登录名是否关联;若所述第二用户登录名和所述第一用户登录名相关联,则基于关联密码完成所述第二登录请求的验证。
- 一个或多个存储有计算机可读指令的非易失性可读存储介质,其特征在于,所述计算机可读指令被一个或多个处理器执行时,使得所述一个或多个处理器实现如下步骤:获取第一应用程序发送的第一登录请求,所述第一登录请求包括第一用户登录名、第一登录密码、第一程序标识和终端标识;基于所述第一用户登录名、所述第一登录密码和第一程序标识进行身份验证,在身份验证通过时,获取与所述第一用户登录名相对应的关联密码,并将所述关联密码与所述终端标识和所述第一程序标识存储在程序信息记录表中;获取第二应用程序发送的第二登录请求,所述第二登录请求包括第二用户登录名、第二程序标识和所述终端标识;若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证。
- 如权利要求16所述的非易失性可读存储介质,其特征在于,在所述获取与所述第一用户登录名相对应的关联密码的步骤之后,所述计算机可读指令被一个或多个处理器执行时,使得所述一个或多个处理器还实现如下步骤:设置所述关联密码的有效时间;在所述获取第二应用程序发送的第二登录请求的步骤之后,所述计算机可读指令被一个或多个处理器执行时,使得所述一个或多个处理器还实现如下步骤:若所述第二登录请求的获取时间在所述有效时间内,则执行所述基于关联密码完成所述第二登录请求的验证的步骤;若所述第二登录请求的获取时间超过所述有效时间,则需要重新执行所述获取第一应用程序发送的第一登录请求的步骤。
- 如权利要求16所述的非易失性可读存储介质,其特征在于,所述计算机可读指令被一个或多个处理器执行时,使得所述一个或多个处理器还实现如下步骤:在登录密码设置界面上配置与所述第一用户登录名相对应的第一登录密码,所述第一登录密码包括手势密码。
- 如权利要求18所述的非易失性可读存储介质,其特征在于,所述手势密码包括图片底层、动态坐标层和活动图层;所述在登录密码设置界面上配置与所述第一用户登录名相对应的第一登录密码,包括:在所述图片底层中获取所述手势密码的初始位置;获取所述活动图层中的目标图案的位置坐标;基于所述动态坐标层,判断所述目标图案的位置坐标与所述手势密码的初始位置是否符合预先设置的匹配规则;若符合,则与所述第一用户登录名对应的第一登录密码设置成功。
- 如权利要求16所述的非易失性可读存储介质,其特征在于,所述若在所述终端标识对应的终端设备上,所述第二应用程序为所述第一应用程序的关联应用程序,且所述第一用户登录名和所述第二用户登录名相关联时,则基于所述关联密码完成所述第二登录请求的验证,包括:根据所述第二登录请求中的终端标识,查询所述程序信息记录表中是否存在与所述终端标识对应的第一程序标识;若存在与所述终端标识对应的所述第一程序标识,则基于所述第二登录请求中的第二程序标识和所述第一程序标识,查询预先设置的关联应用程序信息表,确定所述第二程序标识和所述第一程序标识是否关联;若所述第二程序标识和所述第一程序标识关联,则在所述终端标识对应的终端设备上,确定第二应用程序为第一应用程序的关联应用程序;基于所述第二登录请求中的第二用户登录名和第一用户登录名,查询预先设置的关联用户名信息表,确定所述第二用户登录名和所述第一用户登录名是否关联;若所述第二用户登录名和所述第一用户登录名相关联,则基于关联密码完成所述第二登录请求的验证。
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN201810439259.4A CN108647501A (zh) | 2018-05-09 | 2018-05-09 | 多应用程序共享密码解锁方法、装置、设备及存储介质 |
| CN201810439259.4 | 2018-05-09 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2019214030A1 true WO2019214030A1 (zh) | 2019-11-14 |
Family
ID=63753792
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/CN2018/094413 Ceased WO2019214030A1 (zh) | 2018-05-09 | 2018-07-04 | 多应用程序共享密码解锁方法、装置、设备及存储介质 |
Country Status (2)
| Country | Link |
|---|---|
| CN (1) | CN108647501A (zh) |
| WO (1) | WO2019214030A1 (zh) |
Families Citing this family (10)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN110532742B (zh) * | 2019-07-09 | 2023-04-14 | 中国平安财产保险股份有限公司 | 身份认证方法、装置、密钥设备及存储介质 |
| CN110738499B (zh) * | 2019-09-03 | 2024-09-13 | 平安科技(深圳)有限公司 | 用户身份验证方法、装置、计算机设备和存储介质 |
| CN111241527A (zh) * | 2020-01-03 | 2020-06-05 | 北京奇艺世纪科技有限公司 | 一种静默登录方法、装置、电子设备及存储介质 |
| CN111241499B (zh) * | 2020-01-07 | 2023-05-05 | 腾讯科技(深圳)有限公司 | 应用程序登录的方法、装置、终端及存储介质 |
| CN111475798A (zh) * | 2020-03-05 | 2020-07-31 | 深圳壹账通智能科技有限公司 | 多App单点登录的方法、装置、设备和存储介质 |
| CN112235246A (zh) * | 2020-09-14 | 2021-01-15 | 上海硬通网络科技有限公司 | 跨终端的账号登录方法、装置及电子设备 |
| CN113836504B (zh) * | 2021-08-25 | 2024-02-06 | 北京新伟佳业科技有限公司 | 应用于多功能集成办公系统的权限管理认证方法和系统 |
| CN114579940A (zh) * | 2022-02-09 | 2022-06-03 | 珠海格力电器股份有限公司 | 应用登录方法、装置、存储介质及电子设备 |
| CN115242511B (zh) * | 2022-07-22 | 2024-04-12 | 成都中科大旗软件股份有限公司 | 一种多环境应用管理平台及管理方法 |
| CN115694958A (zh) * | 2022-10-27 | 2023-02-03 | 武汉禾店科技有限公司 | 一种不同app之间的用户身份识别和数据共享方法及系统 |
Citations (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20020116648A1 (en) * | 2000-12-14 | 2002-08-22 | Ibm Corporation | Method and apparatus for centralized storing and retrieving user password using LDAP |
| CN103065080A (zh) * | 2012-12-21 | 2013-04-24 | 广东欧珀移动通信有限公司 | 一种应用程序登录方法及装置 |
| CN105227302A (zh) * | 2015-10-28 | 2016-01-06 | 广东欧珀移动通信有限公司 | 密码的共享方法及密码的共享系统 |
| CN106330918A (zh) * | 2016-08-26 | 2017-01-11 | 杭州迪普科技有限公司 | 一种多系统登录的方法和装置 |
Family Cites Families (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN106209726B (zh) * | 2015-04-30 | 2020-06-05 | 中兴通讯股份有限公司 | 一种移动应用单点登录方法及装置 |
| CN105072133B (zh) * | 2015-08-28 | 2018-07-10 | 北京金山安全软件有限公司 | 一种应用程序的登录方法及装置 |
-
2018
- 2018-05-09 CN CN201810439259.4A patent/CN108647501A/zh active Pending
- 2018-07-04 WO PCT/CN2018/094413 patent/WO2019214030A1/zh not_active Ceased
Patent Citations (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20020116648A1 (en) * | 2000-12-14 | 2002-08-22 | Ibm Corporation | Method and apparatus for centralized storing and retrieving user password using LDAP |
| CN103065080A (zh) * | 2012-12-21 | 2013-04-24 | 广东欧珀移动通信有限公司 | 一种应用程序登录方法及装置 |
| CN105227302A (zh) * | 2015-10-28 | 2016-01-06 | 广东欧珀移动通信有限公司 | 密码的共享方法及密码的共享系统 |
| CN106330918A (zh) * | 2016-08-26 | 2017-01-11 | 杭州迪普科技有限公司 | 一种多系统登录的方法和装置 |
Also Published As
| Publication number | Publication date |
|---|---|
| CN108647501A (zh) | 2018-10-12 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| WO2019214030A1 (zh) | 多应用程序共享密码解锁方法、装置、设备及存储介质 | |
| US12001857B2 (en) | Device locator disable authentication | |
| US11347411B2 (en) | Secure storing and processing of data | |
| CN106096418B (zh) | 基于SELinux的开机安全等级选择方法、装置及终端设备 | |
| CN113268742A (zh) | 数据授权方法、装置及电子设备 | |
| US10594693B2 (en) | Electronic device identification | |
| WO2018107727A1 (zh) | 一种信息处理方法、装置及终端 | |
| US20190182229A1 (en) | Advanced application security utilizing an application key | |
| JP6650755B2 (ja) | 記憶装置の遠隔破壊システムおよび遠隔破壊方法 | |
| CN105760729B (zh) | 一种登录方法及电子设备 | |
| US10757095B1 (en) | Unix password replication to a set of computers | |
| WO2017092507A1 (zh) | 应用加密方法、装置和应用访问方法、装置 | |
| US10127376B1 (en) | Graphical password generation | |
| CN115571533A (zh) | 保密档案存放管理方法、装置、设备及可读存储介质 | |
| US12388813B2 (en) | Enhanced security with multiple factor authentication at devices using partitions | |
| US12463974B2 (en) | Securing blueprints for implementation in edge devices | |
| CN119538235B (zh) | 访问认证方法、装置、计算机设备和存储介质 | |
| CN119232479B (zh) | 一种基于sim卡的人机校验登录方法 | |
| US11977611B2 (en) | Digital rights management platform | |
| CN112699570B (zh) | 电网工程建模方法、装置、计算机设备和存储介质 | |
| CN110533269A (zh) | 业务风险防控方法及装置 | |
| CN116614288A (zh) | 基于强安全认证的测试准入控制方法、装置及计算机设备 | |
| WO2024010664A1 (en) | Platform for information technology management as a service | |
| CN116541813A (zh) | 授权请求处理方法、装置、设备及介质 | |
| HK40056980A (zh) | 数据授权方法、装置及电子设备 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 18918262 Country of ref document: EP Kind code of ref document: A1 |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 32PN | Ep: public notification in the ep bulletin as address of the adressee cannot be established |
Free format text: NOTING OF LOSS OF RIGHTS PURSUANT TO RULE 112(1) EPC (EPO FORM 1205A DATED 22.03.2021) |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 18918262 Country of ref document: EP Kind code of ref document: A1 |