Distributed unified authentication method and system

An authentication method and authentication system technology, applied in the field of distributed unified authentication method and system, can solve the problems of authentication server performance bottleneck pressure, large amount of modification, and service provision, etc., and achieve the effect of solving single point of failure and performance bottleneck

Inactive Publication Date: 2014-06-25
CHINA TELECOM CORP LTD
View PDF4 Cites 21 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0008] 1. There are single point of failure and performance bottleneck risks. Once the authentication server that provides centralized authentication services fails, all application servers interacting with it will be unable to implement the identity authentication function, and thus cannot provide services for users. In addition, when there is a high concurrency The identity authentication request will also cause the performance bottleneck pressure of the authentication server;
[0009] 2. For the existing local system, if you want to incorporate the existing single identity authentication system, you need to modify the local system, but because the application service and identity authentication function modules of the existing local system are usually tightly coupled , so the modification amount is relatively large

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Distributed unified authentication method and system
  • Distributed unified authentication method and system
  • Distributed unified authentication method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0046] The technical solutions of the present invention will be described in further detail below with reference to the accompanying drawings and embodiments.

[0047] Such as figure 2 As shown, it is a schematic structural diagram of an embodiment of the distributed unified authentication system of the present invention. In this embodiment, the distributed unified authentication system includes a unified identity authentication server AuServer, multiple identity authentication sub-modules auServer-X, auServer-Y, etc., and multiple application servers AppServer-X, AppServer-Y. The unified identity authentication server AuServer is responsible for storing the verification data corresponding to the user's identity verification information, and provides unified user management functions and identity verification functions.

[0048]Multiple identity authentication sub-modules auServer-X and auServer-Y are connected to the unified identity authentication server AuServer, and mult...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a distributed unified authentication method and system. The method comprises: an application server receives identity verification information and sends the information to a corresponding identity authentication sub module; the identity authentication sub module checks whether verification data are stored locally or not; if so, the identity verification information is authenticated based on the verification data; and if not, the identity verification information is sent to a unified identity authentication server to carry out authentication; and the application server executes a corresponding service according to the obtained application server result and corresponding user permission. According to the invention, the unified identity authentication server is used for carrying out centralized management of user identities; and a plurality of distributed identity authentication sub modules are used to provide verification data for corresponding application servers respectively, so that the application servers can carry out identity authentication directly on the identity authentication sub modules. Only when the identity authentication sub modules are lack of verification data dose the unified identity authentication server carry out authentication. Therefore, problems of a single-point fault and performance bottleneck are solved.

Description

technical field [0001] The invention relates to security authentication technology, in particular to a distributed unified authentication method and system. Background technique [0002] In the IT system, authentication service is an important service to protect the interests of customers and system security. At present, the more common authentication services usually use a single centralized system to realize the unified authentication of user identities. Such as figure 1 As shown in , it is a schematic diagram of the unified identity authentication process of the existing single system. The certification process includes the following steps: [0003] Step 101, the user USER wants to log in to the application server AppServer, so the user terminal sends the identity account and password (id, password) to the application server AppServer; [0004] Step 102, the application server AppServer itself does not verify and authenticate the identity account and password (id, pass...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
Inventor 王保中向勇邢豫胡军军乐建兵谢晓军
Owner CHINA TELECOM CORP LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products