A realization method of one-to-many account mapping and binding for multi-screen multi-factor convenient web identity authentication

A technology of identity authentication and implementation method, applied in the field of identity authentication and information security, it can solve the problems of authentication factor information leakage and user security risks, and achieve improved login security, high security operation, simplified process and identity identification process. Effect

Inactive Publication Date: 2017-02-08
INST OF INFORMATION ENG CHINESE ACAD OF SCI
View PDF3 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

If the user's channel is hijacked during the process of connecting to the server, no amount of authentication factor information will be leaked through the hijacked channel, bringing potential security risks to the user

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A realization method of one-to-many account mapping and binding for multi-screen multi-factor convenient web identity authentication
  • A realization method of one-to-many account mapping and binding for multi-screen multi-factor convenient web identity authentication
  • A realization method of one-to-many account mapping and binding for multi-screen multi-factor convenient web identity authentication

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0040] In order to make the objectives, advantages and technical solutions of the present invention more clear, the present invention will be further described in detail below through specific implementation and in conjunction with the accompanying drawings.

[0041] Three-layer account system The present invention verifies different authentication data in the multi-screen multi-factor authentication method (that is, at the local device layer and the server layer at the server end respectively. It avoids only verifying the data at the server layer in traditional authentication, and through multi-screen Multi-level verification improves the security of the identity authentication process. That is, the user passes the local identity verification of the mobile smart terminal device, and then logs in to FIDO-IDP with the help of the mobile smart terminal device, and finally obtains the network service authorization process). The layered account association system completes the asso...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to an implementation method of one-to-multiple account mapping binding of convenient and rapid multi-screen multi-factor WEB identity authentication. A novel SSO (Single Sign On) account mapping management method is implemented according to the one-to-multiple bidirectional associations of IDP (Integrated Data Processing) accounts of identity providers and SP (Service Provider) service accounts of a service provider as well as the one-to-multiple bidirectional associations of the IDP accounts of the identity providers and DID (Device Identity) in multi-screen multi-factor identity authentication (that is, the authentication of local sensitive information is firstly implemented by users via the moving of intelligent terminal equipment, and then the OTP (One Time Password) authentication is implemented at server-sides after the passing of the authentication of the local sensitive information) on the premise of guaranteeing the high security and the convenient and rapid operation of the user identity authentication, so that the SSO login process is implemented by virtue of any one of multi-DID instead of a multi-SP login process. Thus, the information security in the authentication process is greatly improved under the condition of guaranteeing the convenient and rapid operation of the user identity authentication.

Description

technical field [0001] The invention belongs to the field of identity authentication in the field of information security, and in particular relates to a method for realizing one-to-many account mapping and binding of multi-screen, multi-factor convenient WEB identity authentication. Background technique [0002] With the development of the network and the popularization of the Internet (networking of desktop services), users will have a large number of accounts while obtaining network services. The survey shows that if a user has 30 accounts, the user will use 5 or 6 passwords, and the user always uses the method of trying to log in, that is, try every password to log in until the login is successful, or reset the password Function login. In this way, the user will spend a lot of time in the login process, and it will take a longer time due to the restrictions of the website login strategy, that is, some websites require to fill in the verification code after entering the ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L9/32H04L29/06
Inventor 王雅哲李琛王瑜
Owner INST OF INFORMATION ENG CHINESE ACAD OF SCI
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products