Method and system for providing authentication service using IP address

KR1020260131353APending Publication Date: 2026-09-01LG UPLUS CORP
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
KR1020250023574
Authority / Receiving Office
KR · KR
Patent Type
Applications
Current Assignee / Owner
Filing Date
2025-02-24
Publication Date
2026-09-01

Smart Images

  • Figure P1020250023574_ABST
    Figure P1020250023574_ABST
Patent Text Reader

Abstract

The present invention relates to a method for providing an authentication service using an IP address, comprising the steps of: receiving authentication request information including a first phone number from a first terminal; transmitting information of the first phone number and the first terminal to a second server in response to the authentication request information; receiving a determination result regarding whether the first phone number and the second phone number match from the second server; and transmitting an authentication result to the first terminal based on the received determination result, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number may be a phone number mapped based on information of the first terminal received from a network authentication server.
Need to check novelty before this filing date? Find Prior Art

Description

Technology Field

[0001] The present invention relates to a method and system for providing an authentication service using an IP address, and more specifically, to a method for verifying and authenticating a user using an IP address, or for enabling a user to attempt membership registration or login by authenticating a mobile phone number. Background Technology

[0002] User verification is being implemented during the access process to websites, mobile apps, financial or payment services, and accordingly, the importance of methods and means for user authentication is increasing day by day.

[0003] In addition, as the risk of fraud and phishing increases, the concept of service authentication is being introduced due to the need to verify that relevant service sites and links are not false.

[0004] First, the most commonly used method for user authentication involves utilizing the user's ID and password. However, this method has faced problems, such as the theft of user IDs and passwords or the leakage of related information, as various means are exploited by third parties with malicious intent.

[0005] Accordingly, recently, as a method utilizing SMS (Short Message Service), identity verification services or device possession verification services using SMS are widely used in online web or mobile app services for user verification (i.e., verification of the service user's identity) or device possession verification.

[0006] Typically, an identity verification service using SMS is a real-name verification service that compares user information entered by the user (e.g., name, resident registration number, phone number, etc.) with member information registered with a telecommunications carrier. It sends an SMS authentication value to the entered mobile phone number via a wireless communication network, and if the mobile phone user enters the authentication value into an authentication window within a specified validity period and the transmitted authentication value matches the entered authentication value, it is an identity verification service that simultaneously confirms the entered user information and whether the user possesses the mobile phone.

[0007] In addition, the mobile phone ownership verification service using SMS is a device ownership verification service that confirms the user's possession of a mobile phone by sending an SMS authentication value to the entered mobile phone number via a wireless communication network to verify whether the mobile phone number entered by the user is correct, regardless of the carrier's member database, and confirming the user's possession of the mobile phone if the user enters the authentication value into the authentication window within the valid time and they match.

[0008] However, as incidents of hackers impersonating users through SMS authentication services have occurred frequently, SMS-based authentication services are no longer considered a reliable means of verification. The primary reason SMS authentication is easily hacked is that the personal information used in these services (e.g., name, phone number, resident registration number, email, etc.) has already been exposed to hackers due to large-scale data breaches. Furthermore, if SMS messages or emails inducing the installation of malware are sent to targeted mobile phone numbers or email accounts, and the user installs malicious code or malware, the hacker can intercept incoming SMS messages on that mobile phone.

[0009] In addition, user inconvenience may be exacerbated by users exiting the authentication page or app during the process of checking SMS messages.

[0010] Therefore, there is a need for a method that can conveniently provide user verification and mobile phone number authentication. Prior art literature

[0011] Korean Published Patent No. 10-2017-0103691 The problem to be solved

[0012] The present invention aims to solve the problems of the prior art as described above by verifying and authenticating a user using an IP address, or by attempting membership registration or login through authentication of a mobile phone number. means of solving the problem

[0013] A method for providing an authentication service using an IP address according to the present invention for achieving the above objective comprises: receiving authentication request information including a first phone number from a first terminal; transmitting information of the first phone number and the first terminal to a second server in response to the authentication request information; receiving a determination result regarding whether the first phone number and the second phone number match from the second server; and transmitting an authentication result to the first terminal based on the received determination result, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number may be a phone number mapped based on information of the first terminal received from a network authentication server.

[0014] Here, the information of the first terminal may include at least one of an IP address (Internet Protocol Address) and a port number assigned to the first terminal.

[0015] In addition, the IP address and port number assigned to the first terminal may be extracted through an application or URL (Uniform Resource Locator) address provided by the first server.

[0016] Meanwhile, a method for providing an authentication service using an IP address according to the present invention for achieving the above objective comprises: receiving information of the first phone number and the first terminal from a first server that has received authentication request information including a first phone number from a first terminal; transmitting the information of the first terminal to a network authentication server; receiving a second phone number from the network authentication server; and transmitting a determination result to the first server in response to determining whether the first phone number and the second phone number match, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number may be a phone number mapped based on the information of the first terminal.

[0017] Here, the information of the first terminal may include at least one of the IP address and port number assigned to the first terminal.

[0018] In addition, the IP address assigned to the first terminal may be an IP address configured by mapping a private IP address and a public IP address one-to-one.

[0019] In addition, the IP address assigned to the first terminal may be an IP address configured to be mapped in combination with the port number.

[0020] Meanwhile, a method for providing an authentication service using an IP address according to the present invention for achieving the above objective comprises: receiving authentication request information including a first phone number from a second terminal; transmitting the first phone number and authentication address request information to a second server; receiving authentication address information generated based on the authentication address request information from the second server; transmitting the received authentication address information to the second terminal; receiving a determination result regarding whether the first phone number and the second phone number match from the second server by the first terminal, having obtained the authentication address information from the second terminal, calling the authentication address information; receiving authentication completion call information from the second terminal; and transmitting an authentication result to the second terminal in response to the received determination result and the received authentication completion call information, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number may be a phone number mapped based on the information of the first terminal received from a network authentication server.

[0021] Here, the information of the first terminal may include at least one of the IP address and port number assigned to the first terminal.

[0022] In addition, the authentication address request information includes a callback address for receiving the result of the determination of whether the first phone number and the second phone number match, and the result of the determination can be received through the callback address.

[0023] Meanwhile, a method for providing an authentication service using an IP address according to the present invention for achieving the above objective comprises: receiving authentication request information including a first phone number from a second terminal, and receiving the first phone number and authentication address request information from a first server that has received the authentication request information including a first phone number from a second terminal; transmitting authentication address information generated based on the authentication address request information to the first server; obtaining information of the first terminal based on the first terminal calling the authentication address information; transmitting the obtained information of the first terminal to a network authentication server; receiving a second phone number from the network authentication server; determining whether the first phone number and the second phone number match; and transmitting the result of determining whether the first phone number and the second phone number match to the first server, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number may be a phone number mapped based on the information of the first terminal.

[0024] Here, in response to determining whether the first phone number and the second phone number match, it may include transmitting information on whether authentication regarding the first phone number is successful to the first terminal.

[0025] Additionally, the step of obtaining information of the first terminal based on the first terminal calling the authentication address information may include the step of obtaining information of the first terminal by the first terminal obtaining identification information containing the authentication address information by the second terminal that received the authentication address information from the first server and calling the authentication address information.

[0026] In addition, the identification information includes a QR (Quick Response) code, and the first terminal can obtain the authentication address information from the second terminal by scanning the QR code.

[0027] In addition, the second terminal may be a terminal running an application or web browser for transmitting requests regarding identity authentication, membership registration, or login.

[0028] In addition, the authentication address information may include a URL address, and the IP address assigned to the first terminal and the port number may be extracted through the URL address.

[0029] Additionally, the above authentication request information may include a request for identity verification, a request for membership registration, or a request for login.

[0030] Meanwhile, an authentication service providing system using an IP address according to the present invention for achieving the above objective includes: a first server that receives authentication request information including a first phone number from a first terminal, transmits information of the first phone number and the first terminal to a second server in response to the authentication request information, receives a judgment result transmitted by the second server, and transmits an authentication result to the first terminal; a second server that transmits information of the first terminal to a network authentication server and transmits the judgment result to the first server in response to a judgment on whether the first phone number and the second phone number match; and a network authentication server that transmits the second phone number to the second server in response to receiving information of the first terminal from the second server, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number may be a phone number mapped based on information of the first terminal.

[0031] Meanwhile, an authentication service providing system using an IP address according to the present invention for achieving the above objective comprises: a first server that receives authentication request information including a first phone number from a second terminal, transmits the first phone number and authentication address request information to a second server, receives authentication address information generated based on the authentication address request information from the second server and transmits it to the second terminal, and transmits an authentication result to the second terminal based on authentication completion call information received from the second terminal and a judgment result transmitted by the second server; and a second server that generates authentication address information based on the authentication address request information received from the first server and transmits it to the first server, transmits information of the first terminal obtained based on the first terminal calling the authentication address information to a network authentication server, receives a second phone number from the network authentication server, determines whether the first phone number and the second phone number match, and transmits the judgment result to the first server. and includes a network authentication server that transmits the second phone number to the second server, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number may be a phone number mapped based on the information of the first terminal. Effects of the invention

[0032] The method and system for providing authentication services using an IP address according to the present invention have the following effects.

[0033] First, it is convenient. The method and system for providing an authentication service using an IP address according to the present invention performs authentication using only the IP address and port number of the terminal. Accordingly, the authentication procedure can be performed conveniently by preventing the user from leaving the screen, such as attempting to switch screens displayed on the mobile device, during the process of checking a text message to verify the user or authenticate a mobile phone number via an application or the web on a mobile device.

[0034] Second, malicious intent can be blocked. Since the method and system for providing an authentication service using an IP address according to the present invention do not send the IP address to be authenticated in the form of parameters from the user's mobile device, external manipulation is impossible. Accordingly, it is possible to prevent the authentication of a user or the authentication of a mobile phone number from being manipulated by an outsider with malicious intent. Brief explanation of the drawing

[0035] FIG. 1 is a block diagram relating to an authentication service provision system using an IP address according to a first embodiment of the present invention. FIG. 2 is a flowchart of a method for providing an authentication service using an IP address according to a first embodiment of the present invention. FIG. 3 is a diagram illustrating, in accordance with the first embodiment of the present invention, the provision of identity authentication at a first terminal, which is a user terminal, in relation to a method for providing an authentication service using an IP address. FIG. 4 is a diagram exemplarily illustrating the provision of service usage qualification through phone number authentication of a mobile phone at a first terminal, which is a user terminal, in relation to a method for providing an authentication service using an IP address according to a first embodiment of the present invention. FIG. 5 is a block diagram relating to an authentication service provision system using an IP address according to a second embodiment of the present invention. FIG. 6 is a flowchart of a method for providing an authentication service using an IP address according to a second embodiment of the present invention. FIG. 7 is a diagram illustrating, in accordance with the second embodiment of the present invention, an exemplary provision of identity authentication including a first terminal, which is a user terminal, and a second terminal using the service. FIG. 8 is a diagram exemplarily illustrating how, in relation to a method for providing an authentication service using an IP address according to a second embodiment of the present invention, a display is made on the first terminal according to each step when authenticating identity through the second terminal. FIG. 9 is a diagram exemplarily illustrating the provision of membership registration or login for service use through phone number authentication of a mobile phone, including a first terminal which is a user terminal and a second terminal which uses the service, in relation to a method for providing an authentication service using an IP address according to a second embodiment of the present invention. FIG. 10 is a diagram exemplarily illustrating how, in relation to a method for providing an authentication service using an IP address according to a second embodiment of the present invention, when providing membership registration or login for service use through phone number authentication of a mobile phone via a second terminal, the first terminal displays at each step. Specific details for implementing the invention

[0036] Specific structural or functional descriptions regarding embodiments according to the concept of the present invention disclosed herein are provided merely for the purpose of explaining embodiments according to the concept of the present invention, and embodiments according to the concept of the present invention may be implemented in various forms and are not limited to the embodiments described herein.

[0037] Since embodiments according to the concept of the present invention may be subject to various modifications and may take various forms, embodiments are illustrated in the drawings and described in detail in this specification.

[0038] However, this is not intended to limit embodiments according to the concept of the present invention to specific disclosed forms, and includes all modifications, equivalents, or substitutions that fall within the spirit and scope of the present invention.

[0039] When it is stated that one component is "connected" or "connected" to another component, it should be understood that while it may be directly connected or connected to that other component, there may also be other components in between. On the other hand, when it is stated that one component is "directly connected" or "directly connected" to another component, it should be understood that there are no other components in between.

[0040] The terms used in this specification are used merely to describe specific embodiments and are not intended to limit the invention.

[0041] The singular expression includes the plural expression unless the context clearly indicates otherwise. In this specification, terms such as “comprising” or “having” are intended to specify the existence of the disclosed features, numbers, steps, actions, components, parts, or combinations thereof, and should be understood as not precluding the existence or addition of one or more other features, numbers, steps, actions, components, parts, or combinations thereof.

[0042] Unless otherwise defined, all terms used herein, including technical or scientific terms, have the same meaning as generally understood by those skilled in the art to which this invention pertains.

[0043] Terms such as those defined in commonly used dictionaries should be interpreted as having meanings consistent with their meanings in the context of the relevant technology, and should not be interpreted in an ideal or overly formal sense unless explicitly defined in this specification.

[0044] Hereinafter, the specific technical configuration of the present invention will be examined with reference to the attached drawings.

[0045] <제 1 실시예>

[0046] FIG. 1 is a block diagram relating to an authentication service provision system using an IP address according to a first embodiment of the present invention.

[0047] As illustrated in FIG. 1, an authentication service providing system using an IP address according to a first embodiment of the present invention may include a first terminal (100), a service providing server (300), a number authentication server (400), and a network authentication server (500). That is, in the first embodiment, a user directly requests an authentication service from a terminal and receives a result.

[0048] The first terminal (100) is a terminal used or possessed by a user and is configured to request authentication of the user from the service provider server (300) or to request the acquisition of service usage qualification through authentication of a mobile phone number.

[0049] In other words, the first terminal (100) can transmit a first phone number for identity authentication or identity verification to the service provider server (300) through user input. Alternatively, the first terminal (100) can transmit a first phone number obtained through user input to the service provider server (300) as authentication of a mobile phone number is required for membership registration or login, etc. At this time, user authentication includes identity authentication or identity verification, and obtaining eligibility to use the service refers to membership registration or login being performed to use a specific service.

[0050] Here, the first terminal (100) is a mobile device used by a user, including but not limited to a remote device, handheld device, wireless device, portable device, wearable computer, cellular or mobile phone, personal digital assistant (PDA), smartphone, tablet, etc.

[0051] In addition, the information transmitted by the first terminal (100) may additionally include not only the first phone number but also a name, gender, etc.

[0052] The service providing server (300) is configured to receive a request regarding authentication of a user or authentication of a mobile phone number, and to transmit the result of authentication of the user or the result of obtaining eligibility to use the service according to authentication of a mobile phone number to the first terminal (100). This service providing server (300) is connected to the first terminal (100) and can receive the first phone number transmitted by the first terminal (100).

[0053] Additionally, the service providing server (300) may transmit information of the first phone number and the first terminal (100) to the number authentication server (400). At this time, the information of the first terminal (100) is obtained by connecting to the first terminal (100) via a network, and the information of the first terminal (100) may include the public IP address (Internet Protocol Address) and port number of the first terminal (100).

[0054] Additionally, the service providing server (300) can transmit the result of user authentication to the first terminal (100) or transmit the result of obtaining service usage eligibility to the first terminal (100) based on authentication of the mobile phone number, by receiving a result of determination of whether a match is made by comparing the second phone number mapped based on the information of the first phone number and the first terminal (100) from the number authentication server (400).

[0055] Here, the service providing server (300) can be implemented as a computing device, which may be a server-class computer or terminal equipped with a processor. However, it does not necessarily have to be a server-class computer, and can be implemented as a terminal such as a general personal PC or laptop. It may also be implemented as a high-capacity server device, but it does not necessarily have to be high-capacity. Additionally, the service providing server (300) can operate by transmitting and receiving information in conjunction with a database.

[0056] Meanwhile, the service providing server (300) may be named the first server.

[0057] In addition, the service providing server (300) distributes the application to the first terminal (100), and updates to the application can be made from an administrator terminal (not shown). Therefore, the functions of the service providing server (300) can also be performed on the first terminal (100) through the application.

[0058] The number authentication server (400) is configured to compare the first phone number and the second phone number received from the network authentication server (500), and to determine whether the first phone number and the second phone number match. This number authentication server (400) receives information about the first phone number and the first terminal (100) from the service provider server (300), and can transmit the information about the first terminal (100) to the network authentication server (500).

[0059] Additionally, the number authentication server (400) receives a second phone number mapped based on the information of the first terminal (100) from the network authentication server (500), and can determine whether there is a match by comparing the received second phone number with the first phone number. Accordingly, the number authentication server (400) can transmit the determination result to the service providing server (300).

[0060] Here, the number authentication server (400) can be implemented as a computing device, which may be a server-class computer or terminal equipped with a processor. However, it does not necessarily have to be a server-class computer, and can be implemented as a terminal such as a general personal PC or laptop. It may also be implemented as a high-capacity server device, but it does not necessarily have to be high-capacity. Additionally, the number authentication server (400) can operate by transmitting and receiving information in conjunction with a database.

[0061] Meanwhile, the number authentication server (400) may be named the second server.

[0062] The network authentication server (500) is configured to receive information of the first terminal (100) from the number authentication server (400) and transmit a second phone number mapped based on the information of the first terminal (100). This network authentication server (500) can receive a second phone number mapped to the IP address of the first terminal (100) from the NAT server that assigned the IP address of the first terminal (100) and transmit it to the number authentication server (400).

[0063] Here, the Network Authentication Server (NAS) (500) is a server that performs authentication when a user connects to a network. This Network Authentication Server (500) can perform authentication of the user's ID and password, perform access control when connecting to a VPN, corporate network, or Wi-Fi, and perform user and device authentication for network security.

[0064] Additionally, the network authentication server (500) can be implemented as a computing device, which may be a server-class computer or terminal equipped with a processor. However, it does not necessarily have to be a server-class computer, and can be implemented as a terminal such as a general personal PC or laptop. It may also be implemented as a high-capacity server device, but it does not necessarily have to be high-capacity. Furthermore, the network authentication server (500) can operate by transmitting and receiving information in conjunction with a database.

[0065] Meanwhile, an IP address is a unique address that identifies a device on the Internet or a local network. These IP addresses act as a kind of "home address" and can be configured to ensure that data reaches its correct destination on the network.

[0066] In addition, there are types of IP addresses such as IPv4 (Internet Protocol Version 4) and IPv6 (Internet Protocol Version 6).

[0067] IPv4 is a 32-bit address and can be represented as, for example, 192.168.1.1. It also consists of four octets made up of numbers between 0 and 255. A total of 2 32 It provides (approximately 4.3 billion) addresses, but a problem arises where there is a shortage of addresses.

[0068] IPv6 is a 128-bit address and can be represented, for example, as 2001:0db8:85a3:0000:0000:8a2e:0370:7334. It is also expressed in hexadecimal and consists of 8 blocks. A total of 2 128 (approx. 3.4×10 38 By providing addresses, a virtually infinite address space can be secured.

[0069] In addition, IP address types can be classified into public IP addresses and private IP addresses.

[0070] A public IP address is an IP address used directly on the Internet. For example, it may include web servers, routers, etc.

[0071] Private IP addresses are IP addresses used only within an internal network. For example, they may include 192.168.xx, 10.xxx, 172.16.xx to 172.31.xx, etc.

[0072] A port number is a logical number used to distinguish multiple network services within the same IP address. In other words, multiple programs (services) using the same IP address communicate using their respective port numbers. Various port numbers are used for this purpose. Examples include 80 (HTTP), 443 (HTTPS), 22 (SSH), 25 (SMTP), and 53 (DNS).

[0073] In addition, port numbers registered and used by specific applications or companies include, for example, 3306 (MySQL), 3389 (RDP), and 5432 (PostgreSQL).

[0074] In addition, temporary ports used by the client (arbitrarily assigned) include, for example, the temporary port used when a browser connects to a web server.

[0075] Below, a method for providing an authentication service using an IP address in the first embodiment will be described.

[0076] FIG. 2 is a flowchart of a method for providing an authentication service using an IP address according to a first embodiment of the present invention.

[0077] As illustrated in FIG. 2, the authentication service provision method using an IP address according to the first embodiment of the present invention can have a service provision server (300) receive authentication request information including a first phone number from a first terminal (100). <s210>

[0078] Here, the authentication request information is information requesting authentication of the phone number entered by the user to authenticate the user or obtain eligibility to use the service.

[0079] In addition, the authentication request information may include a first phone number entered by the user, as well as a name, gender, etc. entered by the user, and the first terminal (100) may include this together with the first phone number in the authentication request information and transmit the authentication request information to the service provider server (300).

[0080] Here, the information of the first terminal (100) may be obtained by the service providing server (300) by the first terminal (100) being connected to the service providing server (300) via a network, even if the first terminal (100) does not transmit it separately.

[0081] Next, the service provider server (300) can transmit information about the first phone number and the first terminal (100) to the number authentication server (400). <s220>

[0082] At this time, the service providing server (300) can transmit the public IP address and port number, which are information of the first terminal (100), along with the first phone number entered by the user, to the number authentication server (400) in response to the authentication request information.

[0083] Afterwards, the number authentication server (400) can transmit the information of the first terminal (100) to the network authentication server (500). <s230>

[0084] At this time, the number authentication server (400) can transmit the public IP address and port number, which are information of the first terminal (100).

[0085] Next, the network authentication server (500) can transmit the second phone number mapped based on the information of the first terminal (100) to the number authentication server (400). <s240>

[0086] At this time, the second phone number includes a phone number assigned to the public IP address of the first terminal (100), and the network authentication server (500) can receive the phone number from the NAT server and transmit it to the number authentication server (400).

[0087] Subsequently, in response to the number authentication server (400) determining whether the first phone number and the second phone number match, the result of the determination regarding whether the first phone number and the second phone number match can be transmitted to the service providing server (300). <s250>

[0088] At this time, the number authentication server (400) can determine whether the first phone number and the second phone number transmitted from the network authentication server (500) match, and can transmit the result of determining whether the phone numbers match or not to the service providing server (300).

[0089] Finally, the service provider server (300) may transmit the authentication result regarding the user's authentication or the acquisition of service usage eligibility in response to the judgment result. <s260>

[0090] Here, the service providing server (300) receives a judgment result and completes authentication for the first phone number, and through this, can transmit to the first terminal (100) an authentication result for identity verification or identity authentication, or an authentication result for obtaining service usage qualification related to membership registration or login.

[0091] In other words, user authentication in the present invention refers to providing identity verification or identity authentication by comparing the phone number of a mobile phone entered by the user via an IP address with the information of the first terminal (100) and the phone number mapped thereto.

[0092] In addition, obtaining service eligibility refers to providing the ability to register or log in by authenticating the phone number of a mobile phone through a comparison of the phone number of the mobile phone entered by the user via an IP address and the information of the first terminal (100) mapped.

[0093] Below, we will describe, by way of example, the provision of services for identity verification or identity authentication through the first embodiment.

[0094] FIG. 3 is a diagram illustrating, in accordance with the first embodiment of the present invention, the provision of identity authentication at a first terminal (100), which is a user terminal, in relation to the method of providing an authentication service using an IP address.

[0095] As illustrated in FIG. 3, the authentication service providing system according to the first embodiment describes requesting an authentication service regarding identity verification or identity authentication directly from a first terminal (100) used by a user and receiving a result.

[0096] First, authentication request information including a first phone number and information of the first terminal (100) for identity verification or identity authentication can be transmitted from the first terminal (100) to the service providing server (300).

[0097] At this time, the service providing server (300) provides an application related to identity verification or identity authentication, and the first terminal (100) may connect after the application is installed and provide the application to allow the user to input user information including a first phone number, name, gender, etc. Accordingly, the first terminal (100) may transmit the first phone number entered by the user to the service providing server (300), or the first phone number may be transmitted to the service providing server (300) by utilizing information previously entered by the user when the application is installed.

[0098] Therefore, if the first phone number entered by the user matches the first phone number already stored, the service providing server (300) can transmit the first phone number to the number authentication server (400).

[0099] In addition, when the first terminal (100) connects to the application, the service providing server (300) can receive the public IP address and port number, which are information of the first terminal (100), through the application.

[0100] Additionally, when the first terminal (100) connects to the service providing server (300), it may transmit information of the first terminal (100) to the service providing server (300) through a URL (Uniform Resource Locator) address for authentication provided by the service providing server (300).

[0101] Therefore, the service providing server (300) does not receive the public IP address and port number of the first terminal (100) in the form of parameters from the first terminal (100), but can extract them from the application or URL address for authentication.

[0102] In other words, the service provider server (300) can perform authentication of possession of the terminal used by the user through authentication of the mobile phone number, rather than a text message (Short Message Service, SMS) authentication number (One-Time Password, OTP).

[0103] Additionally, the service providing server (300) can transmit the public IP address and port number, which are information of the first terminal (100) that requested identity verification or identity authentication, to the number authentication server (400).

[0104] In addition, the number authentication server (400) can transmit the public IP address and port number, which are information of the first terminal (100) received from the service providing server (300), to the network authentication server (500).

[0105] Here, the number authentication server (400) can check the network environment connected to the first terminal (100). For example, it can check whether the network environment is a mobile network environment such as LTE (Long Term Evolution) or 5G, rather than Wi-Fi. Accordingly, the service provider server (300) can transmit the public IP address and port number assigned in the mobile network environment to the number authentication server (400).

[0106] Additionally, the network authentication server (500) can receive the public IP address and port number of the first terminal (100) from the number authentication server (400). Accordingly, the network authentication server (500) can obtain a second phone number mapped based on the information of the first terminal (100) from a Network Address Translation (NAT) server that assigned the IP address of the mobile device based on the public IP address and port number of the first terminal (100), and transmit it to the number authentication server (400).

[0107] Here, a NAT server is a server that translates IP addresses between a private network and a public network. Such a NAT server converts private IP addresses into public IP addresses, enabling communication with the Internet. Additionally, a NAT server allows multiple devices to connect to the Internet using a single public IP address. Furthermore, NAT servers are used for security and IP address conservation.

[0108] Such a NAT server can map private IP addresses and public IP addresses one-to-one, or map IP addresses by combining them with port numbers. Accordingly, if the IP address of the first terminal (100) is a private IP address, it is converted to a public IP address mapped one-to-one, and the network authentication server (400) can obtain a second phone number mapped to the converted public IP address.

[0109] In addition, the number authentication server (400) receives a second phone number mapped based on the information of the first terminal (100) from the network authentication server (500) and can compare whether the second phone number and the first phone number match.

[0110] Accordingly, the number authentication server (400) can determine whether the first phone number and the second phone number match, and can generate a determination result based on whether the first phone number and the second phone number match or not. Accordingly, the number authentication server (400) can transmit the generated determination result to the service provider server (300).

[0111] In addition, the service providing server (300) receives a judgment result from the number authentication server (400) and can transmit an authentication result for identity verification or identity authentication to the first terminal (100) based on the received judgment result.

[0112] If, based on the judgment result, the first phone number and the second phone number match, the authentication of the first phone number is completed and a message indicating that identity verification or identity authentication has been successfully completed can be sent to the first terminal (100).

[0113] On the other hand, if the first phone number and the second phone number do not match according to the judgment result, the authentication of the first phone number fails and a message indicating that identity verification or identity authentication has failed can be transmitted to the first terminal (100).

[0114] Below, we will describe, by way of example, how to sign up for or log in to use the service by authenticating a mobile phone number through a first embodiment.

[0115] FIG. 4 is a diagram exemplarily illustrating the provision of service usage qualification through phone number authentication of a mobile phone at a first terminal (100), which is a user terminal, in relation to a method for providing an authentication service using an IP address according to a first embodiment of the present invention.

[0116] As illustrated in FIG. 4, the authentication service providing system according to the first embodiment explains that when a user intends to proceed with membership registration or login directly at the first terminal (100) used by the user, phone number authentication regarding the first terminal (100) is performed and the result is received.

[0117] Here, when attempting to sign up or log in, authentication regarding the first phone number entered by the user is performed, and receiving the result can be carried out in a form similar to the identity verification or identity authentication described in FIG. 3 above.

[0118] First, authentication request information including a first phone number for membership registration or login and information of the first terminal (100) can be transmitted from the first terminal (100) to the service providing server (300).

[0119] At this time, the service providing server (300) provides an application that requires membership registration or login, and the first terminal (100) may be provided to allow the user to input user information including a first phone number, name, gender, etc. through the application after the application is installed. Accordingly, the first terminal (100) may transmit the first phone number to the service providing server (300), or the first phone number may be transmitted to the service providing server (300) by utilizing information already entered when the application is installed.

[0120] Therefore, if the first phone number entered by the user matches the first phone number already stored, the service providing server (300) can transmit the first phone number to the number authentication server (400).

[0121] In addition, when the first terminal (100) connects to the application, the service providing server (300) can receive the public IP address and port number, which are information of the first terminal (100), through the application.

[0122] Additionally, when the first terminal (100) connects to the service providing server (300), it may transmit information of the first terminal (100) to the service providing server (300) through a URL address for authentication provided by the service providing server (300).

[0123] Therefore, the service providing server (300) does not receive the public IP address and port number of the first terminal (100) in the form of parameters from the first terminal (100), but can extract them from the application or URL address for authentication.

[0124] In other words, the service provider server (300) can perform authentication of possession of the terminal used by the user through authentication of the mobile phone number rather than the text message authentication number.

[0125] Additionally, the service providing server (300) can transmit the public IP address and port number, which are information of the first terminal (100) that requested membership registration or login, to the number authentication server (400).

[0126] In addition, the number authentication server (400) can transmit the public IP address and port number, which are information of the first terminal (100) received from the service providing server (300), to the network authentication server (500).

[0127] Here, the number authentication server (400) can check the network environment connected to the first terminal (100). For example, it can check whether the network environment is a mobile network environment such as LTE or 5G rather than Wi-Fi. Accordingly, the service provider server (300) can transmit the public IP address and port number assigned in the mobile network environment to the number authentication server (400).

[0128] Additionally, the network authentication server (500) can receive the public IP address and port number of the first terminal (100) from the number authentication server (400). Accordingly, the network authentication server (500) can obtain a second phone number mapped based on the information of the first terminal (100) from the NAT server that assigned the IP address of the mobile device based on the public IP address and port number of the first terminal (100), and transmit it to the number authentication server (400).

[0129] Such a NAT server can map private IP addresses to public addresses one-to-one, or map them in combination with port numbers. Accordingly, if the IP address of the first terminal (100) is a private IP address, it is converted to a public IP address mapped one-to-one, and the network authentication server (400) can obtain a second phone number mapped to the converted public IP address.

[0130] In addition, the number authentication server (400) receives a second phone number mapped based on the information of the first terminal (100) from the network authentication server (500) and can compare the second phone number and the first phone number.

[0131] Accordingly, the number authentication server (400) can determine whether the first phone number and the second phone number match, and can generate a determination result based on whether the first phone number and the second phone number match or not. Accordingly, the number authentication server (400) can transmit the generated determination result to the service provider server (300).

[0132] In addition, the service providing server (300) receives a judgment result from the number authentication server (400) and can transmit the authentication result for membership registration or login to the first terminal (100) based on the received judgment result.

[0133] If, based on the judgment result, the first phone number and the second phone number match, a message can be sent to the first terminal (100) stating that the authentication of the first phone number is completed and membership registration or login has been successfully completed.

[0134] On the other hand, if the first phone number and the second phone number do not match according to the judgment result, a message indicating that the authentication of the first phone number failed and that membership registration or login failed can be sent to the first terminal (100).

[0135] <제 2 실시예>

[0136] FIG. 5 is a block diagram relating to an authentication service provision system using an IP address according to a second embodiment of the present invention.

[0137] As illustrated in FIG. 5, an authentication service providing system using an IP address according to a second embodiment of the present invention may include a first terminal (100), a second terminal (200), a service providing server (300), a number authentication server (400), and a network authentication server (500). That is, in the second embodiment, instead of the user directly requesting the authentication service from the first terminal (100) that the user uses or possesses, the authentication is requested from the second terminal (200), which is the terminal that the user uses the service, and the result is received from the first terminal (100).

[0138] The first terminal (100) is a terminal used or carried by a user, and is configured to obtain and call authentication address information for authentication of the user or authentication of a mobile phone number, and to receive information on whether authentication of the user or authentication of a mobile phone number is successful.

[0139] Here, the first terminal (100) can identify identification information provided by the second terminal (200) to obtain a URL address which is authentication address information, and call the URL address for authentication.

[0140] Additionally, the first terminal (100) can transmit information of the first terminal (100) to the number authentication server (400) based on a URL address for authentication, and can receive information on whether authentication of a mobile phone number or authentication of a user is successful from the number authentication server (400).

[0141] Here, the first terminal (100) is a mobile device used by a user in the same way as in the first embodiment, and includes, but is not limited to, a remote device, a handheld device, a wireless device, a portable device, a wearable computer, a cellular or mobile phone, a personal digital assistant (PDA), a smartphone, a tablet, etc.

[0142] The second terminal (200) is configured to perform an authentication procedure to obtain eligibility to use the service through authentication of the user or authentication of the mobile phone number. This second terminal (200) can transmit the first phone number entered by the user to the service providing server (300).

[0143] Additionally, the second terminal (200) can receive a URL address, which is authentication address information, from the service provider server (300) and transmit it to the first terminal (100).

[0144] In addition, when authentication is completed at the first terminal (100), the second terminal (200) transmits authentication completion call information of the first phone number to the service providing server (300), and can receive and display authentication results regarding user authentication or acquisition of service usage eligibility from the service providing server (300).

[0145] Here, the second terminal (200) includes, but is not limited to, a remote device, workstation, computer, general-purpose computer, internet appliance, handheld device, wireless device, portable device, wearable computer, cellular or mobile phone, personal digital assistant (PDA), smartphone, tablet, ultrabook, netbook, laptop, desktop, multi-processor system, microprocessor-based or programmable consumer electronics, game console, set-top box, network PC, mini computer, etc.

[0146] Accordingly, the second terminal (200) can provide the user with authentication, or registration or login for a specific site or application, through an application or web browser running on the second terminal (200).

[0147] The service providing server (300) receives authentication request information including a request for user authentication or a request for obtaining service usage eligibility through authentication of a mobile phone number based on a first phone number, and transmits the authentication result for user authentication to a second terminal (200), or transmits the authentication result, such as membership registration or login, to the second terminal (200) according to the result for authentication of a mobile phone number.

[0148] Here, the service providing server (300) is connected to the second terminal (200) and receives a first phone number entered by a user from the second terminal (200), and can transmit the authentication address request information requesting a URL address for authentication based on the received first phone number and the first phone number to the number authentication server (400). At this time, the service providing server (300) may include a callback address for receiving a judgment result in the authentication address request information.

[0149] Additionally, the service providing server (300) may transmit the authentication result for user authentication to the second terminal (200) or transmit the authentication result for obtaining service usage eligibility to the second terminal (200) based on the authentication of the mobile phone number, by receiving a judgment result from the number authentication server (400) through a callback address in which the first phone number is compared with the second phone number mapped to the first terminal (100).

[0150] Here, the service providing server (300) can be implemented as a computing device, which may be a server-class computer or terminal equipped with a processor. However, it does not necessarily have to be a server-class computer, and can be implemented as a terminal such as a general personal PC or laptop. It may also be implemented as a high-capacity server device, but it does not necessarily have to be high-capacity. Additionally, the service providing server (300) can operate by transmitting and receiving information in conjunction with a database.

[0151] In addition, the service providing server (300) distributes the application to the second terminal (200), and updates to the application can be made from the administrator terminal (not shown). Therefore, the functions of the service providing server (300) can also be performed on the second terminal (200) through the application.

[0152] The number authentication server (400) is configured to compare a first phone number and a second phone number received from a network authentication server (500), and to determine whether the phone numbers match. This number authentication server (400) may receive a callback address from a service provider server (300) to receive the result of determining whether the first phone number and the second phone number match.

[0153] Additionally, the number authentication server (400) transmits a URL address, which is authentication address information for the number authentication server (400) to receive information of the first terminal (100), to the service provider server (300), and can transmit the information of the first terminal (100) received through the URL address to the network authentication server (500).

[0154] Additionally, the number authentication server (400) receives a second phone number mapped based on the information of the first terminal (100) from the network authentication server (500), and can determine whether there is a match by comparing the received second phone number with the first phone number. Accordingly, the number authentication server (400) can transmit the determination result to the service provider server (300). Additionally, the number authentication server (400) can transmit information on whether authentication is successful to the first terminal (100).

[0155] Here, the number authentication server (400) can be implemented as a computing device, which may be a server-class computer or terminal equipped with a processor. However, it does not necessarily have to be a server-class computer, and can be implemented as a terminal such as a general personal PC or laptop. It may also be implemented as a high-capacity server device, but it does not necessarily have to be high-capacity. Additionally, the number authentication server (400) can operate by transmitting and receiving information in conjunction with a database.

[0156] The network authentication server (500) is configured to transmit a second phone number mapped based on the information of the first terminal (100). This network authentication server (500) can receive the second phone number mapped based on the information of the first terminal (100) from the NAT server that assigned the IP address of the first terminal (100) and transmit it to the number authentication server (400).

[0157] Below, we will describe, by way of example, the provision of services for identity authentication or identity verification through a second embodiment.

[0158] FIG. 6 is a flowchart of a method for providing an authentication service using an IP address according to a second embodiment of the present invention.

[0159] As illustrated in FIG. 6, the method for providing an authentication service using an IP address according to the second embodiment of the present invention allows a service providing server (300) to receive authentication request information including a first phone number from a second terminal (200). <s610>

[0160] At this time, the first phone number is a phone number entered by the user through the second terminal (200), and the authentication request information may include a name, gender, etc. along with the first phone number, and the second terminal (200) may include this along with the first phone number and transmit the authentication request information to the service provider server (300).

[0161] Next, the service provider server (300) can transmit the first phone number and authentication address request information to the number authentication server (400). <s620>

[0162] At this time, the service provider server (300) may request a URL address for the number authentication server (400) to receive information of the first terminal (100) through authentication address request information, and may transmit a callback address to receive the result of determining whether the first phone number and the second phone number match.

[0163] Afterwards, the number authentication server (400) can transmit the authentication address information to the service provider server (300) based on the authentication address request information. <s630>

[0164] At this time, the authentication address information is a URL address for the number authentication server (400) to receive information from the first terminal (100).

[0165] Next, the service provider server (300) can transmit authentication address information to the second terminal (200). <s640>

[0166] Afterwards, the second terminal (200) can provide identification information including authentication address information. <s650>

[0167] At this time, the second terminal (200) can display identification information containing authentication address information on an application or a web browser.

[0168] Next, the first terminal (100) can identify identification information and transmit the information of the first terminal (100) to the number authentication server (400) through authentication address information. <s660>

[0169] At this time, the first terminal (100) can obtain a URL address through identification information and call the URL address to transmit the public IP address and port number, which are information of the first terminal (100), to the number authentication server (400).

[0170] Next, the number authentication server (400) can transmit the information of the first terminal (100) to the network authentication server (500). <s670>

[0171] At this time, the number authentication server (400) can transmit the public IP address and port number, which are information of the first terminal.

[0172] Afterwards, the network authentication server (500) can transmit the second phone number mapped based on the information of the first terminal (100) to the number authentication server (400). <s680>

[0173] At this time, the second phone number is a phone number assigned to the public IP address of the first terminal (100), and the network authentication server (500) can transmit the phone number to the number authentication server (400).

[0174] Next, the number authentication server (400) can determine whether the first phone number and the second phone number match and transmit the result of the determination of whether they match to the service providing server (300). <s690>

[0175] At this time, the number authentication server (400) can determine whether the first phone number and the second phone number transmitted from the network authentication server match, and can transmit the result of determining whether the phone numbers match or not to the service providing server (300).

[0176] Afterwards, the number authentication server (400) can transmit information on whether the authentication of the first phone number is successful to the first terminal (100) based on the authentication address information and the judgment result. <s6100>

[0177] At this time, the number authentication server (400) can determine whether the first phone number and the second phone number match by comparing them, and accordingly, if the authentication regarding the first phone number is successfully completed, it can transmit the completion of authentication to the first terminal (100), and if the authentication fails, it can transmit the failure of authentication to the first terminal (100).

[0178] Finally, the service provider server (300) can transmit the authentication result for user authentication or obtaining service usage eligibility to the second terminal (200). <s6110>

[0179] At this time, the service providing server (300) receives a judgment result from the number authentication server (400) and completes authentication for the first phone number upon receiving authentication completion call information regarding the first phone number from the second terminal (200), and can transmit to the second terminal (200) an authentication result regarding identity verification or identity authentication, or an authentication result regarding the acquisition of service usage eligibility indicating that membership registration or login has been performed.

[0180] Below, we will describe, by way of example, the provision of services for identity authentication or identity verification through a second embodiment.

[0181] FIG. 7 is a diagram exemplarily illustrating the provision of identity authentication including a first terminal (100), which is a user terminal, and a second terminal (200), which uses the service, in relation to a method for providing an authentication service using an IP address according to a second embodiment of the present invention, and FIG. 8 is a diagram exemplarily illustrating the display on the first terminal (100) according to each step when authenticating identity through the second terminal (200) in relation to a method for providing an authentication service using an IP address according to a second embodiment of the present invention.

[0182] As illustrated in FIGS. 7 and 8, an authentication service providing system according to the second embodiment describes requesting an authentication service regarding identity authentication or identity verification at a second terminal (200) other than the first terminal (100) used by the user, and receiving the result.

[0183] First, the user enters a first phone number for identity authentication or identity verification through the second terminal (200), and the second terminal (200) can transmit authentication request information including the first phone number to the service provider server (300). At this time, the authentication request information may additionally include the user's name, gender, etc. in addition to the first phone number.

[0184] That is, as illustrated in FIG. 8(a), the user can input a phone number, name, gender, etc. at the second terminal (200) and select a tab called "Authentication Request" so that the second terminal (200) transmits the first phone number to the service provider server (300) and requests authentication.

[0185] Afterwards, the service provider server (300) may request a URL address for authentication from the number authentication server (400). At this time, when the service provider server (300) requests a URL address from the number authentication server (400), it may transmit a callback address to receive the result of determining whether the first phone number and the second phone number match.

[0186] That is, the service provider server (300) can request a URL address with a callback address and a first phone number as arguments. This callback address can be generated based on the first phone number.

[0187] Next, the number authentication server (400) can generate a URL address for authentication and transmit it to the service provider server (300). At this time, the URL address for authentication has a predetermined validity period and can be discarded after the validity period has expired.

[0188] Additionally, the service provider server (300) can receive a URL address from the number authentication server (400) and transmit the URL address to the second terminal (200).

[0189] In addition, the second terminal (200) can receive a URL address and generate and display identification information containing the URL address to provide to the user. For example, the identification information can be generated in the form of a QR (Quick Response) code.

[0190] Therefore, the user can obtain a URL address for authentication by scanning the QR code with the first terminal (100).

[0191] Additionally, the first terminal (100) can call a URL address to transmit information of the first terminal (100) to the number authentication server (400). This information of the first terminal (100) includes a public IP address and a port number, and can be extracted from the called URL address.

[0192] For example, as shown in Fig. 8 (b), a URL address for authentication can be called to perform identity verification or identity confirmation using a phone number on a specific site.

[0193] Additionally, the number authentication server (400) can transmit the information of the received first terminal (100) to the network authentication server (500). At this time, the number authentication server (400) can check the network environment connected to the first terminal (100).

[0194] For example, it can be checked whether the network environment is a mobile network environment such as LTE or 5G rather than Wi-Fi. Accordingly, the service provider server (300) can transmit the public IP address and port number assigned in the mobile network environment to the number authentication server (400).

[0195] Additionally, the network authentication server (500) can receive the public IP address and port number of the first terminal (100) from the number authentication server (400). Accordingly, the network authentication server (500) can obtain a second phone number mapped based on the information of the first terminal (100) from the NAT server that assigned the IP address of the mobile device based on the public IP address and port number of the first terminal (100), and transmit it to the number authentication server (400).

[0196] Such a NAT server can map private IP addresses to public addresses one-to-one, or map them in combination with port numbers.

[0197] In addition, the number authentication server (400) receives a second phone number mapped based on the information of the first terminal (100) from the network authentication server (500) and can compare the second phone number and the first phone number.

[0198] Accordingly, the number authentication server (400) can determine whether the first phone number and the second phone number match, and can transmit the determination result based on whether they match or not. At this time, the generated determination result can be transmitted by the number authentication server (400) to the service provider server (300) based on the received callback address.

[0199] In addition, the number authentication server (400) can transmit information on whether the authentication regarding the first phone number is successful to the first terminal (100) in response to determining whether the first phone number and the second phone number match.

[0200] For example, as shown in Fig. 8 (c), authentication for the first phone number is completed, and a message instructing the first terminal (100) to proceed with identity authentication or identity verification at the second terminal (200) may be displayed.

[0201] Additionally, as the authentication of the first phone number is completed at the second terminal (200), the authentication completion is called as in (d) of FIG. 8 and transmitted to the service providing server (300), and the service providing server (300) can transmit the authentication result for identity verification or identity authentication to the second terminal (200) according to the result of the determination of whether the first phone number and the second phone number match and the result of the authentication completion call information as in (e) of FIG. 8.

[0202] Below, we will describe, by way of example, how to sign up for or log in to use the service by authenticating a mobile phone number through a second embodiment.

[0203] FIG. 9 is a diagram exemplarily illustrating the provision of membership registration or login for service use through phone number authentication of a mobile phone, including a first terminal (100) which is a user terminal and a second terminal (200) which uses the service, in relation to a method of providing an authentication service using an IP address according to a second embodiment of the present invention, and FIG. 10 is a diagram exemplarily illustrating the provision of membership registration or login for service use through phone number authentication of a mobile phone via the second terminal (200) in relation to a method of providing an authentication service using an IP address according to a second embodiment of the present invention, and displaying on the first terminal (100) according to each step.

[0204] As illustrated in FIGS. 9 and 10, an authentication service providing system according to the second embodiment describes requesting an authentication service regarding a mobile phone number for membership registration or login at a second terminal (200) other than the first terminal (100) used by the user, and receiving the result.

[0205] First, the user enters a first phone number for membership registration or login through the second terminal (200), and the second terminal (200) can transmit authentication request information including the first phone number to the service provider server (300). At this time, the authentication request information may additionally include the user's name, gender, etc. in addition to the first phone number.

[0206] For example, as illustrated in FIG. 10 (a), at the second terminal (200), the user may enter a phone number to log in to the service provider server (300) and request a login.

[0207] Afterwards, the service provider server (300) may request a URL address for authentication from the number authentication server (400). At this time, when the service provider server (300) requests a URL address from the number authentication server (400), it may transmit a callback address to receive the result of determining whether the first phone number and the second phone number match.

[0208] That is, the service provider server (300) can request a URL address with a callback address and a first phone number as arguments. This callback address can be generated based on the first phone number.

[0209] Next, the number authentication server (400) can generate a URL address for authentication and transmit it to the service provider server (300). At this time, the URL address for authentication has a predetermined validity period and can be discarded after the validity period has expired.

[0210] Additionally, the service provider server (300) can receive a URL address from the number authentication server (400) and transmit the URL address to the second terminal (200).

[0211] In addition, the second terminal (200) can receive a URL address and generate and display identification information containing the URL address to provide to the user. For example, the identification information can be generated in the form of a QR code.

[0212] Therefore, the user can obtain a URL address for authentication by scanning the QR code with the first terminal (100).

[0213] Additionally, the first terminal (100) can call a URL address to transmit information of the first terminal (100) to the number authentication server (400). This information of the first terminal (100) includes a public IP address and a port number, and can be extracted from the called URL address.

[0214] For example, as shown in Fig. 10 (b), a URL address can be called to authenticate a mobile phone number in order to proceed with logging in to a specific site using a phone number.

[0215] Additionally, the number authentication server (400) can transmit the information of the received first terminal (100) to the network authentication server (500). At this time, the number authentication server (400) can check the network environment connected to the first terminal (100).

[0216] For example, it can be checked whether the network environment is a mobile network environment such as LTE or 5G rather than Wi-Fi. Accordingly, the service provider server (300) can transmit the public IP address and port number assigned in the mobile network environment to the number authentication server (400).

[0217] Additionally, the network authentication server (500) can receive the public IP address and port number of the first terminal (100) from the number authentication server (400). Accordingly, the network authentication server (500) can obtain a second phone number mapped based on the information of the first terminal (100) from the NAT server that assigned the IP address of the mobile device based on the public IP address and port number of the first terminal (100), and transmit it to the number authentication server (400).

[0218] Such a NAT server can map private IP addresses to public addresses one-to-one, or map them in combination with port numbers.

[0219] In addition, the number authentication server (400) receives a second phone number mapped based on the information of the first terminal (100) from the network authentication server (500) and can compare the second phone number and the first phone number.

[0220] Accordingly, the number authentication server (400) can determine whether the first phone number and the second phone number match, and can transmit the determination result based on whether they match or not. At this time, the generated determination result can be transmitted by the number authentication server (400) to the service provider server (300) based on the received callback address.

[0221] In addition, the number authentication server (400) can transmit information on whether the authentication regarding the first phone number is successful to the first terminal (100) in response to determining whether the first phone number and the second phone number match.

[0222] For example, as shown in (c) of FIG. 10, authentication for the first terminal (100) is completed, and a message to proceed with login from the second terminal (200) may be displayed on the first terminal (100).

[0223] Additionally, as the authentication of the first phone number is completed at the second terminal (200), the authentication completion is called as in (d) of FIG. 10 and transmitted to the service providing server (300), and the service providing server (300) can transmit the authentication result for login completion to the second terminal (200) according to the result of the determination of whether the first phone number and the second phone number match and the result of the authentication completion call information as in (e) of FIG. 10.

[0224] The preferred embodiments of the present invention described above are disclosed for illustrative purposes only, and those skilled in the art with ordinary knowledge of the present invention will be able to make various modifications, changes, and additions within the spirit and scope of the present invention, and such modifications, changes, and additions should be considered to fall within the scope of the claims of the present invention. Explanation of the symbols

[0225] 100 : 1st terminal 200 : Second terminal 300: Service Provider Server 400: Number Verification Server 500: Network Authentication Server

Claims

Claim 1 A method for providing an authentication service using an IP address by a first server, comprising: receiving authentication request information including a first phone number from a first terminal; transmitting information of the first phone number and the first terminal to a second server in response to the authentication request information; receiving a determination result regarding whether the first phone number and the second phone number match from the second server; and transmitting an authentication result to the first terminal based on the received determination result, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number is a phone number mapped based on information of the first terminal received from a network authentication server. Claim 2 A method for providing an authentication service using an IP address, wherein the information of the first terminal includes at least one of an IP address (Internet Protocol Address) and a port number assigned to the first terminal. Claim 3 A method for providing an authentication service using an IP address according to claim 2, wherein the IP address assigned to the first terminal and the port number are extracted through an application or URL (Uniform Resource Locator) address provided by the first server. Claim 4 A method for providing an authentication service using an IP address by a second server, comprising: receiving information of the first phone number and the first terminal from a first server that has received authentication request information including a first phone number from a first terminal; transmitting the information of the first terminal to a network authentication server; receiving a second phone number from the network authentication server; and transmitting a determination result to the first server in response to determining whether the first phone number and the second phone number match, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number is a phone number mapped based on the information of the first terminal. Claim 5 A method for providing an authentication service using an IP address, wherein the information of the first terminal includes at least one of an IP address and a port number assigned to the first terminal. Claim 6 A method for providing an authentication service using an IP address, wherein the IP address assigned to the first terminal is an IP address configured by mapping a private IP address and a public IP address one-to-one. Claim 7 A method for providing an authentication service using an IP address according to claim 5, wherein the IP address assigned to the first terminal is an IP address configured to be mapped in combination with the port number. Claim 8 A method for providing an authentication service using an IP address by a first server, comprising: receiving authentication request information including a first phone number from a second terminal; transmitting the first phone number and authentication address request information to a second server; receiving authentication address information generated based on the authentication address request information from the second server; transmitting the received authentication address information to the second terminal; receiving a determination result regarding whether the first phone number and the second phone number match from the second server by the first terminal, having obtained the authentication address information from the second terminal, calling the authentication address information; receiving authentication completion call information from the second terminal; and transmitting an authentication result to the second terminal in response to the received determination result and the received authentication completion call information, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number is a phone number mapped based on the information of the first terminal received from a network authentication server. Claim 9 In claim 8, the information of the first terminal includes at least one of an IP address and a port number assigned to the first terminal, a method for providing an authentication service using an IP address. Claim 10 A method for providing an authentication service using an IP address, wherein the authentication address request information includes a callback address for receiving the result of determining whether the first phone number and the second phone number match, and the result of determining is received through the callback address. Claim 11 A method for providing an authentication service using an IP address by a second server, comprising: receiving authentication request information including a first phone number from a second terminal, and receiving the first phone number and authentication address request information from a first server that has received authentication request information including a first phone number from a second terminal; transmitting authentication address information generated based on the authentication address request information to the first server; obtaining information of the first terminal based on the first terminal calling the authentication address information; transmitting the obtained information of the first terminal to a network authentication server; receiving a second phone number from the network authentication server; determining whether the first phone number and the second phone number match; and transmitting the result of determining whether the first phone number and the second phone number match to the first server, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number is a phone number mapped based on the information of the first terminal. Claim 12 A method for providing an authentication service using an IP address according to claim 11, comprising transmitting information on whether authentication regarding the first phone number is successful to the first terminal in response to determining whether the first phone number and the second phone number match. Claim 13 A method for providing an authentication service using an IP address according to claim 11, wherein the step of obtaining information of the first terminal based on the first terminal calling the authentication address information comprises the step of obtaining information of the first terminal by the first terminal obtaining identification information containing the authentication address information by the second terminal that received the authentication address information from the first server and calling the authentication address information. Claim 14 A method for providing an authentication service using an IP address, wherein, in claim 13, the identification information includes a QR (Quick Response) code, and the first terminal scans the QR code to obtain the authentication address information from the second terminal. Claim 15 A method for providing an authentication service using an IP address, wherein the second terminal is a terminal on which an application or web browser is running to transmit requests regarding identity authentication, membership registration, or login. Claim 16 A method for providing an authentication service using an IP address according to claim 11, wherein the authentication address information includes a URL address, and the IP address assigned to the first terminal and the port number are extracted through the URL address. Claim 17 A method for providing an authentication service using an IP address, wherein, in any one of claims 1 to 16, the authentication request information includes a request for identity authentication, membership registration, or login. Claim 18 An authentication service providing system using an IP address comprises: a first server that receives authentication request information including a first phone number from a first terminal, transmits information of the first phone number and the first terminal to a second server in response to the authentication request information, receives a judgment result transmitted by the second server, and transmits an authentication result to the first terminal; a second server that transmits information of the first terminal to a network authentication server, transmits a judgment result to the first server in response to a judgment on whether the first phone number and the second phone number match; and a network authentication server that transmits the second phone number to the second server in response to receiving information of the first terminal from the second server, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number is a phone number mapped based on information of the first terminal. Claim 19 In a system for providing authentication services using an IP address, the first server receives authentication request information including a first phone number from a second terminal, transmits the first phone number and authentication address request information to a second server, receives authentication address information generated based on the authentication address request information from the second server and transmits it to the second terminal, and transmits an authentication result to the second terminal based on authentication completion call information received from the second terminal and a judgment result transmitted by the second server; the second server generates authentication address information based on the authentication address request information received from the first server and transmits it to the first server, transmits information of the first terminal obtained based on the first terminal calling the authentication address information to a network authentication server, receives a second phone number from the network authentication server, determines whether the first phone number and the second phone number match, and transmits the judgment result to the first server. A system for providing authentication services using an IP address, comprising a network authentication server that transmits the second phone number to the second server, wherein the first phone number is a phone number entered by a user for authentication, and the second phone number is a phone number mapped based on the information of the first terminal.