Secondary authentication method based on out-of-band authentication and enhanced OTP (One-time Password) mechanism
A secondary authentication and mechanism technology, applied in the field of identity authentication and information security, can solve problems such as password theft, hacker deciphering, fund theft, etc., achieve safe and convenient two-factor authentication, and eliminate the threat of phishing and man-in-the-middle attacks
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Publication Date
- 2016-02-24
Smart Images
Figure 1 Figure 2 Figure 3
Abstract
Description
technical field
[0001] The invention relates to the field of information security and to the field of identity authentication, in particular to a secondary authentication method based on out-of-band authentication and enhanced OTP mechanism, which is a strong identity authentication technology. Background technique
[0002] Authentication technology is an important aspect of information security theory and technology. Before accessing the security system, the user first needs to be identified by the identity authentication system, and then the system determines whether the user can access a certain resource according to the user's identity and authorization database. Identity authentication plays an extremely important role in the security system. It is the most basic security service, and other security services depend on it. Once the identity authentication system is breached, all the security measures of the system will be useless. The target of hacker attacks is often ...
Examples
Embodiment Construction
[0040] The present invention aims at the phishing problem and man-in-the-middle attack problem existing in the existing OTP token authentication, proposes an enhanced OTP mechanism, and combines out-of-band security communication, proposes a new type based on out-of-band verification and enhanced OTP mechanism Multi-factor authentication method, and its realization method is given at the same time. In order to more clearly illustrate the new identity authentication scheme and implementation method in the present invention, the present invention will be described in detail below in conjunction with the accompanying drawings and embodiments. Other feasible equivalent variations can be obtained from these figures.
[0041] Such as figure 1As shown, it is a block diagram of the secondary authentication system based on the out-of-band verification and enhanced OTP mechanism of the present invention, and the system mainly involves the client, the server, the data server, and the mo...