CN105991654A - Authorization authentication method, device and system - Google Patents
Authorization authentication method, device and system Download PDFInfo
- Publication number
- CN105991654A CN105991654A CN201610127235.6A CN201610127235A CN105991654A CN 105991654 A CN105991654 A CN 105991654A CN 201610127235 A CN201610127235 A CN 201610127235A CN 105991654 A CN105991654 A CN 105991654A
- Authority
- CN
- China
- Prior art keywords
- information
- biological
- digital certificate
- certification
- equipment
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/083—Network architectures or network communication protocols for network security for authentication of entities using passwords
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0861—Network architectures or network communication protocols for network security for authentication of entities using biometrical features, e.g. fingerprint, retina-scan
Landscapes
- Engineering & Computer Science (AREA)
- Computer Hardware Design (AREA)
- Computer Security & Cryptography (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Health & Medical Sciences (AREA)
- Biomedical Technology (AREA)
- General Health & Medical Sciences (AREA)
- Measurement Of The Respiration, Hearing Ability, Form, And Blood Characteristics Of Living Organisms (AREA)
Abstract
The invention provides an authorization authentication method, device and system. The authorization authentication method comprises the steps that first equipment establishes communication connection with second equipment through a biological limb after the biological limb enters the preset range of the first equipment; the first equipment receives information under authorization transmitted by the second equipment through communication connection, wherein the information under authorization includes digital authentication information; the first equipment acquires biological characteristic information of the biological limb in time duration when the biological limb enters the preset range of the first equipment; and the first equipment acquires an authentication result of the digital authentication information and the biological characteristic information, and the first equipment performs authorization operation if the authentication result of authentication of the digital authentication information and the biological characteristic information indicates passing of authentication. With application of the authorization authentication method, the behavior of other people of pretending to be the user to pass authorization through wristwatches and other electronic equipment can be prevented so that the security of information and property can be guaranteed.
Description
Technical field
The present invention relates to a kind of electronic technology field, particularly relate to a kind of authorization and authentication method, device and system.
Background technology
Electronic equipment is used to obtain some particular place (for example, Administrative Area, security areas etc.), website log, individual user
During the mandate of people's article (automobile, safety cabinet etc.), dangerous goods etc., electronic equipment be arranged on these places, personal belongings or
Electronic system in dangerous goods sets up communication connection, then the key of storage is sent to electronic system, and electronic system is to key
It is authenticated.As can be seen here, this authorization of the prior art, other people can use others' electronic equipment and then obtain
Must authorize, and then perform illegal operation, cause property, the information etc. of user to lose.
Content of the invention
Present invention seek to address that one of the problems referred to above.
A kind of authorization and authentication method of offer is provided.
Another object of the present invention is to provide a kind of authorization identifying device.
A further object of the present invention is to provide a kind of authorization identifying system.
For reaching above-mentioned purpose, technical scheme is specifically achieved in that
One aspect of the present invention provides a kind of authorization and authentication method, comprising: after biological limbs enter the preset range of the first equipment,
Described first equipment sets up communication connection by described biological limbs and the second equipment;Described first equipment is by described communication connection
Receive the authorization message for the treatment of of described second device transmission, described treat that authorization message includes: digital certificate information;At described biological limb
In the duration of the preset range that body enters the first equipment, described first equipment gathers the biological information of described biological limbs;
Described first equipment obtains authentication result to described digital certificate information and described biological information certification, if to described
The authentication result of digital certificate information and described biological information certification is that certification is passed through, then described first equipment performs mandate
Operation.
Additionally, described biological information includes: finger print information and/or venous information;Described first equipment gathers described biological limb
The biological information of body includes: in the case that described biological limbs contact with described first equipment, the first equipment gathers described
The described biological information of the contact site of biological limbs and described first equipment.
Additionally, described first equipment obtains the authentication result bag to described digital certificate information and described biological information certification
Include: described digital certificate information and described biological information are authenticated by described first equipment, it is thus achieved that described authentication result.
Include additionally, described first equipment obtains the authentication result to described digital certificate information and described biological information:
Described first equipment sends described biological information and described digital certificate information to backstage;Described first equipment receives described
The described authentication result that backstage sends, wherein: described authentication result is that described backstage is to described digital certificate information and described life
Thing characteristic information is authenticated, it is thus achieved that authentication result.
Additionally, described treat that authorization message also includes: identification information;Described to described digital certificate information and described biological characteristic
Authentification of message includes: be authenticated described digital certificate information and described biological information according to described identification information.
Additionally, be authenticated including to described digital certificate information and described biological information according to described identification information: obtain
Take the described identification information corresponding certification factor and biological characteristic validation information, and utilize digital authenticating described in described certification factor pair
Information carries out digital authenticating and detects the matching rate of described biological characteristic validation information and described biological information, wherein, institute
State authentication result be certification by including: utilize digital certificate information described in described certification factor pair carry out digital authenticating by and
When the matching rate of described biological information and described biological characteristic validation information is more than preset value, described authentication result is that certification is led to
Cross.
Additionally, described utilize digital certificate information described in described certification factor pair carry out digital authenticating and detect described biological characteristic
Checking information includes with the matching rate of described biological information:
Digital certificate information described in described certification factor pair is utilized to be authenticated, when described digital certificate information certification is passed through,
Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information;Or
Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information, when judging
When stating the matching rate of biological information and described biological characteristic validation information more than preset value, utilize described in described certification factor pair
Digital certificate information is authenticated.
Additionally, the electronic signature information that described digital certificate information obtains after including utilizing private key signature, the described certification factor includes
Carry out the PKI of sign test to described electronic signature information;Described digital certificate information described in described certification factor pair is utilized to be authenticated
Including: utilize described PKI to carry out sign test to described electronic signature information;And/or described digital certificate information includes utilizing symmetrical close
The calculated MAC value of key, the described certification factor includes the symmetric key calculating described MAC value;Described utilize described certification
Digital certificate information described in factor pair is authenticated including: utilizes described symmetric key to calculate MAC check value, verifies described MAC
Value and MAC check value;And/or described digital certificate information includes the dynamic password that utilizes seed key to generate, described certification because of
Attached bag includes the seed key of the described dynamic password of described checking;Described digital certificate information described in described certification factor pair is utilized to carry out
Certification includes: utilize described seed key to verify described dynamic password.
Also a kind of authorization identifying device of another aspect of the present invention, comprising: connecting unit, enters authorization identifying device at biological limbs
Preset range after, for setting up communication connection by described biological limbs and described identity recognition device;Receiving unit, is used for
Received the authorization message for the treatment of of described identity recognition device transmission by described communication connection, described treat that authorization message includes: numeral is recognized
Card information;Collecting unit, within the duration of the preset range that described biological limbs enter authorization identifying device, is used for gathering
The biological information of described biological limbs;Performance element, for obtaining to described digital certificate information and described biological characteristic
The authentication result of authentification of message, if to the authentication result of described digital certificate information and described biological information certification for recognizing
Card passes through, then perform Authorized operation.
Additionally, described biological information includes: finger print information and/or venous information;Described collecting unit, at described biological limb
In the case that body contacts with described authorization identifying device, for gathering the contact site of described biological limbs and described authorization identifying device
The described biological information of position.
Additionally, described performance element, specifically for described digital certificate information and described biological information are authenticated,
Obtain described authentication result.
Additionally, described performance element, specifically for sending described biological information and described digital certificate information to backstage,
And receive the described authentication result that described backstage sends, wherein: described authentication result is that described backstage is to described digital certificate information
And described biological information is authenticated, it is thus achieved that authentication result.
Additionally, described treat that authorization message also includes: identification information;Described to described digital certificate information and described biological characteristic
Authentification of message includes: be authenticated described digital certificate information and described biological information according to described identification information.
Additionally, be authenticated including to described digital certificate information and described biological information according to described identification information: obtain
Take the described identification information corresponding certification factor and biological characteristic validation information, and utilize digital authenticating described in described certification factor pair
Information carries out digital authenticating and detects the matching rate of described biological characteristic validation information and described biological information, wherein, institute
State authentication result be certification by including: utilize digital certificate information described in described certification factor pair carry out digital authenticating by and
When the matching rate of described biological information and described biological characteristic validation information is more than preset value, described authentication result is that certification is led to
Cross.
Additionally, described utilize digital certificate information described in described certification factor pair carry out digital authenticating and detect described biological characteristic
Checking information includes with the matching rate of described biological information: utilize digital certificate information described in described certification factor pair to recognize
Card, when passing through to described digital certificate information certification, it is judged that described biological information and described biological characteristic validation information
Whether matching rate is more than preset value;Or judge that whether described biological information is big with the matching rate of described biological characteristic validation information
In preset value, when judging that the matching rate with described biological characteristic validation information for the described biological information is more than preset value, profit
It is authenticated with digital certificate information described in described certification factor pair.
Additionally, the electronic signature information that described digital certificate information obtains after including utilizing private key signature, the described certification factor includes
Carry out the PKI of sign test to described electronic signature information;Described digital certificate information described in described certification factor pair is utilized to be authenticated
Including: utilize described PKI to carry out sign test to described electronic signature information;And/or described digital certificate information includes utilizing symmetrical close
The calculated MAC value of key, the described certification factor includes the symmetric key calculating described MAC value;Described utilize described certification
Digital certificate information described in factor pair is authenticated including: utilizes described symmetric key to calculate MAC check value, verifies described MAC
Value and MAC check value;And/or described digital certificate information includes the dynamic password that utilizes seed key to generate, described certification because of
Attached bag includes the seed key of the described dynamic password of described checking;Described digital certificate information described in described certification factor pair is utilized to carry out
Certification includes: utilize described seed key to verify described dynamic password.
Another aspect of the invention also provides a kind of authorization identifying system, comprising: identity recognition device and such as claim 9-16 institute
The authorization identifying device stated;Described identity recognition device, for sending institute by described communication connection to described authorization identifying device
State and treat authorization message.
Additionally, described system also includes: backstage, for receive described authorization identifying device send described biological information with
And described digital certificate information, described digital certificate information and described biological information are authenticated, it is thus achieved that authentication result,
And send described authentication result to described authorization identifying device.
As seen from the above technical solution provided by the invention, the invention provides a kind of authorization and authentication method, Apparatus and system,
The digital certificate information of the electronic equipments such as watch and the biological information of human body can be verified by this authorization and authentication method, it is ensured that
The digital certificate information verified and the relevance of biological information and uniformity, in the authorization and authentication method of the present invention,
Checking to digital certificate information and the checking to human body biological characteristic information complete in the operation of one-time continuous, and once separately two
Secondary carry out, the unsuccessful of checking can be caused such that it is able to prevent other people from utilizing the electronic equipments such as watch to pretend to be user to pass through to authorize,
Ensure that the safety of information and property.Additionally, the present invention by human body live body as transmission conductor, can be effectively prevented illegal
Molecule utilizes other people electronic equipment and biological information to come by authorizing.Additionally, use the authorization and authentication method of the present invention,
User can need the multiple digital authenticating key informations using be stored in the electronic equipment that watch etc. is carried with, and electronics sets
For digital certificate information is sent to certification end automatically, user only need to gather biological information can complete to be authorized to operation, side
Just quick and safe.
Brief description
In order to be illustrated more clearly that the technical scheme of the embodiment of the present invention, the accompanying drawing of required use in embodiment being described below
It is briefly described, it should be apparent that, the accompanying drawing in describing below is only some embodiments of the present invention, for this area
From the point of view of those of ordinary skill, on the premise of not paying creative work, other accompanying drawings can also be obtained according to these accompanying drawings.
The flow chart of the authorization and authentication method that Fig. 1 provides for the embodiment of the present invention 1;
The structural representation of the authorization identifying device that Fig. 2 provides for the embodiment of the present invention 1;
The structural representation of the authorization identifying system that Fig. 3 provides for the embodiment of the present invention 1.
Detailed description of the invention
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described,
Obviously, described embodiment is only a part of embodiment of the present invention, rather than whole embodiments.Reality based on the present invention
Execute example, the every other embodiment that those of ordinary skill in the art are obtained under the premise of not making creative work, broadly fall into
Protection scope of the present invention.
In describing the invention, it is to be understood that term " " center ", " longitudinally ", " laterally ", " on ", D score, " front ",
The orientation of the instruction such as " afterwards ", "left", "right", " vertically ", " level ", " top ", " end ", " interior ", " outward " or position relationship are base
It in orientation shown in the drawings or position relationship, is for only for ease of the description present invention and simplifies description, rather than instruction or hint institute
The device that refers to or element must have specific orientation, with specific azimuth configuration and operation, therefore it is not intended that to the present invention
Restriction.Additionally, term " first ", " second " are only used for describing purpose, and it is not intended that instruction or hint relative importance
Or quantity or position.
In describing the invention, it should be noted that unless otherwise clearly defined and limited, term " install ", " being connected ",
" connect " and should be interpreted broadly, for example, it may be fixing connect, it is also possible to be to removably connect, or be integrally connected;Permissible
It is to be mechanically connected, it is also possible to be electrical connection;Can be to be joined directly together, it is also possible to be indirectly connected to by intermediary, can be two
The connection of individual element internal.For the ordinary skill in the art, above-mentioned term can be understood in the present invention with concrete condition
In concrete meaning.
Below in conjunction with accompanying drawing, the embodiment of the present invention is described in further detail.
Utilize biological limbs to communicate in the present invention, i.e. utilize biological limbs to bring the both devices of communication into body area network
In the range of.So-called body area network (Body Area Network is called for short BAN) is exactly centered on human body, by related with human body
Network element (include personal terminal, be distributed on the person, on clothing, human peripheral's certain distance scope as in 3~5 meters,
Sensor even within the person, networking equipment) etc. composition communication network, therefore, only related with human body network element
Element enters in this preset range of communication equipment, and the human body communication that could set up body area network connects.
Embodiment 1
The present invention provides a kind of authorization and authentication method, as shown in Figure 1, comprising:
Step S101, after biological limbs enter the preset range of the first equipment, the first equipment is by biological limbs and the second equipment
Set up communication connection.
In specific embodiment, the first equipment possesses physical characteristics collecting function, and can be with the second equipment by biological limbs
Communicate.First equipment may be used for place (Administrative Area, security areas), website log, personal belongings (automobile,
Safety cabinet etc.), the entrance of dangerous goods etc. or use authority be managed, the first equipment can be used for performing transaction, for example may be used
Be access-control card reader, intelligent automobile lock, safe lock, dangerous goods manager, with bio-identification function computer,
ATM and POS etc..
It is outside (be worn on live body or carry at live body periphery) that second equipment is positioned over live body (including human body, animal body etc.)
Or implant in live body body, for example, the second equipment can be wearable device (intelligent wristwatch, intelligent glasses etc.), smart mobile phone,
Implant intravital sensing equipment etc..When the second equipment is in (can for example be worn on wrist, neck in communication range with biological limbs
Neck) when, the second equipment and live body set up human body communication channel, and biological limbs can be equivalent to the extended antenna of the second equipment, when
When detection side detects biological limbs, be i.e. equivalent to this second equipment be detected.
First equipment is when utilizing human body channel to communicate, and it has default communication range, when the life carrying the second equipment
When thing limbs enter into its communication range, the first equipment can detect biological limbs, and the second equipment is extended by this biology limbs
Antenna, it is also possible to the first equipment detected.Certainly, above-mentioned first equipment and the second equipment can also support the wired of other or
Person's communication.
In a particular embodiment, the first equipment and the second equipment by biological limbs set up body area network (Body Area Network,
BAN), utilize biological limbs to set up live body communication channel, thus realize transmitting the first equipment and the second equipment by biological limbs
Between data, it is achieved utilize live body to communicate.It is permissible that first equipment sets up communication connection by biological limbs and the second equipment
By wired mode and wireless mode, specifically, at least can be realized by one of following two mode:
Wired mode: the first equipment and the second equipment are equipped with electrode, the first equipment is interior with implantation human body or is worn on human body body
On biological extremity (finger is contacted POS by the user for example, wearing watch) of the second equipment when, human body is made
For conductor, the electrode connection of both sides forms the path in human body, and the path in this human body can be simple line mode, it is also possible to
Current coupling mode, thus realize the communication of wired mode.Now the first equipment needs the biological limbs with the second equipment of wearing
Contact, is changed by level or signal is transmitted in waveguide, thus completes communication.
Whether the electric field that wireless mode: in wireless mode, the first equipment and the second equipment all can detect surrounding sends change,
If communication counterpart enters into human body communication permission, just can detect that field intensity changes, and sets up communication connection with the other side.
Additionally, in terms of the initiation of communication, the first equipment can be detected the second equipment in real time, main after the second equipment being detected
Dynamic initiation communicates;Also the second equipment can be carried out active detecting the first equipment, thus actively initiate communication.
Aforesaid way utilizes human body as the transmission medium of the signal of telecommunication, it is achieved body surface, internal and the setting of human peripheral (3~5 meters)
Standby information is mutual.Compared with traditional bluetooth, WIFI, radio frequency and the wireless communication technology such as infrared, believe during human body communication
Number through human body transmission, thus electromagnetic noise is very little on its impact, has low-power consumption, high security and the infringement of lower human body
Etc. advantage.Additionally due to there is not the problem that many people communication efficiency rate reduces, it is possible to the line exempting wire communication mode redundancy is stranded
Disturb.
Step S102, the first equipment by communication connection receive the second device transmission treat authorization message, treat that authorization message includes:
Digital certificate information.
In specific embodiment, the second equipment can be oneself to generate waiting for transmission to be sent to the first equipment after authorization message,
Also can be received by the second equipment and after authorization message, be sent to the first equipment until what authorization message generating means was sent.This waits to authorize
Including the information for carrying out digital authenticating in information, for example, this digital certificate information can be to utilize acquisition after private key signature
Electronic signature information (when this electronic signature information is by when authorization message generating means generates, now this treats that authorization message generates
Device can be the device such as electronic signature equipment, USBkey);This digital certificate information can be to utilize symmetric key to be calculated
MAC value (when this MAC value is by when authorization message generating means generates, now this treats that authorization message generating means can be
The devices such as cipher machine);This digital certificate information can be seed key generate dynamic password (when this dynamic password by wait authorize letter
When breath generating means generates, now this treats that authorization message generating means can be the devices such as OTP).
This treats that authorization message can also include representing the information (such as product ID etc.) of the second equipment, holder's identity information, use
The information such as family account number.
Certainly, the second equipment can send this by broadcast mode and treat authorization message, it is also possible in the mandate receiving the first equipment
Send to the second equipment again after solicited message and treat authorization message.
Step S103, within the duration of the preset range that biological limbs enter the first equipment, the first equipment gathers biological limbs
Biological information;In specific embodiment, biological information include finger print information, iris information, face information and
The information such as venous information.This first equipment is provided with the module for gathering biological information, for example, finger print acquisition module,
For in enter into the default communication range of the first equipment at the finger of human body and when touching the finger print acquisition module of the first equipment,
Gather the fingerprint of this finger, and for example, venous collection module, for entering into the default communication model of the first equipment in the wrist of human body
Enclose interior and when touching venous collection module, gather the venous information in this wrist, also such as, iris capturing module, be used for
When human eye enters in the default communication range of the first equipment and is positioned at iris capturing region, gather the iris information of this human eye,
Also such as, face recognition module, for entering in the default communication range of the first equipment at face and being positioned at face acquisition zone
During territory, gather the face information of this face.
In an embodiment of the invention, when biological information is finger print information and/or venous information;First equipment is adopted
The biological information of the biological limbs of collection includes: in the case of biological limbs and the contact of the first equipment, the first equipment gathers biology
The biological information of the contact site of limbs and the first equipment.
Specifically, when biological information is finger print information or venous information, the first equipment needs to contact the biological limb of user
Body just can collect corresponding biological information, and user gathers fingerprint or venous information by active exposure the first equipment, keeps away
Exempted from people other users of how crowded occasion carelessly by when the mistake communication that causes, it is ensured that the uniqueness of communication and security,
Have expressed true intention and the true identity of user simultaneously.
The biological information This move that first equipment gathers biological limbs can set up communication at the first equipment and the second equipment
Time-continuing process completes, it is also possible to completed before setting up communication at the first equipment and the second equipment.As long as ensureing to gather biological limb
It is to complete in the operation of one-time continuous that the biological information of body communicates with mandate, thus ensures that send treats authorization message
Uniformity with biological information.
It should be noted that step 103 does not exist sequencing with the execution of step 101 and step 102, step 103 is permissible
Perform before step 102 after step 101, it is also possible to perform with step 102 simultaneously, can also hold after step 102
OK.
Step S104, the first equipment obtains the authentication result to digital certificate information and biological information certification, if logarithm
The authentication result of word authentication information and biological information certification is that certification is passed through, then the first equipment performs Authorized operation.Specifically
, when the first equipment can utilize the information self prestoring to be authenticated digital certificate information and biological information, it is possible to
With the backstage that digital certificate information and biological information are sent to be attached thereto, utilize backstage to digital certificate information and
Biological information is authenticated.When the result that access authentication passes through, then the first equipment performs corresponding Authorized operation, as awarded
Power Website login, mandate are opened gate inhibition, are authorized and open some equipment (automobile, gun etc.).
In the detailed description of the invention of the present invention, the first equipment obtains to be recognized to digital certificate information and biological information certification
Card result can complete through but not limited in the following manner:
Digital certificate information and biological information are authenticated by mode the first, the first equipment, it is thus achieved that authentication result.Concrete next
Saying, the first equipment can be stored with the key related to digital authenticating and biological characteristic and other information, is provided simultaneously with to numeral
The functional module that authentication information and biological information are authenticated, can complete whole verification process, voluntarily such that it is able to carry
The high efficiency authorizing, and owing to the first equipment can be with complete independently mandate, it is ensured that the security of mandate.For example, when this first
When equipment is the equipment such as access card card reader, safe lock, access card card reader, safe lock etc. are completed authentication function voluntarily,
The user holding effective authorization message can be allowed quickly, safely, conveniently to open these equipment.
Mode the 2nd, the first equipment sends biological information and digital certificate information to backstage;First equipment receives backstage and sends
Authentication result, wherein: authentication result is that digital certificate information and biological information are authenticated by backstage, it is thus achieved that recognize
Card result.Specifically, the first equipment can be only completed the collection to biological information and the communication with the second equipment, and
Transferring to backstage to complete the process of certification, backstage possesses faster arithmetic speed, can be rapidly completed the computing of complexity.Additionally,
By separated to collecting part and authentication section, it is also ensured that the security of system.
By the authorization and authentication method of the present invention, the digital certificate information of the electronic equipments such as watch and the biological special of human body can be verified
Reference ceases, it is ensured that the digital certificate information verified and the relevance of biological information and uniformity, in the mandate of the present invention
In authentication method, the checking to digital certificate information and the checking to human body biological characteristic information complete in the operation of one-time continuous,
Once separately carry out twice, the unsuccessful of checking can be caused such that it is able to prevent other people from utilizing the electronic equipments such as watch to pretend to be user
By authorizing, it is ensured that the safety of information and property.Additionally, the present invention by human body live body as transmission conductor, can be effective
Prevent illegal molecule from utilizing other people electronic equipment and biological information to come by authorizing.Additionally, use the mandate of the present invention
User can be needed the multiple digital authenticating key informations using to be stored in the electronics that watch etc. carries with and set by authentication method
Standby, digital certificate information is sent to certification end by electronic equipment automatically, and user only need to gather biological information and can complete to be awarded
Power operation, convenient and swift safety.
In an embodiment of the invention, treat that authorization message also includes: identification information;To digital certificate information and biology
Characteristic information certification includes: be authenticated digital certificate information and biological information according to identification information.Specifically,
First equipment get second equipment send come until authorization message when, this treats to further comprises for indicating acquisition in authorization message
Identification information to the key message that digital certificate information and biological information are authenticated, identification information can be sequence number,
The mode such as title, call number.Can be with quick obtaining to for digital certificate information and biological information certification by identification information
Key message, improve the speed of certification and efficiency.
In an embodiment of the invention, according to identification information, digital certificate information and biological information are authenticated
Including: obtain the identification information corresponding certification factor and biological characteristic validation information, and utilize certification factor pair digital certificate information
Carrying out the matching rate of digital authenticating and detection biological characteristic validation information and biological information, wherein, authentication result is certification
By including: utilize certification factor pair digital certificate information carry out digital authenticating by and biological information test with biological characteristic
When the matching rate of card information is more than preset value, authentication result is that certification is passed through.Concrete, can index according to identification information or
Look into find out rapidly with the digital certificate information corresponding certification factor and with biological information corresponding biological characteristic validation information,
For example, when digital certificate information is an electronic signature information, this identification information may refer to show find corresponding for verifying
The PKI of signature, this PKI can directly deposit or leave in digital certificate, and this identification information can identify the volume of this PKI
Number or the numbering of digital certificate so that the equipment that must verify can be quickly found out corresponding PKI from database;
When the biological information getting is finger print information, this identification information can be the numbering of this finger print information or hold this and refer to
The numbering of the user of line information, such that it is able to got the corresponding certification factor and biological characteristic quickly and accurately by identification information
Checking information.During digital certificate information and biological information are authenticated, can first digital certificate information be entered
Row certification, it is also possible to be first authenticated biological information, it is also possible to be simultaneously authenticated, only when the certification knot to both
Fruit be by when, just determination authentication result be that certification is passed through.
At present to the verification mode of biological information mainly by setting matching rate, it is judged that the biological information collecting with
Biological characteristic validation information is compared, and when matching rate is more than certain value, then is judged as being verified.And due to present biology
The restriction of identification technology, although arranging the authenticity that high matching rate may insure that result, but high matching rate often often makes
Real user is judged to erroneous user or recognition failures by mistake thus refuses to authorize, cause the operation inconvenience of user.For example, existing
Having in technology, (for example, detection biological characteristic validation information be more than specified threshold with the matching rate of the biological information receiving
99%th, 90% etc.) when, then it is assumed that biometric authentication information certification is passed through.For avoiding the occurrence of the feelings also by certification for the disabled user
Condition, in prior art, this specified threshold generally arranges higher, now easily occurs that validated user None-identified causes certification to be lost
The problem losing.The application is in order to reduce the probability of validated user authentification failure, and the preset value taked is less than spy of the prior art
Determine threshold value, when (for example, the matching rate of the described biological characteristic validation information of detection and described biological information is more than preset value
Matching rate be more than preset value but be less than specified threshold of the prior art) when, by combine above-mentioned utilize described digital authenticating because of
The result that son carries out digital authenticating to described information to be certified determines final authentication result.The biological characteristic utilizing the present invention is believed
Breath and digital certificate information double verification, due to the strong authentication effect of digital authenticating, can be by the matching rate to biological characteristic authentication
Arrange lower than the biological characteristic authentication matching rate of general device, thus reduce that to carry the user of true biological characteristic misjudged
Probability for erroneous user or recognition failures.
In an embodiment of the invention, certification factor pair digital certificate information is utilized to carry out digital authenticating and detection biology
Signature verification information includes with the matching rate of biological information: utilize certification factor pair digital certificate information to be authenticated, when right
When digital certificate information certification is passed through, it is judged that whether biological information is more than preset value with the matching rate of biological characteristic validation information;
Or judge whether the matching rate of biological information and biological characteristic validation information is more than preset value, when judging biological information
When being more than preset value with the matching rate of biological characteristic validation information, certification factor pair digital certificate information is utilized to be authenticated.Specifically
, during digital certificate information and biological information are authenticated, first digital certificate information is authenticated, can
With the guarantee of the digital authenticating by strong authentication effect, reduce the identified failed probability of truly legal user, and when number
Word certification not over when, it is not necessary to again biological information is verified, simplifies flow process;And in the ban to biometric authentication information
When being authenticated, by biological information is verified, personator can be identified, thus recognize without carrying out follow-up numeral again
Card flow process, simplifies flow process.
In the detailed description of the invention of the present invention, the certification to digital certificate information can include but is not limited to following one or several
The mode of kind:
The electronic signature information that mode the first, digital certificate information obtains after including utilizing private key signature, the certification factor includes to electronics
Signing messages carries out the PKI of sign test;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize PKI to electronics label
Name information carries out sign test;Concrete, in which, digital authenticating is electron underwriting authentication, and the generating mode of electronic signature information can
To use private key to sign preset value (such as random number etc.), obtain signature value, using signature value and preset value as electronics label
Name information.May insure that this digital authenticating have passed through the true mandate of user by electron underwriting authentication, and have and prevent user couple
The function that the operation performing is gone back on one's word and denied.
Mode the 2nd, digital certificate information includes utilizing the calculated MAC value of symmetric key, and the certification factor includes calculating MAC
The symmetric key of value;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize symmetric key to calculate MAC verification
Value, checking MAC value and MAC check value;Concrete, in which, digital authenticating is for utilizing symmetric key to add information
After close, utilized symmetric key to be decrypted information by authentication, utilize for example with symmetry algorithm (such as MAC calculating)
Preset value is encrypted and obtains ciphertext value (such as MAC value) by symmetric key, using ciphertext value and preset value as cipher-text information,
Can ensure that, by which, the security that data are transmitted, improve the safety of communication, the symmetry that simultaneously can also be prestored by both sides is close
The identity of user verified by key.
Mode the 3rd, digital certificate information includes the dynamic password utilizing seed key to generate, and the certification factor includes verifying dynamic password
Seed key;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize seed key to test dynamic password
Card.Concrete, which utilizes dynamic password to verify identity, can based on the time or based on challenging value generate dynamic
Password, can be verified the true identity of user by this dynamic password, it is ensured that the security of mandate.
The present embodiment also provides a kind of authorization identifying device 20, as shown in Figure 2.This authorization identifying device 20 is authorization identifying side
The corresponding device of method, this authorization identifying device 20 is equivalent to the first equipment in authorization and authentication method, and identity recognition device 30
Be equivalent to the second equipment in authorization and authentication method.Only the structure of this authorization identifying device 20 is briefly described at this, remaining
Part to the greatest extent is not with reference to the description to authorization and authentication method.This authorization identifying device 20 includes:
Connecting unit 201, after biological limbs enter the preset range of authorization identifying device 20, for by biological limbs and body
Part identifies that device 30 sets up communication connection;
Receiving unit 202, is treated authorization message for transmitted by communication connection reception identity recognition device 30, treats authorization message
Including: digital certificate information;
Collecting unit 203, within the duration of the preset range that biological limbs enter authorization identifying device 20, is used for gathering life
The biological information of thing limbs;
Performance element 204, for the authentication result to digital certificate information and biological information certification for the acquisition, if logarithm
The authentication result of word authentication information and biological information certification is that certification is passed through, then perform Authorized operation.
In an embodiment of the invention, biological information includes: finger print information and/or venous information;
Collecting unit 203, in the case that biological limbs contact with authorization identifying device 20, is used for gathering biological limbs and mandate
The biological information of the contact site of authentication device 20.
In an embodiment of the invention, performance element 204 obtains to digital certificate information and biological information certification
Authentication result can complete through but not limited to following two mode:
Mode the first, performance element 204, specifically for being authenticated to digital certificate information and biological information, it is thus achieved that recognize
Card result.
Mode the 2nd, performance element 204, specifically for sending biological information and digital certificate information to backstage 40, and connect
Receive the authentication result that backstage sends, wherein: authentication result is that digital certificate information and biological information are recognized by backstage 40
Card, it is thus achieved that authentication result.
In an embodiment of the invention, treat that authorization message also includes: identification information;To digital certificate information and biology
Characteristic information certification includes: be authenticated digital certificate information and biological information according to identification information.
In an embodiment of the invention, according to identification information, digital certificate information and biological information are authenticated
Including: obtain the identification information corresponding certification factor and biological characteristic validation information, and utilize certification factor pair digital certificate information
Carrying out the matching rate of digital authenticating and detection biological characteristic validation information and biological information, wherein, authentication result is certification
By including: utilize certification factor pair digital certificate information carry out digital authenticating by and biological information test with biological characteristic
When the matching rate of card information is more than preset value, authentication result is that certification is passed through.
In an embodiment of the invention, certification factor pair digital certificate information is utilized to carry out digital authenticating and detection biology
Signature verification information includes with the matching rate of biological information:
Certification factor pair digital certificate information is utilized to be authenticated, when passing through digital certificate information certification, it is judged that biological characteristic
Whether information is more than preset value with the matching rate of biological characteristic validation information;Or
Judge whether the matching rate of biological information and biological characteristic validation information is more than preset value, when judging that biological characteristic is believed
When the matching rate of breath and biological characteristic validation information is more than preset value, certification factor pair digital certificate information is utilized to be authenticated.
In an embodiment of the invention, it is authenticated to digital certificate information to complete through but not limited in the following manner:
The electronic signature information that mode the first, digital certificate information obtains after including utilizing private key signature, the certification factor includes to electronics
Signing messages carries out the PKI of sign test;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize PKI to electronics label
Name information carries out sign test;And/or
Mode the 2nd, digital certificate information includes utilizing the calculated MAC value of symmetric key, and the certification factor includes calculating MAC
The symmetric key of value;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize symmetric key to calculate MAC verification
Value, checking MAC value and MAC check value;And/or
Mode the 3rd, digital certificate information includes the dynamic password utilizing seed key to generate, and the certification factor includes verifying dynamic password
Seed key;Certification factor pair digital certificate information is utilized to be authenticated including: to utilize seed key to test dynamic password
Card.
The present embodiment also provides a kind of authorization identifying system, as it is shown on figure 3, this authorization identifying system includes aforesaid identification
Device 30 and aforesaid authorization identifying device 20;
Identity recognition device 30, for treating authorization message by communication connection to authorization identifying device 20 transmission.
In an embodiment of the invention, authorization identifying system also includes: backstage 40, is used for receiving authorization identifying device 20
The biological information sending and digital certificate information, be authenticated to digital certificate information and biological information, it is thus achieved that
Authentication result, and send authentication result to authorization identifying device 20.
Any process described otherwise above or method describe and are construed as in flow chart or at this, represent include one or
More are for realizing module, fragment or the part of the code of the executable instruction of the step of specific logical function or process, and
The scope of the preferred embodiment of the present invention includes other realization, wherein can not press order that is shown or that discuss, including root
According to involved function while basic in the way of or in the opposite order, perform function, this should be by embodiments of the invention institute
Belong to those skilled in the art to be understood.
It should be appreciated that each several part of the present invention can be realized by hardware, software, firmware or combinations thereof.In above-mentioned enforcement
In mode, software that multiple steps or method can be performed in memory and by suitable instruction execution system by storage or firmware
Realize.For example, if realized with hardware, and the same in another embodiment, can use following technology well known in the art
In any one or their combination realize: have and patrol for the discrete of logic gates realizing logic function to data-signal
Collect circuit, there is the special IC of suitable combinational logic gate circuit, programmable gate array (PGA), field programmable gate
Array (FPGA) etc..
Those skilled in the art are appreciated that and realize that all or part of step that above-described embodiment method is carried is permissible
Instructing related hardware by program to complete, described program can be stored in a kind of computer-readable recording medium, this journey
Sequence upon execution, including one or a combination set of step of embodiment of the method.
Additionally, each functional unit in each embodiment of the present invention can be integrated in a processing module, it is also possible to be each
Unit is individually physically present, it is also possible to two or more unit are integrated in a module.Above-mentioned integrated module is both permissible
The form using hardware realizes, it would however also be possible to employ the form of software function module realizes.If described integrated module is with software work(
Can the form of module realize and as independent production marketing or when using, it is also possible to be stored in the storage of embodied on computer readable and be situated between
In matter.
Storage medium mentioned above can be read-only storage, disk or CD etc..
In the description of this specification, reference term " embodiment ", " some embodiments ", " example ", " specific example ",
Or specific features, structure, material or the feature that the description of " some examples " etc. means to combine this embodiment or example describes comprises
In at least one embodiment or example of the present invention.In this manual, the schematic representation of above-mentioned term is not necessarily referred to
It is identical embodiment or example.And, the specific features of description, structure, material or feature can at any one or
Multiple embodiments or example combine in an appropriate manner.
Although above it has been shown and described that embodiments of the invention, it is to be understood that above-described embodiment is exemplary,
Being not considered as limiting the invention, those of ordinary skill in the art is in the case of without departing from the principle of the present invention and objective
Above-described embodiment can be changed within the scope of the invention, change, replace and modification.The scope of the present invention is by appended power
Profit requires and equivalent restriction.
Claims (18)
1. an authorization and authentication method, it is characterised in that include:
After biological limbs enter the preset range of the first equipment, described first equipment is built by described biological limbs and the second equipment
Vertical communication connection;
Described first equipment receives the authorization message for the treatment of of described second device transmission by described communication connection, described treats authorization message
Including: digital certificate information;
Within the duration of the preset range that described biological limbs enter the first equipment, described first equipment gathers described biological limb
The biological information of body;
Described first equipment obtains the authentication result to described digital certificate information and described biological information certification, if right
The authentication result of described digital certificate information and described biological information certification is that certification is passed through, then described first equipment performs
Authorized operation.
2. method according to claim 1, it is characterised in that
Described biological information includes: finger print information and/or venous information;
The biological information that described first equipment gathers described biological limbs includes:
In the case that described biological limbs contact with described first equipment, the first equipment gathers described biological limbs and described first
The described biological information of the contact site of equipment.
3. method according to claim 1 and 2, it is characterised in that described first equipment obtains to be believed to described digital authenticating
The authentication result of breath and described biological information certification includes:
Described digital certificate information and described biological information are authenticated by described first equipment, it is thus achieved that described authentication result.
4. method according to claim 1 and 2, it is characterised in that described first equipment obtains to be believed to described digital authenticating
The authentication result of breath and described biological information includes:
Described first equipment sends described biological information and described digital certificate information to backstage;
Described first equipment receives the described authentication result that described backstage sends, wherein: described authentication result is that described backstage is to institute
State digital certificate information and described biological information be authenticated, it is thus achieved that authentication result.
5. the method according to claim 3 or 4, it is characterised in that described treat that authorization message also includes: identification information;
Described described digital certificate information and described biological information certification are included:
According to described identification information, described digital certificate information and described biological information are authenticated.
6. method according to claim 5, it is characterised in that according to described identification information to described digital certificate information with
And described biological information is authenticated including:
Obtain the described identification information corresponding certification factor and biological characteristic validation information, and utilize number described in described certification factor pair
Word authentication information carries out digital authenticating and detects the matching rate of described biological characteristic validation information and described biological information, its
In, described authentication result be certification by including: carry out digital authenticating utilizing digital certificate information described in described certification factor pair
By and the matching rate of described biological information and described biological characteristic validation information more than preset value when, described authentication result is
Certification is passed through.
7. method according to claim 6, it is characterised in that described utilize described in described certification factor pair digital authenticating letter
Cease and carry out digital authenticating and detect described biological characteristic validation information including with the matching rate of described biological information:
Digital certificate information described in described certification factor pair is utilized to be authenticated, when described digital certificate information certification is passed through,
Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information;Or
Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information, when judging
When stating the matching rate of biological information and described biological characteristic validation information more than preset value, utilize described in described certification factor pair
Digital certificate information is authenticated.
8. the method according to claim 6 or 7, it is characterised in that
The electronic signature information that described digital certificate information obtains after including utilizing private key signature, the described certification factor includes to described
Electronic signature information carries out the PKI of sign test;Described digital certificate information described in described certification factor pair is utilized to be authenticated including:
Described PKI is utilized to carry out sign test to described electronic signature information;And/or
Described digital certificate information includes utilizing the calculated MAC value of symmetric key, and the described certification factor includes that calculating is described
The symmetric key of MAC value;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: it is described right to utilize
Claim cipher key calculation MAC check value, verify described MAC value and MAC check value;And/or
Described digital certificate information includes the dynamic password utilizing seed key to generate, and the described certification factor includes that described checking is described
The seed key of dynamic password;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: to utilize described
Described dynamic password is verified by seed key.
9. an authorization identifying device, it is characterised in that include:
Connecting unit, after biological limbs enter the preset range of authorization identifying device, for by described biological limbs and identity
Identify that device sets up communication connection;
Receiving unit, treats authorization message for transmitted by the described identity recognition device of described communication connection reception, and described waiting is awarded
Power information includes: digital certificate information;
Collecting unit, within the duration of the preset range that described biological limbs enter authorization identifying device, is used for gathering described
The biological information of biological limbs;
Performance element, for the authentication result to described digital certificate information and described biological information certification for the acquisition, if
Authentication result to described digital certificate information and described biological information certification is that certification is passed through, then perform Authorized operation.
10. device according to claim 9, it is characterised in that described biological information includes: finger print information and/or
Venous information;
Described collecting unit, in the case that described biological limbs contact with described authorization identifying device, is used for gathering described biology
The described biological information of the contact site of limbs and described authorization identifying device.
11. devices according to claim 9 or 10, it is characterised in that
Described performance element, specifically for being authenticated to described digital certificate information and described biological information, it is thus achieved that institute
State authentication result.
12. devices according to claim 9 or 10, it is characterised in that
Described performance element, specifically for sending described biological information and described digital certificate information to backstage, and receives
The described authentication result that described backstage sends, wherein: described authentication result is that described backstage is to described digital certificate information and institute
State biological information to be authenticated, it is thus achieved that authentication result.
13. devices according to claim 11 or 12, it is characterised in that described treat that authorization message also includes: mark letter
Breath;
Described described digital certificate information and described biological information certification are included:
According to described identification information, described digital certificate information and described biological information are authenticated.
14. devices according to claim 13, it is characterised in that according to described identification information to described digital certificate information
And described biological information is authenticated including:
Obtain the described identification information corresponding certification factor and biological characteristic validation information, and utilize number described in described certification factor pair
Word authentication information carries out digital authenticating and detects the matching rate of described biological characteristic validation information and described biological information, its
In, described authentication result be certification by including: carry out digital authenticating utilizing digital certificate information described in described certification factor pair
By and the matching rate of described biological information and described biological characteristic validation information more than preset value when, described authentication result is
Certification is passed through.
15. devices according to claim 14, it is characterised in that described utilize digital authenticating described in described certification factor pair
Information carries out digital authenticating and detects described biological characteristic validation information and include with the matching rate of described biological information:
Digital certificate information described in described certification factor pair is utilized to be authenticated, when described digital certificate information certification is passed through,
Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information;Or
Judge whether described biological information is more than preset value with the matching rate of described biological characteristic validation information, when judging
When stating the matching rate of biological information and described biological characteristic validation information more than preset value, utilize described in described certification factor pair
Digital certificate information is authenticated.
16. devices according to claims 14 or 15, it is characterised in that
The electronic signature information that described digital certificate information obtains after including utilizing private key signature, the described certification factor includes to described
Electronic signature information carries out the PKI of sign test;Described digital certificate information described in described certification factor pair is utilized to be authenticated including:
Described PKI is utilized to carry out sign test to described electronic signature information;And/or
Described digital certificate information includes utilizing the calculated MAC value of symmetric key, and the described certification factor includes that calculating is described
The symmetric key of MAC value;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: it is described right to utilize
Claim cipher key calculation MAC check value, verify described MAC value and MAC check value;And/or
Described digital certificate information includes the dynamic password utilizing seed key to generate, and the described certification factor includes that described checking is described
The seed key of dynamic password;Described digital certificate information described in described certification factor pair is utilized to be authenticated including: to utilize described
Described dynamic password is verified by seed key.
17. 1 kinds of authorization identifying systems, it is characterised in that include: identity recognition device and as described in claim 9-16
Authorization identifying device;
Described identity recognition device, for treating authorization message by described communication connection to described in the transmission of described authorization identifying device.
18. systems according to claim 17, it is characterised in that described system also includes:
Backstage, for receiving described biological information and the described digital certificate information that described authorization identifying device sends, right
Described digital certificate information and described biological information are authenticated, it is thus achieved that authentication result, and send described authentication result
To described authorization identifying device.
Priority Applications (5)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201610127235.6A CN105991654A (en) | 2016-03-07 | 2016-03-07 | Authorization authentication method, device and system |
US16/083,469 US10785218B2 (en) | 2016-03-07 | 2017-03-06 | Authorization authentication method, device and system |
EP17762505.0A EP3429157A4 (en) | 2016-03-07 | 2017-03-06 | Authorization authentication method, device and system |
JP2018546887A JP2019512786A (en) | 2016-03-07 | 2017-03-06 | Authorization authorization method, authorization device and authorization system |
PCT/CN2017/075745 WO2017152819A1 (en) | 2016-03-07 | 2017-03-06 | Authorization authentication method, device and system |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201610127235.6A CN105991654A (en) | 2016-03-07 | 2016-03-07 | Authorization authentication method, device and system |
Publications (1)
Publication Number | Publication Date |
---|---|
CN105991654A true CN105991654A (en) | 2016-10-05 |
Family
ID=57043907
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201610127235.6A Pending CN105991654A (en) | 2016-03-07 | 2016-03-07 | Authorization authentication method, device and system |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN105991654A (en) |
Cited By (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2017152815A1 (en) * | 2016-03-07 | 2017-09-14 | 李明 | Identity authentication method and system |
WO2017152819A1 (en) * | 2016-03-07 | 2017-09-14 | 李明 | Authorization authentication method, device and system |
CN107240058A (en) * | 2017-06-02 | 2017-10-10 | 山东卫泰智控科技有限公司 | A kind of matching method and device |
CN108574662A (en) * | 2017-03-09 | 2018-09-25 | 李明 | A kind of data communications method and system |
CN108924136A (en) * | 2018-07-03 | 2018-11-30 | 北京小米移动软件有限公司 | Authorization and authentication method, device and storage medium |
CN109167749A (en) * | 2017-06-29 | 2019-01-08 | 北京嘀嘀无限科技发展有限公司 | A kind of identity identifying method and device |
CN112883351A (en) * | 2021-02-04 | 2021-06-01 | 鹏元征信有限公司 | Data authorization method, device, authorization platform and storage medium |
Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101213559A (en) * | 2005-08-05 | 2008-07-02 | 夏普株式会社 | Communication device and communication system |
CN102576264A (en) * | 2009-08-18 | 2012-07-11 | 罗姆股份有限公司 | Input/output device, mobile device, and information displaying device |
CN102855567A (en) * | 2011-06-29 | 2013-01-02 | 现代自动车株式会社 | Payment system and method using human body communication |
CN103873244A (en) * | 2012-12-13 | 2014-06-18 | 航天信息股份有限公司 | Identity authentication method and system in mobile payment based on fingerprint identification |
CN204667407U (en) * | 2015-06-09 | 2015-09-23 | 武汉天喻信息产业股份有限公司 | A kind of wearable device and system realizing safety identification authentication |
CN204796894U (en) * | 2015-06-19 | 2015-11-25 | 曹淼 | Intelligent bracelet |
US20150358438A1 (en) * | 2014-06-05 | 2015-12-10 | Lg Electronics Inc. | Watch type mobile terminal |
CN105320450A (en) * | 2014-06-05 | 2016-02-10 | Lg电子株式会社 | Mobile terminal and controlling method thereof |
-
2016
- 2016-03-07 CN CN201610127235.6A patent/CN105991654A/en active Pending
Patent Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101213559A (en) * | 2005-08-05 | 2008-07-02 | 夏普株式会社 | Communication device and communication system |
CN102576264A (en) * | 2009-08-18 | 2012-07-11 | 罗姆股份有限公司 | Input/output device, mobile device, and information displaying device |
CN102855567A (en) * | 2011-06-29 | 2013-01-02 | 现代自动车株式会社 | Payment system and method using human body communication |
CN103873244A (en) * | 2012-12-13 | 2014-06-18 | 航天信息股份有限公司 | Identity authentication method and system in mobile payment based on fingerprint identification |
US20150358438A1 (en) * | 2014-06-05 | 2015-12-10 | Lg Electronics Inc. | Watch type mobile terminal |
CN105320450A (en) * | 2014-06-05 | 2016-02-10 | Lg电子株式会社 | Mobile terminal and controlling method thereof |
CN204667407U (en) * | 2015-06-09 | 2015-09-23 | 武汉天喻信息产业股份有限公司 | A kind of wearable device and system realizing safety identification authentication |
CN204796894U (en) * | 2015-06-19 | 2015-11-25 | 曹淼 | Intelligent bracelet |
Cited By (10)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
WO2017152815A1 (en) * | 2016-03-07 | 2017-09-14 | 李明 | Identity authentication method and system |
WO2017152819A1 (en) * | 2016-03-07 | 2017-09-14 | 李明 | Authorization authentication method, device and system |
US10785218B2 (en) | 2016-03-07 | 2020-09-22 | Tendyron Corporation | Authorization authentication method, device and system |
CN108574662A (en) * | 2017-03-09 | 2018-09-25 | 李明 | A kind of data communications method and system |
CN108574662B (en) * | 2017-03-09 | 2021-08-17 | 李明 | Data communication method and system |
CN107240058A (en) * | 2017-06-02 | 2017-10-10 | 山东卫泰智控科技有限公司 | A kind of matching method and device |
CN109167749A (en) * | 2017-06-29 | 2019-01-08 | 北京嘀嘀无限科技发展有限公司 | A kind of identity identifying method and device |
CN108924136A (en) * | 2018-07-03 | 2018-11-30 | 北京小米移动软件有限公司 | Authorization and authentication method, device and storage medium |
CN108924136B (en) * | 2018-07-03 | 2021-01-15 | 北京小米移动软件有限公司 | Authorization authentication method, device and storage medium |
CN112883351A (en) * | 2021-02-04 | 2021-06-01 | 鹏元征信有限公司 | Data authorization method, device, authorization platform and storage medium |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN105991654A (en) | Authorization authentication method, device and system | |
EP3428818B1 (en) | Identity authentication method and system | |
US11101993B1 (en) | Authentication and authorization through derived behavioral credentials using secured paired communication devices | |
WO2017152818A1 (en) | Payment method and system | |
US12056975B1 (en) | System and method for secure pair and unpair processing using a dynamic level of assurance (LOA) score | |
US20170195322A1 (en) | Entry and exit control method and apparatus, and user terminal and server for the same | |
CN105939336A (en) | Identity authentication method and system | |
CN105991652A (en) | Identity authentication method and system | |
CN105939197A (en) | Identity authentication method and system | |
CN104378211A (en) | Identity authentication method and device | |
CN107222373A (en) | Control method, system, terminal, FIDO servers and the safety means of smart home | |
CN105991653A (en) | Identity authentication method and device | |
US10785218B2 (en) | Authorization authentication method, device and system | |
TW201802718A (en) | Non-contact identity verification device and non-contact identity verification system and non-contact identity verification method ensures the protection of personal data | |
CN105989488B (en) | Payment method and system | |
CN105939195A (en) | Transaction method and system | |
CN105989497A (en) | Payment method and system | |
CN105430149B (en) | A kind of terminal user identity determines method and device | |
US7770787B2 (en) | Credential communication device | |
CN106304052A (en) | A kind of method of secure communication, device, terminal and client identification module card | |
KR20170142983A (en) | Method for Providing Appointed Service by using Biometric Information | |
CN107026732A (en) | A kind of system that Password Input number of times is reduced by wearable device | |
CN105989496A (en) | Trading method and equipment | |
CN105989498A (en) | Payment method and system | |
Khatri et al. | Biometrie based authentication and access control techniques to secure mobile cloud computing |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
RJ01 | Rejection of invention patent application after publication | ||
RJ01 | Rejection of invention patent application after publication |
Application publication date: 20161005 |