[go: up one dir, main page]

CN105991654A - Authorization authentication method, device and system - Google Patents

Authorization authentication method, device and system Download PDF

Info

Publication number
CN105991654A
CN105991654A CN201610127235.6A CN201610127235A CN105991654A CN 105991654 A CN105991654 A CN 105991654A CN 201610127235 A CN201610127235 A CN 201610127235A CN 105991654 A CN105991654 A CN 105991654A
Authority
CN
China
Prior art keywords
information
biological
digital certificate
certification
equipment
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201610127235.6A
Other languages
Chinese (zh)
Inventor
李明
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Individual filed Critical Individual
Priority to CN201610127235.6A priority Critical patent/CN105991654A/en
Publication of CN105991654A publication Critical patent/CN105991654A/en
Priority to US16/083,469 priority patent/US10785218B2/en
Priority to EP17762505.0A priority patent/EP3429157A4/en
Priority to JP2018546887A priority patent/JP2019512786A/en
Priority to PCT/CN2017/075745 priority patent/WO2017152819A1/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0861Network architectures or network communication protocols for network security for authentication of entities using biometrical features, e.g. fingerprint, retina-scan

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Health & Medical Sciences (AREA)
  • Biomedical Technology (AREA)
  • General Health & Medical Sciences (AREA)
  • Measurement Of The Respiration, Hearing Ability, Form, And Blood Characteristics Of Living Organisms (AREA)

Abstract

The invention provides an authorization authentication method, device and system. The authorization authentication method comprises the steps that first equipment establishes communication connection with second equipment through a biological limb after the biological limb enters the preset range of the first equipment; the first equipment receives information under authorization transmitted by the second equipment through communication connection, wherein the information under authorization includes digital authentication information; the first equipment acquires biological characteristic information of the biological limb in time duration when the biological limb enters the preset range of the first equipment; and the first equipment acquires an authentication result of the digital authentication information and the biological characteristic information, and the first equipment performs authorization operation if the authentication result of authentication of the digital authentication information and the biological characteristic information indicates passing of authentication. With application of the authorization authentication method, the behavior of other people of pretending to be the user to pass authorization through wristwatches and other electronic equipment can be prevented so that the security of information and property can be guaranteed.

Description

A kind of authorization and authentication method, device and system
Technical field
The present invention relates to a kind of electronic technology field, particularly relate to a kind of authorization and authentication method, device and system.
Background technology
Electronic equipment is used to obtain some particular place (for example, Administrative Area, security areas etc.), website log, individual user During the mandate of people's article (automobile, safety cabinet etc.), dangerous goods etc., electronic equipment be arranged on these places, personal belongings or Electronic system in dangerous goods sets up communication connection, then the key of storage is sent to electronic system, and electronic system is to key It is authenticated.As can be seen here, this authorization of the prior art, other people can use others' electronic equipment and then obtain Must authorize, and then perform illegal operation, cause property, the information etc. of user to lose.
Content of the invention
Present invention seek to address that one of the problems referred to above.
A kind of authorization and authentication method of offer is provided.
Another object of the present invention is to provide a kind of authorization identifying device.
A further object of the present invention is to provide a kind of authorization identifying system.
For reaching above-mentioned purpose, technical scheme is specifically achieved in that
One aspect of the present invention provides a kind of authorization and authentication method, comprising: after biological limbs enter the preset range of the first equipment, Described first equipment sets up communication connection by described biological limbs and the second equipment;Described first equipment is by described communication connection Receive the authorization message for the treatment of of described second device transmission, described treat that authorization message includes: digital certificate information;At described biological limb In the duration of the preset range that body enters the first equipment, described first equipment gathers the biological information of described biological limbs; Described first equipment obtains authentication result to described digital certificate information and described biological information certification, if to described The authentication result of digital certificate information and described biological information certification is that certification is passed through, then described first equipment performs mandate Operation.
Additionally, described biological information includes: finger print information and/or venous information;Described first equipment gathers described biological limb The biological information of body includes: in the case that described biological limbs contact with described first equipment, the first equipment gathers described The described biological information of the contact site of biological limbs and described first equipment.
Additionally, described first equipment obtains the authentication result bag to described digital certificate information and described biological information certification Include: described digital certificate information and described biological information are authenticated by described first equipment, it is thus achieved that described authentication result.
Include additionally, described first equipment obtains the authentication result to described digital certificate information and described biological information: Described first equipment sends described biological information and described digital certificate information to backstage;Described first equipment receives described The described authentication result that backstage sends, wherein: described authentication result is that described backstage is to described digital certificate information and described life Thing characteristic information is authenticated, it is thus achieved that authentication result.
Additionally, described treat that authorization message also includes: identification information;Described to described digital certificate information and described biological characteristic Authentification of message includes: be authenticated described digital certificate information and described biological information according to described identification information.
Additionally, be authenticated including to described digital certificate information and described biological information according to described identification information: obtain Take the described identification information corresponding certification factor and biological characteristic validation information, and utilize digital authenticating described in described certification factor pair Information carries out digital authenticating and detects the matching rate of described biological characteristic validation information and described biological information, wherein, institute State authentication result be certification by including: utilize digital certificate information described in described certification factor pair carry out digital authenticating by and When the matching rate of described biological information and described biological characteristic validation information is more than preset value, described authentication result is that certification is led to Cross.
Additionally, described utilize digital certificate information described in described certification factor pair carry out digital authenticating and detect described biological characteristic Checking information includes with the matching rate of described biological information:
Digital certificate information described in described certification factor pair is utilized to be authenticated, when described digital certificate information certification is passed through, Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information;Or
Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information, when judging When stating the matching rate of biological information and described biological characteristic validation information more than preset value, utilize described in described certification factor pair Digital certificate information is authenticated.
Additionally, the electronic signature information that described digital certificate information obtains after including utilizing private key signature, the described certification factor includes Carry out the PKI of sign test to described electronic signature information;Described digital certificate information described in described certification factor pair is utilized to be authenticated Including: utilize described PKI to carry out sign test to described electronic signature information;And/or described digital certificate information includes utilizing symmetrical close The calculated MAC value of key, the described certification factor includes the symmetric key calculating described MAC value;Described utilize described certification Digital certificate information described in factor pair is authenticated including: utilizes described symmetric key to calculate MAC check value, verifies described MAC Value and MAC check value;And/or described digital certificate information includes the dynamic password that utilizes seed key to generate, described certification because of Attached bag includes the seed key of the described dynamic password of described checking;Described digital certificate information described in described certification factor pair is utilized to carry out Certification includes: utilize described seed key to verify described dynamic password.
Also a kind of authorization identifying device of another aspect of the present invention, comprising: connecting unit, enters authorization identifying device at biological limbs Preset range after, for setting up communication connection by described biological limbs and described identity recognition device;Receiving unit, is used for Received the authorization message for the treatment of of described identity recognition device transmission by described communication connection, described treat that authorization message includes: numeral is recognized Card information;Collecting unit, within the duration of the preset range that described biological limbs enter authorization identifying device, is used for gathering The biological information of described biological limbs;Performance element, for obtaining to described digital certificate information and described biological characteristic The authentication result of authentification of message, if to the authentication result of described digital certificate information and described biological information certification for recognizing Card passes through, then perform Authorized operation.
Additionally, described biological information includes: finger print information and/or venous information;Described collecting unit, at described biological limb In the case that body contacts with described authorization identifying device, for gathering the contact site of described biological limbs and described authorization identifying device The described biological information of position.
Additionally, described performance element, specifically for described digital certificate information and described biological information are authenticated, Obtain described authentication result.
Additionally, described performance element, specifically for sending described biological information and described digital certificate information to backstage, And receive the described authentication result that described backstage sends, wherein: described authentication result is that described backstage is to described digital certificate information And described biological information is authenticated, it is thus achieved that authentication result.
Additionally, described treat that authorization message also includes: identification information;Described to described digital certificate information and described biological characteristic Authentification of message includes: be authenticated described digital certificate information and described biological information according to described identification information.
Additionally, be authenticated including to described digital certificate information and described biological information according to described identification information: obtain Take the described identification information corresponding certification factor and biological characteristic validation information, and utilize digital authenticating described in described certification factor pair Information carries out digital authenticating and detects the matching rate of described biological characteristic validation information and described biological information, wherein, institute State authentication result be certification by including: utilize digital certificate information described in described certification factor pair carry out digital authenticating by and When the matching rate of described biological information and described biological characteristic validation information is more than preset value, described authentication result is that certification is led to Cross.
Additionally, described utilize digital certificate information described in described certification factor pair carry out digital authenticating and detect described biological characteristic Checking information includes with the matching rate of described biological information: utilize digital certificate information described in described certification factor pair to recognize Card, when passing through to described digital certificate information certification, it is judged that described biological information and described biological characteristic validation information Whether matching rate is more than preset value;Or judge that whether described biological information is big with the matching rate of described biological characteristic validation information In preset value, when judging that the matching rate with described biological characteristic validation information for the described biological information is more than preset value, profit It is authenticated with digital certificate information described in described certification factor pair.
Additionally, the electronic signature information that described digital certificate information obtains after including utilizing private key signature, the described certification factor includes Carry out the PKI of sign test to described electronic signature information;Described digital certificate information described in described certification factor pair is utilized to be authenticated Including: utilize described PKI to carry out sign test to described electronic signature information;And/or described digital certificate information includes utilizing symmetrical close The calculated MAC value of key, the described certification factor includes the symmetric key calculating described MAC value;Described utilize described certification Digital certificate information described in factor pair is authenticated including: utilizes described symmetric key to calculate MAC check value, verifies described MAC Value and MAC check value;And/or described digital certificate information includes the dynamic password that utilizes seed key to generate, described certification because of Attached bag includes the seed key of the described dynamic password of described checking;Described digital certificate information described in described certification factor pair is utilized to carry out Certification includes: utilize described seed key to verify described dynamic password.
Another aspect of the invention also provides a kind of authorization identifying system, comprising: identity recognition device and such as claim 9-16 institute The authorization identifying device stated;Described identity recognition device, for sending institute by described communication connection to described authorization identifying device State and treat authorization message.
Additionally, described system also includes: backstage, for receive described authorization identifying device send described biological information with And described digital certificate information, described digital certificate information and described biological information are authenticated, it is thus achieved that authentication result, And send described authentication result to described authorization identifying device.
As seen from the above technical solution provided by the invention, the invention provides a kind of authorization and authentication method, Apparatus and system, The digital certificate information of the electronic equipments such as watch and the biological information of human body can be verified by this authorization and authentication method, it is ensured that The digital certificate information verified and the relevance of biological information and uniformity, in the authorization and authentication method of the present invention, Checking to digital certificate information and the checking to human body biological characteristic information complete in the operation of one-time continuous, and once separately two Secondary carry out, the unsuccessful of checking can be caused such that it is able to prevent other people from utilizing the electronic equipments such as watch to pretend to be user to pass through to authorize, Ensure that the safety of information and property.Additionally, the present invention by human body live body as transmission conductor, can be effectively prevented illegal Molecule utilizes other people electronic equipment and biological information to come by authorizing.Additionally, use the authorization and authentication method of the present invention, User can need the multiple digital authenticating key informations using be stored in the electronic equipment that watch etc. is carried with, and electronics sets For digital certificate information is sent to certification end automatically, user only need to gather biological information can complete to be authorized to operation, side Just quick and safe.
Brief description
In order to be illustrated more clearly that the technical scheme of the embodiment of the present invention, the accompanying drawing of required use in embodiment being described below It is briefly described, it should be apparent that, the accompanying drawing in describing below is only some embodiments of the present invention, for this area From the point of view of those of ordinary skill, on the premise of not paying creative work, other accompanying drawings can also be obtained according to these accompanying drawings.
The flow chart of the authorization and authentication method that Fig. 1 provides for the embodiment of the present invention 1;
The structural representation of the authorization identifying device that Fig. 2 provides for the embodiment of the present invention 1;
The structural representation of the authorization identifying system that Fig. 3 provides for the embodiment of the present invention 1.
Detailed description of the invention
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, Obviously, described embodiment is only a part of embodiment of the present invention, rather than whole embodiments.Reality based on the present invention Execute example, the every other embodiment that those of ordinary skill in the art are obtained under the premise of not making creative work, broadly fall into Protection scope of the present invention.
In describing the invention, it is to be understood that term " " center ", " longitudinally ", " laterally ", " on ", D score, " front ", The orientation of the instruction such as " afterwards ", "left", "right", " vertically ", " level ", " top ", " end ", " interior ", " outward " or position relationship are base It in orientation shown in the drawings or position relationship, is for only for ease of the description present invention and simplifies description, rather than instruction or hint institute The device that refers to or element must have specific orientation, with specific azimuth configuration and operation, therefore it is not intended that to the present invention Restriction.Additionally, term " first ", " second " are only used for describing purpose, and it is not intended that instruction or hint relative importance Or quantity or position.
In describing the invention, it should be noted that unless otherwise clearly defined and limited, term " install ", " being connected ", " connect " and should be interpreted broadly, for example, it may be fixing connect, it is also possible to be to removably connect, or be integrally connected;Permissible It is to be mechanically connected, it is also possible to be electrical connection;Can be to be joined directly together, it is also possible to be indirectly connected to by intermediary, can be two The connection of individual element internal.For the ordinary skill in the art, above-mentioned term can be understood in the present invention with concrete condition In concrete meaning.
Below in conjunction with accompanying drawing, the embodiment of the present invention is described in further detail.
Utilize biological limbs to communicate in the present invention, i.e. utilize biological limbs to bring the both devices of communication into body area network In the range of.So-called body area network (Body Area Network is called for short BAN) is exactly centered on human body, by related with human body Network element (include personal terminal, be distributed on the person, on clothing, human peripheral's certain distance scope as in 3~5 meters, Sensor even within the person, networking equipment) etc. composition communication network, therefore, only related with human body network element Element enters in this preset range of communication equipment, and the human body communication that could set up body area network connects.
Embodiment 1
The present invention provides a kind of authorization and authentication method, as shown in Figure 1, comprising:
Step S101, after biological limbs enter the preset range of the first equipment, the first equipment is by biological limbs and the second equipment Set up communication connection.
In specific embodiment, the first equipment possesses physical characteristics collecting function, and can be with the second equipment by biological limbs Communicate.First equipment may be used for place (Administrative Area, security areas), website log, personal belongings (automobile, Safety cabinet etc.), the entrance of dangerous goods etc. or use authority be managed, the first equipment can be used for performing transaction, for example may be used Be access-control card reader, intelligent automobile lock, safe lock, dangerous goods manager, with bio-identification function computer, ATM and POS etc..
It is outside (be worn on live body or carry at live body periphery) that second equipment is positioned over live body (including human body, animal body etc.) Or implant in live body body, for example, the second equipment can be wearable device (intelligent wristwatch, intelligent glasses etc.), smart mobile phone, Implant intravital sensing equipment etc..When the second equipment is in (can for example be worn on wrist, neck in communication range with biological limbs Neck) when, the second equipment and live body set up human body communication channel, and biological limbs can be equivalent to the extended antenna of the second equipment, when When detection side detects biological limbs, be i.e. equivalent to this second equipment be detected.
First equipment is when utilizing human body channel to communicate, and it has default communication range, when the life carrying the second equipment When thing limbs enter into its communication range, the first equipment can detect biological limbs, and the second equipment is extended by this biology limbs Antenna, it is also possible to the first equipment detected.Certainly, above-mentioned first equipment and the second equipment can also support the wired of other or Person's communication.
In a particular embodiment, the first equipment and the second equipment by biological limbs set up body area network (Body Area Network, BAN), utilize biological limbs to set up live body communication channel, thus realize transmitting the first equipment and the second equipment by biological limbs Between data, it is achieved utilize live body to communicate.It is permissible that first equipment sets up communication connection by biological limbs and the second equipment By wired mode and wireless mode, specifically, at least can be realized by one of following two mode:
Wired mode: the first equipment and the second equipment are equipped with electrode, the first equipment is interior with implantation human body or is worn on human body body On biological extremity (finger is contacted POS by the user for example, wearing watch) of the second equipment when, human body is made For conductor, the electrode connection of both sides forms the path in human body, and the path in this human body can be simple line mode, it is also possible to Current coupling mode, thus realize the communication of wired mode.Now the first equipment needs the biological limbs with the second equipment of wearing Contact, is changed by level or signal is transmitted in waveguide, thus completes communication.
Whether the electric field that wireless mode: in wireless mode, the first equipment and the second equipment all can detect surrounding sends change, If communication counterpart enters into human body communication permission, just can detect that field intensity changes, and sets up communication connection with the other side.
Additionally, in terms of the initiation of communication, the first equipment can be detected the second equipment in real time, main after the second equipment being detected Dynamic initiation communicates;Also the second equipment can be carried out active detecting the first equipment, thus actively initiate communication.
Aforesaid way utilizes human body as the transmission medium of the signal of telecommunication, it is achieved body surface, internal and the setting of human peripheral (3~5 meters) Standby information is mutual.Compared with traditional bluetooth, WIFI, radio frequency and the wireless communication technology such as infrared, believe during human body communication Number through human body transmission, thus electromagnetic noise is very little on its impact, has low-power consumption, high security and the infringement of lower human body Etc. advantage.Additionally due to there is not the problem that many people communication efficiency rate reduces, it is possible to the line exempting wire communication mode redundancy is stranded Disturb.
Step S102, the first equipment by communication connection receive the second device transmission treat authorization message, treat that authorization message includes: Digital certificate information.
In specific embodiment, the second equipment can be oneself to generate waiting for transmission to be sent to the first equipment after authorization message, Also can be received by the second equipment and after authorization message, be sent to the first equipment until what authorization message generating means was sent.This waits to authorize Including the information for carrying out digital authenticating in information, for example, this digital certificate information can be to utilize acquisition after private key signature Electronic signature information (when this electronic signature information is by when authorization message generating means generates, now this treats that authorization message generates Device can be the device such as electronic signature equipment, USBkey);This digital certificate information can be to utilize symmetric key to be calculated MAC value (when this MAC value is by when authorization message generating means generates, now this treats that authorization message generating means can be The devices such as cipher machine);This digital certificate information can be seed key generate dynamic password (when this dynamic password by wait authorize letter When breath generating means generates, now this treats that authorization message generating means can be the devices such as OTP).
This treats that authorization message can also include representing the information (such as product ID etc.) of the second equipment, holder's identity information, use The information such as family account number.
Certainly, the second equipment can send this by broadcast mode and treat authorization message, it is also possible in the mandate receiving the first equipment Send to the second equipment again after solicited message and treat authorization message.
Step S103, within the duration of the preset range that biological limbs enter the first equipment, the first equipment gathers biological limbs Biological information;In specific embodiment, biological information include finger print information, iris information, face information and The information such as venous information.This first equipment is provided with the module for gathering biological information, for example, finger print acquisition module, For in enter into the default communication range of the first equipment at the finger of human body and when touching the finger print acquisition module of the first equipment, Gather the fingerprint of this finger, and for example, venous collection module, for entering into the default communication model of the first equipment in the wrist of human body Enclose interior and when touching venous collection module, gather the venous information in this wrist, also such as, iris capturing module, be used for When human eye enters in the default communication range of the first equipment and is positioned at iris capturing region, gather the iris information of this human eye, Also such as, face recognition module, for entering in the default communication range of the first equipment at face and being positioned at face acquisition zone During territory, gather the face information of this face.
In an embodiment of the invention, when biological information is finger print information and/or venous information;First equipment is adopted The biological information of the biological limbs of collection includes: in the case of biological limbs and the contact of the first equipment, the first equipment gathers biology The biological information of the contact site of limbs and the first equipment.
Specifically, when biological information is finger print information or venous information, the first equipment needs to contact the biological limb of user Body just can collect corresponding biological information, and user gathers fingerprint or venous information by active exposure the first equipment, keeps away Exempted from people other users of how crowded occasion carelessly by when the mistake communication that causes, it is ensured that the uniqueness of communication and security, Have expressed true intention and the true identity of user simultaneously.
The biological information This move that first equipment gathers biological limbs can set up communication at the first equipment and the second equipment Time-continuing process completes, it is also possible to completed before setting up communication at the first equipment and the second equipment.As long as ensureing to gather biological limb It is to complete in the operation of one-time continuous that the biological information of body communicates with mandate, thus ensures that send treats authorization message Uniformity with biological information.
It should be noted that step 103 does not exist sequencing with the execution of step 101 and step 102, step 103 is permissible Perform before step 102 after step 101, it is also possible to perform with step 102 simultaneously, can also hold after step 102 OK.
Step S104, the first equipment obtains the authentication result to digital certificate information and biological information certification, if logarithm The authentication result of word authentication information and biological information certification is that certification is passed through, then the first equipment performs Authorized operation.Specifically , when the first equipment can utilize the information self prestoring to be authenticated digital certificate information and biological information, it is possible to With the backstage that digital certificate information and biological information are sent to be attached thereto, utilize backstage to digital certificate information and Biological information is authenticated.When the result that access authentication passes through, then the first equipment performs corresponding Authorized operation, as awarded Power Website login, mandate are opened gate inhibition, are authorized and open some equipment (automobile, gun etc.).
In the detailed description of the invention of the present invention, the first equipment obtains to be recognized to digital certificate information and biological information certification Card result can complete through but not limited in the following manner:
Digital certificate information and biological information are authenticated by mode the first, the first equipment, it is thus achieved that authentication result.Concrete next Saying, the first equipment can be stored with the key related to digital authenticating and biological characteristic and other information, is provided simultaneously with to numeral The functional module that authentication information and biological information are authenticated, can complete whole verification process, voluntarily such that it is able to carry The high efficiency authorizing, and owing to the first equipment can be with complete independently mandate, it is ensured that the security of mandate.For example, when this first When equipment is the equipment such as access card card reader, safe lock, access card card reader, safe lock etc. are completed authentication function voluntarily, The user holding effective authorization message can be allowed quickly, safely, conveniently to open these equipment.
Mode the 2nd, the first equipment sends biological information and digital certificate information to backstage;First equipment receives backstage and sends Authentication result, wherein: authentication result is that digital certificate information and biological information are authenticated by backstage, it is thus achieved that recognize Card result.Specifically, the first equipment can be only completed the collection to biological information and the communication with the second equipment, and Transferring to backstage to complete the process of certification, backstage possesses faster arithmetic speed, can be rapidly completed the computing of complexity.Additionally, By separated to collecting part and authentication section, it is also ensured that the security of system.
By the authorization and authentication method of the present invention, the digital certificate information of the electronic equipments such as watch and the biological special of human body can be verified Reference ceases, it is ensured that the digital certificate information verified and the relevance of biological information and uniformity, in the mandate of the present invention In authentication method, the checking to digital certificate information and the checking to human body biological characteristic information complete in the operation of one-time continuous, Once separately carry out twice, the unsuccessful of checking can be caused such that it is able to prevent other people from utilizing the electronic equipments such as watch to pretend to be user By authorizing, it is ensured that the safety of information and property.Additionally, the present invention by human body live body as transmission conductor, can be effective Prevent illegal molecule from utilizing other people electronic equipment and biological information to come by authorizing.Additionally, use the mandate of the present invention User can be needed the multiple digital authenticating key informations using to be stored in the electronics that watch etc. carries with and set by authentication method Standby, digital certificate information is sent to certification end by electronic equipment automatically, and user only need to gather biological information and can complete to be awarded Power operation, convenient and swift safety.
In an embodiment of the invention, treat that authorization message also includes: identification information;To digital certificate information and biology Characteristic information certification includes: be authenticated digital certificate information and biological information according to identification information.Specifically, First equipment get second equipment send come until authorization message when, this treats to further comprises for indicating acquisition in authorization message Identification information to the key message that digital certificate information and biological information are authenticated, identification information can be sequence number, The mode such as title, call number.Can be with quick obtaining to for digital certificate information and biological information certification by identification information Key message, improve the speed of certification and efficiency.
In an embodiment of the invention, according to identification information, digital certificate information and biological information are authenticated Including: obtain the identification information corresponding certification factor and biological characteristic validation information, and utilize certification factor pair digital certificate information Carrying out the matching rate of digital authenticating and detection biological characteristic validation information and biological information, wherein, authentication result is certification By including: utilize certification factor pair digital certificate information carry out digital authenticating by and biological information test with biological characteristic When the matching rate of card information is more than preset value, authentication result is that certification is passed through.Concrete, can index according to identification information or Look into find out rapidly with the digital certificate information corresponding certification factor and with biological information corresponding biological characteristic validation information, For example, when digital certificate information is an electronic signature information, this identification information may refer to show find corresponding for verifying The PKI of signature, this PKI can directly deposit or leave in digital certificate, and this identification information can identify the volume of this PKI Number or the numbering of digital certificate so that the equipment that must verify can be quickly found out corresponding PKI from database; When the biological information getting is finger print information, this identification information can be the numbering of this finger print information or hold this and refer to The numbering of the user of line information, such that it is able to got the corresponding certification factor and biological characteristic quickly and accurately by identification information Checking information.During digital certificate information and biological information are authenticated, can first digital certificate information be entered Row certification, it is also possible to be first authenticated biological information, it is also possible to be simultaneously authenticated, only when the certification knot to both Fruit be by when, just determination authentication result be that certification is passed through.
At present to the verification mode of biological information mainly by setting matching rate, it is judged that the biological information collecting with Biological characteristic validation information is compared, and when matching rate is more than certain value, then is judged as being verified.And due to present biology The restriction of identification technology, although arranging the authenticity that high matching rate may insure that result, but high matching rate often often makes Real user is judged to erroneous user or recognition failures by mistake thus refuses to authorize, cause the operation inconvenience of user.For example, existing Having in technology, (for example, detection biological characteristic validation information be more than specified threshold with the matching rate of the biological information receiving 99%th, 90% etc.) when, then it is assumed that biometric authentication information certification is passed through.For avoiding the occurrence of the feelings also by certification for the disabled user Condition, in prior art, this specified threshold generally arranges higher, now easily occurs that validated user None-identified causes certification to be lost The problem losing.The application is in order to reduce the probability of validated user authentification failure, and the preset value taked is less than spy of the prior art Determine threshold value, when (for example, the matching rate of the described biological characteristic validation information of detection and described biological information is more than preset value Matching rate be more than preset value but be less than specified threshold of the prior art) when, by combine above-mentioned utilize described digital authenticating because of The result that son carries out digital authenticating to described information to be certified determines final authentication result.The biological characteristic utilizing the present invention is believed Breath and digital certificate information double verification, due to the strong authentication effect of digital authenticating, can be by the matching rate to biological characteristic authentication Arrange lower than the biological characteristic authentication matching rate of general device, thus reduce that to carry the user of true biological characteristic misjudged Probability for erroneous user or recognition failures.
In an embodiment of the invention, certification factor pair digital certificate information is utilized to carry out digital authenticating and detection biology Signature verification information includes with the matching rate of biological information: utilize certification factor pair digital certificate information to be authenticated, when right When digital certificate information certification is passed through, it is judged that whether biological information is more than preset value with the matching rate of biological characteristic validation information; Or judge whether the matching rate of biological information and biological characteristic validation information is more than preset value, when judging biological information When being more than preset value with the matching rate of biological characteristic validation information, certification factor pair digital certificate information is utilized to be authenticated.Specifically , during digital certificate information and biological information are authenticated, first digital certificate information is authenticated, can With the guarantee of the digital authenticating by strong authentication effect, reduce the identified failed probability of truly legal user, and when number Word certification not over when, it is not necessary to again biological information is verified, simplifies flow process;And in the ban to biometric authentication information When being authenticated, by biological information is verified, personator can be identified, thus recognize without carrying out follow-up numeral again Card flow process, simplifies flow process.
In the detailed description of the invention of the present invention, the certification to digital certificate information can include but is not limited to following one or several The mode of kind:
The electronic signature information that mode the first, digital certificate information obtains after including utilizing private key signature, the certification factor includes to electronics Signing messages carries out the PKI of sign test;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize PKI to electronics label Name information carries out sign test;Concrete, in which, digital authenticating is electron underwriting authentication, and the generating mode of electronic signature information can To use private key to sign preset value (such as random number etc.), obtain signature value, using signature value and preset value as electronics label Name information.May insure that this digital authenticating have passed through the true mandate of user by electron underwriting authentication, and have and prevent user couple The function that the operation performing is gone back on one's word and denied.
Mode the 2nd, digital certificate information includes utilizing the calculated MAC value of symmetric key, and the certification factor includes calculating MAC The symmetric key of value;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize symmetric key to calculate MAC verification Value, checking MAC value and MAC check value;Concrete, in which, digital authenticating is for utilizing symmetric key to add information After close, utilized symmetric key to be decrypted information by authentication, utilize for example with symmetry algorithm (such as MAC calculating) Preset value is encrypted and obtains ciphertext value (such as MAC value) by symmetric key, using ciphertext value and preset value as cipher-text information, Can ensure that, by which, the security that data are transmitted, improve the safety of communication, the symmetry that simultaneously can also be prestored by both sides is close The identity of user verified by key.
Mode the 3rd, digital certificate information includes the dynamic password utilizing seed key to generate, and the certification factor includes verifying dynamic password Seed key;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize seed key to test dynamic password Card.Concrete, which utilizes dynamic password to verify identity, can based on the time or based on challenging value generate dynamic Password, can be verified the true identity of user by this dynamic password, it is ensured that the security of mandate.
The present embodiment also provides a kind of authorization identifying device 20, as shown in Figure 2.This authorization identifying device 20 is authorization identifying side The corresponding device of method, this authorization identifying device 20 is equivalent to the first equipment in authorization and authentication method, and identity recognition device 30 Be equivalent to the second equipment in authorization and authentication method.Only the structure of this authorization identifying device 20 is briefly described at this, remaining Part to the greatest extent is not with reference to the description to authorization and authentication method.This authorization identifying device 20 includes:
Connecting unit 201, after biological limbs enter the preset range of authorization identifying device 20, for by biological limbs and body Part identifies that device 30 sets up communication connection;
Receiving unit 202, is treated authorization message for transmitted by communication connection reception identity recognition device 30, treats authorization message Including: digital certificate information;
Collecting unit 203, within the duration of the preset range that biological limbs enter authorization identifying device 20, is used for gathering life The biological information of thing limbs;
Performance element 204, for the authentication result to digital certificate information and biological information certification for the acquisition, if logarithm The authentication result of word authentication information and biological information certification is that certification is passed through, then perform Authorized operation.
In an embodiment of the invention, biological information includes: finger print information and/or venous information;
Collecting unit 203, in the case that biological limbs contact with authorization identifying device 20, is used for gathering biological limbs and mandate The biological information of the contact site of authentication device 20.
In an embodiment of the invention, performance element 204 obtains to digital certificate information and biological information certification Authentication result can complete through but not limited to following two mode:
Mode the first, performance element 204, specifically for being authenticated to digital certificate information and biological information, it is thus achieved that recognize Card result.
Mode the 2nd, performance element 204, specifically for sending biological information and digital certificate information to backstage 40, and connect Receive the authentication result that backstage sends, wherein: authentication result is that digital certificate information and biological information are recognized by backstage 40 Card, it is thus achieved that authentication result.
In an embodiment of the invention, treat that authorization message also includes: identification information;To digital certificate information and biology Characteristic information certification includes: be authenticated digital certificate information and biological information according to identification information.
In an embodiment of the invention, according to identification information, digital certificate information and biological information are authenticated Including: obtain the identification information corresponding certification factor and biological characteristic validation information, and utilize certification factor pair digital certificate information Carrying out the matching rate of digital authenticating and detection biological characteristic validation information and biological information, wherein, authentication result is certification By including: utilize certification factor pair digital certificate information carry out digital authenticating by and biological information test with biological characteristic When the matching rate of card information is more than preset value, authentication result is that certification is passed through.
In an embodiment of the invention, certification factor pair digital certificate information is utilized to carry out digital authenticating and detection biology Signature verification information includes with the matching rate of biological information:
Certification factor pair digital certificate information is utilized to be authenticated, when passing through digital certificate information certification, it is judged that biological characteristic Whether information is more than preset value with the matching rate of biological characteristic validation information;Or
Judge whether the matching rate of biological information and biological characteristic validation information is more than preset value, when judging that biological characteristic is believed When the matching rate of breath and biological characteristic validation information is more than preset value, certification factor pair digital certificate information is utilized to be authenticated.
In an embodiment of the invention, it is authenticated to digital certificate information to complete through but not limited in the following manner:
The electronic signature information that mode the first, digital certificate information obtains after including utilizing private key signature, the certification factor includes to electronics Signing messages carries out the PKI of sign test;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize PKI to electronics label Name information carries out sign test;And/or
Mode the 2nd, digital certificate information includes utilizing the calculated MAC value of symmetric key, and the certification factor includes calculating MAC The symmetric key of value;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize symmetric key to calculate MAC verification Value, checking MAC value and MAC check value;And/or
Mode the 3rd, digital certificate information includes the dynamic password utilizing seed key to generate, and the certification factor includes verifying dynamic password Seed key;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize seed key to test dynamic password Card.
The present embodiment also provides a kind of authorization identifying system, as it is shown on figure 3, this authorization identifying system includes aforesaid identification Device 30 and aforesaid authorization identifying device 20;
Identity recognition device 30, for treating authorization message by communication connection to authorization identifying device 20 transmission.
In an embodiment of the invention, authorization identifying system also includes: backstage 40, is used for receiving authorization identifying device 20 The biological information sending and digital certificate information, be authenticated to digital certificate information and biological information, it is thus achieved that Authentication result, and send authentication result to authorization identifying device 20.
Any process described otherwise above or method describe and are construed as in flow chart or at this, represent include one or More are for realizing module, fragment or the part of the code of the executable instruction of the step of specific logical function or process, and The scope of the preferred embodiment of the present invention includes other realization, wherein can not press order that is shown or that discuss, including root According to involved function while basic in the way of or in the opposite order, perform function, this should be by embodiments of the invention institute Belong to those skilled in the art to be understood.
It should be appreciated that each several part of the present invention can be realized by hardware, software, firmware or combinations thereof.In above-mentioned enforcement In mode, software that multiple steps or method can be performed in memory and by suitable instruction execution system by storage or firmware Realize.For example, if realized with hardware, and the same in another embodiment, can use following technology well known in the art In any one or their combination realize: have and patrol for the discrete of logic gates realizing logic function to data-signal Collect circuit, there is the special IC of suitable combinational logic gate circuit, programmable gate array (PGA), field programmable gate Array (FPGA) etc..
Those skilled in the art are appreciated that and realize that all or part of step that above-described embodiment method is carried is permissible Instructing related hardware by program to complete, described program can be stored in a kind of computer-readable recording medium, this journey Sequence upon execution, including one or a combination set of step of embodiment of the method.
Additionally, each functional unit in each embodiment of the present invention can be integrated in a processing module, it is also possible to be each Unit is individually physically present, it is also possible to two or more unit are integrated in a module.Above-mentioned integrated module is both permissible The form using hardware realizes, it would however also be possible to employ the form of software function module realizes.If described integrated module is with software work( Can the form of module realize and as independent production marketing or when using, it is also possible to be stored in the storage of embodied on computer readable and be situated between In matter.
Storage medium mentioned above can be read-only storage, disk or CD etc..
In the description of this specification, reference term " embodiment ", " some embodiments ", " example ", " specific example ", Or specific features, structure, material or the feature that the description of " some examples " etc. means to combine this embodiment or example describes comprises In at least one embodiment or example of the present invention.In this manual, the schematic representation of above-mentioned term is not necessarily referred to It is identical embodiment or example.And, the specific features of description, structure, material or feature can at any one or Multiple embodiments or example combine in an appropriate manner.
Although above it has been shown and described that embodiments of the invention, it is to be understood that above-described embodiment is exemplary, Being not considered as limiting the invention, those of ordinary skill in the art is in the case of without departing from the principle of the present invention and objective Above-described embodiment can be changed within the scope of the invention, change, replace and modification.The scope of the present invention is by appended power Profit requires and equivalent restriction.

Claims (18)

1. an authorization and authentication method, it is characterised in that include:
After biological limbs enter the preset range of the first equipment, described first equipment is built by described biological limbs and the second equipment Vertical communication connection;
Described first equipment receives the authorization message for the treatment of of described second device transmission by described communication connection, described treats authorization message Including: digital certificate information;
Within the duration of the preset range that described biological limbs enter the first equipment, described first equipment gathers described biological limb The biological information of body;
Described first equipment obtains the authentication result to described digital certificate information and described biological information certification, if right The authentication result of described digital certificate information and described biological information certification is that certification is passed through, then described first equipment performs Authorized operation.
2. method according to claim 1, it is characterised in that
Described biological information includes: finger print information and/or venous information;
The biological information that described first equipment gathers described biological limbs includes:
In the case that described biological limbs contact with described first equipment, the first equipment gathers described biological limbs and described first The described biological information of the contact site of equipment.
3. method according to claim 1 and 2, it is characterised in that described first equipment obtains to be believed to described digital authenticating The authentication result of breath and described biological information certification includes:
Described digital certificate information and described biological information are authenticated by described first equipment, it is thus achieved that described authentication result.
4. method according to claim 1 and 2, it is characterised in that described first equipment obtains to be believed to described digital authenticating The authentication result of breath and described biological information includes:
Described first equipment sends described biological information and described digital certificate information to backstage;
Described first equipment receives the described authentication result that described backstage sends, wherein: described authentication result is that described backstage is to institute State digital certificate information and described biological information be authenticated, it is thus achieved that authentication result.
5. the method according to claim 3 or 4, it is characterised in that described treat that authorization message also includes: identification information;
Described described digital certificate information and described biological information certification are included:
According to described identification information, described digital certificate information and described biological information are authenticated.
6. method according to claim 5, it is characterised in that according to described identification information to described digital certificate information with And described biological information is authenticated including:
Obtain the described identification information corresponding certification factor and biological characteristic validation information, and utilize number described in described certification factor pair Word authentication information carries out digital authenticating and detects the matching rate of described biological characteristic validation information and described biological information, its In, described authentication result be certification by including: carry out digital authenticating utilizing digital certificate information described in described certification factor pair By and the matching rate of described biological information and described biological characteristic validation information more than preset value when, described authentication result is Certification is passed through.
7. method according to claim 6, it is characterised in that described utilize described in described certification factor pair digital authenticating letter Cease and carry out digital authenticating and detect described biological characteristic validation information including with the matching rate of described biological information:
Digital certificate information described in described certification factor pair is utilized to be authenticated, when described digital certificate information certification is passed through, Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information;Or
Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information, when judging When stating the matching rate of biological information and described biological characteristic validation information more than preset value, utilize described in described certification factor pair Digital certificate information is authenticated.
8. the method according to claim 6 or 7, it is characterised in that
The electronic signature information that described digital certificate information obtains after including utilizing private key signature, the described certification factor includes to described Electronic signature information carries out the PKI of sign test;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: Described PKI is utilized to carry out sign test to described electronic signature information;And/or
Described digital certificate information includes utilizing the calculated MAC value of symmetric key, and the described certification factor includes that calculating is described The symmetric key of MAC value;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: it is described right to utilize Claim cipher key calculation MAC check value, verify described MAC value and MAC check value;And/or
Described digital certificate information includes the dynamic password utilizing seed key to generate, and the described certification factor includes that described checking is described The seed key of dynamic password;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: to utilize described Described dynamic password is verified by seed key.
9. an authorization identifying device, it is characterised in that include:
Connecting unit, after biological limbs enter the preset range of authorization identifying device, for by described biological limbs and identity Identify that device sets up communication connection;
Receiving unit, treats authorization message for transmitted by the described identity recognition device of described communication connection reception, and described waiting is awarded Power information includes: digital certificate information;
Collecting unit, within the duration of the preset range that described biological limbs enter authorization identifying device, is used for gathering described The biological information of biological limbs;
Performance element, for the authentication result to described digital certificate information and described biological information certification for the acquisition, if Authentication result to described digital certificate information and described biological information certification is that certification is passed through, then perform Authorized operation.
10. device according to claim 9, it is characterised in that described biological information includes: finger print information and/or Venous information;
Described collecting unit, in the case that described biological limbs contact with described authorization identifying device, is used for gathering described biology The described biological information of the contact site of limbs and described authorization identifying device.
11. devices according to claim 9 or 10, it is characterised in that
Described performance element, specifically for being authenticated to described digital certificate information and described biological information, it is thus achieved that institute State authentication result.
12. devices according to claim 9 or 10, it is characterised in that
Described performance element, specifically for sending described biological information and described digital certificate information to backstage, and receives The described authentication result that described backstage sends, wherein: described authentication result is that described backstage is to described digital certificate information and institute State biological information to be authenticated, it is thus achieved that authentication result.
13. devices according to claim 11 or 12, it is characterised in that described treat that authorization message also includes: mark letter Breath;
Described described digital certificate information and described biological information certification are included:
According to described identification information, described digital certificate information and described biological information are authenticated.
14. devices according to claim 13, it is characterised in that according to described identification information to described digital certificate information And described biological information is authenticated including:
Obtain the described identification information corresponding certification factor and biological characteristic validation information, and utilize number described in described certification factor pair Word authentication information carries out digital authenticating and detects the matching rate of described biological characteristic validation information and described biological information, its In, described authentication result be certification by including: carry out digital authenticating utilizing digital certificate information described in described certification factor pair By and the matching rate of described biological information and described biological characteristic validation information more than preset value when, described authentication result is Certification is passed through.
15. devices according to claim 14, it is characterised in that described utilize digital authenticating described in described certification factor pair Information carries out digital authenticating and detects described biological characteristic validation information and include with the matching rate of described biological information:
Digital certificate information described in described certification factor pair is utilized to be authenticated, when described digital certificate information certification is passed through, Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information;Or
Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information, when judging When stating the matching rate of biological information and described biological characteristic validation information more than preset value, utilize described in described certification factor pair Digital certificate information is authenticated.
16. devices according to claims 14 or 15, it is characterised in that
The electronic signature information that described digital certificate information obtains after including utilizing private key signature, the described certification factor includes to described Electronic signature information carries out the PKI of sign test;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: Described PKI is utilized to carry out sign test to described electronic signature information;And/or
Described digital certificate information includes utilizing the calculated MAC value of symmetric key, and the described certification factor includes that calculating is described The symmetric key of MAC value;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: it is described right to utilize Claim cipher key calculation MAC check value, verify described MAC value and MAC check value;And/or
Described digital certificate information includes the dynamic password utilizing seed key to generate, and the described certification factor includes that described checking is described The seed key of dynamic password;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: to utilize described Described dynamic password is verified by seed key.
17. 1 kinds of authorization identifying systems, it is characterised in that include: identity recognition device and as described in claim 9-16 Authorization identifying device;
Described identity recognition device, for treating authorization message by described communication connection to described in the transmission of described authorization identifying device.
18. systems according to claim 17, it is characterised in that described system also includes:
Backstage, for receiving described biological information and the described digital certificate information that described authorization identifying device sends, right Described digital certificate information and described biological information are authenticated, it is thus achieved that authentication result, and send described authentication result To described authorization identifying device.
CN201610127235.6A 2016-03-07 2016-03-07 Authorization authentication method, device and system Pending CN105991654A (en)

Priority Applications (5)

Application Number Priority Date Filing Date Title
CN201610127235.6A CN105991654A (en) 2016-03-07 2016-03-07 Authorization authentication method, device and system
US16/083,469 US10785218B2 (en) 2016-03-07 2017-03-06 Authorization authentication method, device and system
EP17762505.0A EP3429157A4 (en) 2016-03-07 2017-03-06 Authorization authentication method, device and system
JP2018546887A JP2019512786A (en) 2016-03-07 2017-03-06 Authorization authorization method, authorization device and authorization system
PCT/CN2017/075745 WO2017152819A1 (en) 2016-03-07 2017-03-06 Authorization authentication method, device and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610127235.6A CN105991654A (en) 2016-03-07 2016-03-07 Authorization authentication method, device and system

Publications (1)

Publication Number Publication Date
CN105991654A true CN105991654A (en) 2016-10-05

Family

ID=57043907

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610127235.6A Pending CN105991654A (en) 2016-03-07 2016-03-07 Authorization authentication method, device and system

Country Status (1)

Country Link
CN (1) CN105991654A (en)

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2017152815A1 (en) * 2016-03-07 2017-09-14 李明 Identity authentication method and system
WO2017152819A1 (en) * 2016-03-07 2017-09-14 李明 Authorization authentication method, device and system
CN107240058A (en) * 2017-06-02 2017-10-10 山东卫泰智控科技有限公司 A kind of matching method and device
CN108574662A (en) * 2017-03-09 2018-09-25 李明 A kind of data communications method and system
CN108924136A (en) * 2018-07-03 2018-11-30 北京小米移动软件有限公司 Authorization and authentication method, device and storage medium
CN109167749A (en) * 2017-06-29 2019-01-08 北京嘀嘀无限科技发展有限公司 A kind of identity identifying method and device
CN112883351A (en) * 2021-02-04 2021-06-01 鹏元征信有限公司 Data authorization method, device, authorization platform and storage medium

Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101213559A (en) * 2005-08-05 2008-07-02 夏普株式会社 Communication device and communication system
CN102576264A (en) * 2009-08-18 2012-07-11 罗姆股份有限公司 Input/output device, mobile device, and information displaying device
CN102855567A (en) * 2011-06-29 2013-01-02 现代自动车株式会社 Payment system and method using human body communication
CN103873244A (en) * 2012-12-13 2014-06-18 航天信息股份有限公司 Identity authentication method and system in mobile payment based on fingerprint identification
CN204667407U (en) * 2015-06-09 2015-09-23 武汉天喻信息产业股份有限公司 A kind of wearable device and system realizing safety identification authentication
CN204796894U (en) * 2015-06-19 2015-11-25 曹淼 Intelligent bracelet
US20150358438A1 (en) * 2014-06-05 2015-12-10 Lg Electronics Inc. Watch type mobile terminal
CN105320450A (en) * 2014-06-05 2016-02-10 Lg电子株式会社 Mobile terminal and controlling method thereof

Patent Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101213559A (en) * 2005-08-05 2008-07-02 夏普株式会社 Communication device and communication system
CN102576264A (en) * 2009-08-18 2012-07-11 罗姆股份有限公司 Input/output device, mobile device, and information displaying device
CN102855567A (en) * 2011-06-29 2013-01-02 现代自动车株式会社 Payment system and method using human body communication
CN103873244A (en) * 2012-12-13 2014-06-18 航天信息股份有限公司 Identity authentication method and system in mobile payment based on fingerprint identification
US20150358438A1 (en) * 2014-06-05 2015-12-10 Lg Electronics Inc. Watch type mobile terminal
CN105320450A (en) * 2014-06-05 2016-02-10 Lg电子株式会社 Mobile terminal and controlling method thereof
CN204667407U (en) * 2015-06-09 2015-09-23 武汉天喻信息产业股份有限公司 A kind of wearable device and system realizing safety identification authentication
CN204796894U (en) * 2015-06-19 2015-11-25 曹淼 Intelligent bracelet

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2017152815A1 (en) * 2016-03-07 2017-09-14 李明 Identity authentication method and system
WO2017152819A1 (en) * 2016-03-07 2017-09-14 李明 Authorization authentication method, device and system
US10785218B2 (en) 2016-03-07 2020-09-22 Tendyron Corporation Authorization authentication method, device and system
CN108574662A (en) * 2017-03-09 2018-09-25 李明 A kind of data communications method and system
CN108574662B (en) * 2017-03-09 2021-08-17 李明 Data communication method and system
CN107240058A (en) * 2017-06-02 2017-10-10 山东卫泰智控科技有限公司 A kind of matching method and device
CN109167749A (en) * 2017-06-29 2019-01-08 北京嘀嘀无限科技发展有限公司 A kind of identity identifying method and device
CN108924136A (en) * 2018-07-03 2018-11-30 北京小米移动软件有限公司 Authorization and authentication method, device and storage medium
CN108924136B (en) * 2018-07-03 2021-01-15 北京小米移动软件有限公司 Authorization authentication method, device and storage medium
CN112883351A (en) * 2021-02-04 2021-06-01 鹏元征信有限公司 Data authorization method, device, authorization platform and storage medium

Similar Documents

Publication Publication Date Title
CN105991654A (en) Authorization authentication method, device and system
EP3428818B1 (en) Identity authentication method and system
US11101993B1 (en) Authentication and authorization through derived behavioral credentials using secured paired communication devices
WO2017152818A1 (en) Payment method and system
US12056975B1 (en) System and method for secure pair and unpair processing using a dynamic level of assurance (LOA) score
US20170195322A1 (en) Entry and exit control method and apparatus, and user terminal and server for the same
CN105939336A (en) Identity authentication method and system
CN105991652A (en) Identity authentication method and system
CN105939197A (en) Identity authentication method and system
CN104378211A (en) Identity authentication method and device
CN107222373A (en) Control method, system, terminal, FIDO servers and the safety means of smart home
CN105991653A (en) Identity authentication method and device
US10785218B2 (en) Authorization authentication method, device and system
TW201802718A (en) Non-contact identity verification device and non-contact identity verification system and non-contact identity verification method ensures the protection of personal data
CN105989488B (en) Payment method and system
CN105939195A (en) Transaction method and system
CN105989497A (en) Payment method and system
CN105430149B (en) A kind of terminal user identity determines method and device
US7770787B2 (en) Credential communication device
CN106304052A (en) A kind of method of secure communication, device, terminal and client identification module card
KR20170142983A (en) Method for Providing Appointed Service by using Biometric Information
CN107026732A (en) A kind of system that Password Input number of times is reduced by wearable device
CN105989496A (en) Trading method and equipment
CN105989498A (en) Payment method and system
Khatri et al. Biometrie based authentication and access control techniques to secure mobile cloud computing

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20161005