Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Digital certificate-based unified authentication login method for integrating multiple application systems

An application system and digital certificate technology, applied in the field of public key infrastructure system (PKI), can solve problems such as easy to be cracked or stolen, large security problems of user names and passwords, and non-support, so as to facilitate management and maintenance, and guarantee Traceability, user-friendly effects

Active Publication Date: 2014-02-05
江苏先安科技有限公司
View PDF3 Cites 18 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] 1. The existing single sign-on technology mainly aims to solve the problem that users only need to log in once in multiple application systems to access all mutually trusted application systems, but its limitations are also obvious: that is, most application scenarios are applicable to users The authentication information is the user name and password, which is often not supported for application systems that need to use digital certificates to log in.
[0008] 2. The method based on user name and password has great security problems
In recent years, there have been many incidents of system user name and password information leakage on the Internet, especially the recent Tianya account leakage incident and CSDN account leakage incident, which once again exposed the simplicity and insecurity of this authentication method
From a technical point of view, the user name and password are easy to be cracked or stolen, and it is impossible to trace the real identity of the user, and it is impossible to locate and investigate the responsibility
[0009] 3. Existing solutions often adopt centralized management of permissions, but at the cost of sacrificing the good scalability of the system
In this way, once an enterprise, company, institution, or government department needs to integrate more external information application systems, it is very inconvenient to modify the existing system and transform the external information application system again.
Especially when the external information application system only needs a unified login function and requires independent permissions, the existing scheme will be powerless

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Digital certificate-based unified authentication login method for integrating multiple application systems
  • Digital certificate-based unified authentication login method for integrating multiple application systems
  • Digital certificate-based unified authentication login method for integrating multiple application systems

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0020] The present invention will be further described in detail below in conjunction with the accompanying drawings and specific embodiments.

[0021] like figure 1 As shown, it is the process of applying for access to the unified authentication platform for the information application system of the present invention.

[0022] 1. Use the digital certificate authentication method to replace the original user name and password authentication method. For users who do not have a digital certificate, guide the user to a legal CA organization to apply for a digital certificate. For users who already have a digital certificate, they only need to selectively bind the digital certificate with the user name and password in the original information application system.

[0023] 2. Establish a unified authentication platform to provide unified authentication services for each information application system. The authentication process of the unified authentication platform strictly follo...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a digital certificate-based unified authentication login method for integrating multiple application systems. A legal digital certificate signed and issued for a user, an authentication method of the digital certificate replaces an original authentication method of a user name and a password; a unified authentication platform is established, and unified certification service is provided for all the information application systems; the information application systems have access to the platform, login authentication and authorization are performed, and unified authentication login is completed. When the method is used, safety of the information application systems is improved, losses caused by early leak of the user name and the password are reduced, and signature of the digital certificate guarantees traceability of operation in the information application systems; due to the fact that the unified authentication platform is established, user information resources can be shared in a concentrated mode and are convenient to manage and maintain; on the basis of the OAuth2.0 protocol, an open interface is provided, and therefore new application information systems can have access to the platform more easily; the unified authentication login and single-point login function is provided, operation of the user is facilitated, and working efficiency is improved.

Description

technical field [0001] The present invention is generally applied in the field of public key infrastructure system (PKI), and provides a lightweight, more efficient, safe and fast method for integrating one or more application systems based on digital certificates to realize unified authentication login and single sign-on. Way. Background technique [0002] X509 is an international standard recommended by ITU-T. X.509 defines a widely accepted PKI foundation, including data format and the process of distributing public keys through digital certificates issued by certificate authorities. [0003] X509 digital certificate refers to the data signed by a trusted certificate issuing organization for a specific public key and data information. [0004] As we all know, the development and application of every technology will go through a process, and the same is true for the development of information technology. In the process of computer technology development and application, ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L9/32
Inventor 王杰勋李业兵庄昱垚
Owner 江苏先安科技有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products