Unlock instant, AI-driven research and patent intelligence for your innovation.

Authentication system, method, and program

An authentication system and authentication request technology, applied in the field of authentication systems, can solve the problems of cumbersomeness and reduced convenience

Active Publication Date: 2016-05-18
KK TOSHIBA +1
View PDF9 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Regarding this kind of management, since the objects to be managed increase for each combination of users and services, it becomes cumbersome and reduces convenience.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Authentication system, method, and program
  • Authentication system, method, and program
  • Authentication system, method, and program

Examples

Experimental program
Comparison scheme
Effect test

Embodiment approach

[0062] According to such a first embodiment, it is possible to easily change the authentication method while improving the convenience of the user and the service provider.

[0063] In addition, in the first embodiment, the authentication proxy device is provided with a first table storage means that stores an authentication type management table that includes an authentication type indicating an authentication processing method and an authentication type indicating the authentication type. The authentication level of the processing level is described in association with each other.

[0064] The SSO account information storage mechanism contains authentication levels.

[0065] Here, when a problem occurs in the authentication process and the level of the authentication process is lowered, the authentication proxy device updates the authentication type management table in such a way that the authentication level of the authentication process is lowered, and stores the lowered a...

no. 1 approach >

[0075] figure 1 is a schematic diagram showing the configuration of the authentication system of the first embodiment, figure 2 as well as image 3 It is a schematic diagram for explaining account information, etc. of each device.

[0076] In this authentication system, the user terminal 10 operated by the user U, the service provider device 20 , the IDaaS operator device 30 , and the authentication proxy device 40 can communicate. Although these user U, user terminal 10 , service provider device 20 , IDaaS provider device 30 , and authentication proxy device 40 exist repeatedly, each one is shown in the drawing. In addition, each of the devices 10 , 20 , 30 , and 40 can be implemented with either a hardware configuration or a combined configuration of hardware resources and software. As the combined software, a storage medium (non-transitorycomputer-readablestoragemedium) M1, M2, M3, M4 for being installed in a computer from a network or a non-volatile computer-readable s...

no. 2 approach >

[0205] Next, refer to figure 1 The authentication system of the second embodiment will be described.

[0206] The second embodiment is a modified example of the first embodiment, and is a mode in which the load required for changing the authentication level is reduced.

[0207] For example, in the first embodiment, when changing the authentication level, it is necessary to change the attribute (supported authentication level) of the SSO account information ac2 of all users. Therefore, in the first embodiment, when the number of accounts increases, the load due to authentication level changes becomes large.

[0208] In contrast, in the second embodiment, as Figure 10 As shown, the IDaaS provider device 30 stores in the memory 31 an authentication level management table T2 in which the authentication level and the authentication category index are associated and described. Here, the authentication type index is an index indicating an authentication proxy carrier name (AP nam...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

An authentication system in an embodiment is provided with a service-provider device, an IDaaS-operator device, and a delegated-authentication device. On the basis of a user ID and an SSO request transmitted by a user terminal, the delegated-authentication device, which has authentication account information associated via a second linking ID with SSO account information containing an SSO account identifier that matches the aforementioned user ID, performs a user authentication process. If said authentication process succeeds, the IDaaS-operator device, which has SSO account information containing an SSO account identifier that matches the user ID, authorizes SSO authentication of a service corresponding to a service-account identifier included in service-account information associated via a first linking ID with the abovementioned SSO account information. The service-provider device transmits information related to said service to the user terminal.

Description

technical field [0001] Embodiments of the present invention relate to authentication systems, methods, and programs. Background technique [0002] In recent years, service providers such as companies and suppliers authenticate user IDs and passwords and provide services to users. [0003] Therefore, the user needs to manage IDs and passwords for each service. Also, from the viewpoint of security enhancement, each service provider requires users to periodically update passwords or use complex and long passwords. [0004] Here, when using a financial institution online, it is recommended to use a random number card, a one-time password, or the like for identity verification. In this case, the user needs to manage the device and the random number table of the one-time password for each service. [0005] On the other hand, the service provider manages and authenticates IDs and passwords for each user, and provides services. In addition, due to cost and operational considerat...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): G06F21/41
CPCH04L63/0815G06F21/41H04L63/0861H04L63/0884H04L63/102
Inventor 鹤见理惠子西村明夫池田竜朗
Owner KK TOSHIBA
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More