Remote authentication method and device, electronic equipment and storage medium
By having agents complete remote authentication online, the problem of high time and manpower costs associated with remote authentication is solved, achieving an efficient remote authentication process and data traceability.
Patent Information
- Application Number
- CN202211143373.5
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2022-09-20
- Publication Date
- 2025-12-05
- Estimated Expiration
- 2042-09-20
AI Technical Summary
Existing remote certification methods are time-consuming and labor-intensive, requiring the target to mail certification materials or conduct on-site certification at an agency in a different location.
The certification materials are certified online by the agent in the target location, and the certification information is returned to the commissioning agency, thus realizing remote certification. This includes obtaining remote certification requests, obtaining or denying approval from the testing management terminal, allocating certification matters, obtaining certification information and feeding it back to the commissioning agency.
It saves time and manpower costs, enables closed-loop operation of remote certification, and supports digital process tracking and data backup to ensure legality and compliance.
Smart Images

Figure CN115865397B_ABST
Abstract
Description
TECHNICAL FIELD
[0001] The present application relates to the technical field of identity authentication, in particular to a remote authentication method and device, electronic equipment and storage medium. BACKGROUND
[0002] At present, in order to strengthen business management, when a target object handles an account opening, account change, account cancellation business and account daily management business, each institution usually needs to authenticate the qualifications of each target object. In order to ensure the authenticity of the authentication information, each institution usually requires the target object to handle it at the counter. In the process of handling at the counter, the target object needs to provide corresponding authentication materials according to the content of the business handled. If the target object is in a remote place, the target object needs to be authenticated remotely.
[0003] According to the current remote authentication method, the target object usually needs to mail the authentication materials remotely, or the institution needs to go to the target object's place to conduct on-site authentication. This remote method consumes high time cost and labor cost. SUMMARY
[0004] The embodiments of the present application provide a remote authentication method, device, electronic equipment and storage medium, which are used to solve the problem of high time cost and labor cost of remote authentication.
[0005] In a first aspect, the present application provides a remote authentication method, which comprises:
[0006] obtaining a remote authentication request initiated by a consignor, and sending the remote authentication request to a first management terminal corresponding to an agent;
[0007] detecting whether the first management terminal accepts an authentication business corresponding to the remote authentication request;
[0008] in response to the first management terminal accepting the authentication business, assigning each authentication matter corresponding to the authentication business to each execution terminal corresponding to the agent;
[0009] obtaining authentication information corresponding to each authentication matter through each execution terminal respectively, and sending each authentication information to the consignor through the first management terminal.
[0010] Through the above method, the authentication materials of the target object are authenticated by the agent in the target object's place, and the authentication information is returned to the consigning institution, which can realize remote authentication in an online manner, saving time cost and labor cost. In addition, in the authentication process, the agent authentication realizes the circulation of the business processes of initiation, response, assignment, execution and reply, and the process steps are reminded through a preset manner, so that the whole remote authentication business realizes closed-loop operation.
[0011] In a possible design, the method further includes:
[0012] In response to the preset terminal corresponding to the principal receiving the off-site authentication request, sending the off-site authentication request to a second management terminal corresponding to the principal;
[0013] detecting whether the second management terminal agrees to entrust the authentication service to the agent;
[0014] if yes, sending the off-site authentication request to the first management terminal;
[0015] if no, returning the off-site authentication request to the preset terminal.
[0016] By the method, the starting process of off-site authentication is controllable.
[0017] In a possible design, after the off-site authentication request is returned to the preset terminal, the method further includes:
[0018] detecting whether the preset terminal modifies the authentication content of the off-site authentication request;
[0019] if yes, sending the modified off-site authentication request to the second management terminal, and sending the modified off-site authentication request to the first management terminal after the second management terminal confirms;
[0020] if no, ending the current off-site authentication process.
[0021] By the method, the authentication content and the authentication manner of off-site authentication are controllable.
[0022] In a possible design, the detecting whether the first management terminal accepts the authentication service corresponding to the off-site authentication request includes:
[0023] detecting whether the first management terminal accepts the authentication service corresponding to the off-site authentication request;
[0024] in response to the first management terminal refusing to entrust the authentication service, ending the current off-site authentication process.
[0025] In a possible design, the method further includes:
[0026] determining each authentication matter corresponding to the authentication service;
[0027] allocate each authentication matter to each execution terminal corresponding to the agent party;
[0028] detect whether the first management terminal withdraws the authentication matters;
[0029] if yes, re-allocate the authentication matters to each execution terminal.
[0030] By the above method, the allocation of authentication matters is controllable.
[0031] In a possible design, the sending of the authentication information to the entrusting party via the first management terminal includes:
[0032] determine whether the first management terminal decides to postpone the reply;
[0033] if yes, determine the reply time and send the authentication information to the entrusting party via the first management terminal according to the reply time;
[0034] if no, send the authentication information to the entrusting party via the first management terminal.
[0035] By the above method, the reply time of authentication information is flexibly processed.
[0036] In a second aspect, the present application provides a remote authentication device, which includes:
[0037] an obtaining module, configured to obtain a remote authentication request initiated by an entrusting party and send the remote authentication request to a first management terminal corresponding to an agent party;
[0038] a detecting module, configured to detect whether the first management terminal accepts an authentication service corresponding to the remote authentication request;
[0039] an allocating module, configured to, in response to the first management terminal accepting the authentication service, allocate each authentication matter corresponding to the authentication service to each execution terminal corresponding to the agent party;
[0040] an authenticating module, configured to obtain authentication information corresponding to each authentication matter via each execution terminal respectively and send the authentication information to the entrusting party via the first management terminal.
[0041] In a possible design, the obtaining module is specifically configured to:
[0042] in response to a preset terminal corresponding to the entrusting party receiving the remote authentication request, send the remote authentication request to a second management terminal corresponding to the entrusting party;
[0043] detecting whether the second management terminal agrees to delegate the authentication service to the proxy party;
[0044] if yes, sending the out-of-place authentication request to the first management terminal;
[0045] if no, returning the out-of-place authentication request to the preset terminal.
[0046] In a possible design, the obtaining module is further configured to:
[0047] detecting whether the preset terminal modifies the authentication content of the out-of-place authentication request;
[0048] if yes, sending the modified out-of-place authentication request to the second management terminal, and sending the modified out-of-place authentication request to the first management terminal after the second management terminal confirms;
[0049] if no, ending the current out-of-place authentication process.
[0050] In a possible design, the detecting module is specifically configured to:
[0051] detecting whether the first management terminal accepts proxying the authentication service corresponding to the out-of-place authentication request;
[0052] in response to the first management terminal refusing to proxy the authentication service, ending the current out-of-place authentication process.
[0053] In a possible design, the allocating module is specifically configured to:
[0054] determining each authentication matter corresponding to the authentication service;
[0055] allocating each authentication matter to each execution terminal corresponding to the proxy party;
[0056] detecting whether the first management terminal withdraws the authentication matters;
[0057] if yes, reallocating the authentication matters to each execution terminal.
[0058] In a possible design, the authentication module is specifically configured to:
[0059] judging whether the first management terminal decides to postpone the reply;
[0060] if yes, determining a reply time, and sending each authentication information to the proxy party through the first management terminal according to the reply time;
[0061] if no, sending each authentication information to the proxy party through the first management terminal.
[0062] In a third aspect, the present application provides an electronic device, comprising:
[0063] a memory for storing program instructions;
[0064] a processor for invoking the program instructions stored in the memory, and performing the steps included in the off-site authentication method according to the obtained program instructions.
[0065] In a fourth aspect, the present application provides a computer readable storage medium, which stores a computer program, the computer program comprising program instructions, the program instructions causing a computer to execute the off-site authentication method according to any one of the first aspect when the computer executes the program instructions.
[0066] In a fifth aspect, the present application provides a computer program product, which comprises computer program codes, the computer program codes causing a computer to execute the off-site authentication method according to any one of the first aspect when the computer program codes run on the computer.
[0067] Any one of the off-site authentication method, device, electronic device and storage medium provided by the present application selects an agent in the place of a target object, completes the authentication of the authentication material of the target object by the agent, and returns the authentication information to the entrusted institution, which can realize the off-site authentication in an online manner. In addition, in the authentication process, the agent authentication realizes the circulation of the business processes of initiation, response, distribution, execution and reply, and the process steps are reminded by a preset manner, so that the entire off-site authentication business realizes closed-loop operation. Moreover, the agent authentication process can be tracked by a digital process, and the data collected in a legal and compliant manner is backed up by a digital information, so that the entire off-site authentication business can well support the traceability of operation and materials. BRIEF DESCRIPTION OF DRAWINGS
[0068] Figure 1 A possible application scenario provided by the embodiment of the present application is shown in a schematic diagram;
[0069] Figure 2 A flowchart of an off-site authentication method provided by the embodiment of the present application is shown in a schematic diagram;
[0070] Figure 3 An application example diagram of an off-site authentication method provided by the embodiment of the present application is shown in a schematic diagram;
[0071] Figure 4 A structure diagram of an off-site authentication device provided by the embodiment of the present application is shown in a schematic diagram;
[0072] Figure 5 A structure diagram of an electronic device provided by the embodiment of the present application is shown in a schematic diagram. DETAILED DESCRIPTION
[0073] To make the objects, technical solutions and advantages of the present application clearer, the technical solutions in the embodiments of the present application will be described below in a clear and complete manner with reference to the drawings in the embodiments of the present application. Obviously, the described embodiments are only a part of the embodiments of the present application, rather than all the embodiments. Based on the embodiments in the present application, all other embodiments obtained by a person of ordinary skill in the art without creative work fall within the protection scope of the present application. The embodiments in the present application and the features in the embodiments can be combined with each other in a non-conflicting manner. Moreover, although a logical sequence is shown in the flowchart, in some cases, the steps shown or described can be performed in an order different from the order shown.
[0074] The terms "first" and "second" in the description and claims of the present application and the above drawings are used to distinguish different objects, rather than to describe a specific sequence. In addition, the term "comprising" and any variations thereof are intended to cover non-exclusive protection. For example, a process, method, system, product or device including a series of steps or units is not limited to the listed steps or units, but can optionally include steps or units not listed, or can optionally include other steps or units inherent to the process, method, product or device. "Multiple" in the present application can mean at least two, for example, can be two, three or more, and the embodiments of the present application are not limited.
[0075] In the technical solutions of the present application, the collection, transmission and use of data comply with the requirements of relevant national laws and regulations.
[0076] Before introducing the off-site authentication method provided by the embodiments of the present application, in order to facilitate understanding, the technical background of the embodiments of the present application will be introduced in detail first.
[0077] In order to strengthen business management, each institution usually needs to perform qualification authentication on each target object when performing the business of opening an account, changing an account, canceling an account and daily management of an account. In order to ensure the authenticity of the authentication information, each institution usually requires the target object to perform the business at the counter. In the process of performing the business at the counter, the target object needs to provide corresponding authentication materials according to the content of the business. If the target object is in a different place, the off-site authentication needs to be performed on the target object.
[0078] According to the current off-site authentication method, the target object usually needs to mail the authentication materials from a different place, or the institution needs to go to the place where the target object is located to perform on-site authentication. This off-site method consumes high time cost and labor cost.
[0079] To solve the above problems, the embodiment of the present application provides a remote authentication method and device, electronic equipment and storage medium, which can complete the authentication of the authentication material of the target object by the proxy party in the place where the target object is located, and reply the authentication information to the entrusted organization, so as to realize the remote authentication in an online manner, save the time cost and labor cost.
[0080] Based on the above technical effects, the preferred embodiments of the present application are described below in combination with the drawings of the specification. It should be understood that the preferred embodiments described herein are only used to illustrate and explain the present application, and do not limit the present application, and the embodiments and features of the embodiments can be combined with each other without conflict.
[0081] As shown in Figure 1 , a possible application scenario diagram provided by the embodiment of the present application, the application scenario includes: target terminal (101a, 101b) and server 102. Wherein, the target terminal (101a, 101b) and the server 102 can carry out information interaction through the communication network, the communication network adopts the communication mode can include: wireless communication mode and wired communication mode.
[0082] For example, the target terminal (101a, 101b) can access the network and communicate with the server 102 through the cellular mobile communication technology, and the cellular mobile communication technology includes the fifth generation mobile communication (5th Generation Mobile Networks, 5G) technology.
[0083] For example, the target terminal (101a, 101b) can access the network and communicate with the server 102 through the short distance wireless communication mode, and the short distance wireless communication mode includes the wireless fidelity (Wireless Fidelity, Wi-Fi) technology.
[0084] The embodiment of the present application does not make any limitation on the number of the above devices, as Figure 1 shown, only the target terminal (101a, 101b) and the server 102 are taken as examples for description, and the above devices and their respective functions are briefly introduced below.
[0085] The target terminal (101a, 101b) is a device that can provide voice and / or data connectivity to users, including handheld terminal devices with wireless connection function, vehicle-mounted terminal devices, etc.
[0086] Exemplarily, the target terminal (101a, 101b) includes, but is not limited to, a mobile phone, a tablet computer, a notebook computer, a palm computer, a mobile Internet device (MID), a wearable device, a virtual reality (VR) device, an augmented reality (AR) device, a wireless terminal device in industrial control, a wireless terminal device in unmanned driving, a wireless terminal device in smart grid, a wireless terminal device in transportation safety, a wireless terminal device in smart city, or a wireless terminal device in smart home, and the like.
[0087] In addition, a client related to off-site authentication can be installed on the target terminal (101a, 101b), which can be software (for example, APP, browser, short video software, etc.), or a webpage, applet, etc. In the embodiment of the present application, the target terminal (101a, 101b) can use the above-mentioned client related to off-site authentication service, and can interact with the server 102 related to off-site authentication service scene information.
[0088] Further, the server 102 can be a stand-alone physical server, or a server cluster or distributed system composed of multiple physical servers, or a cloud server providing cloud service, cloud database, cloud computing, cloud function, cloud storage, network service, cloud communication, middleware service, domain name service, security service, content delivery network (CDN), and basic cloud computing services such as big data and artificial intelligence platform.
[0089] Further, in the embodiment of the present application, the server 102 described above can be equipped with an off-site authentication service platform corresponding to the above-mentioned client, which is used to execute off-site authentication service.
[0090] Based on the above application scenarios, the off-site authentication method provided by the embodiment of the present application will be described and explained in combination with the reference drawings, as shown in the following Figure 2 The off-site authentication method provided by the embodiment of the present application specifically includes the following steps:
[0091] S201, obtaining an off-site authentication request initiated by a principal party, and sending the off-site authentication request to a first management terminal corresponding to an agent party;
[0092] S202, detecting whether the first management terminal accepts authentication service corresponding to the agent off-site authentication request;
[0093] S203, in response to the management terminal accepting the authentication service, assigning each authentication matter corresponding to the authentication service to each execution terminal corresponding to the agent party.
[0094] S204, respectively obtaining the authentication information corresponding to each authentication matter through each execution terminal, and sending each authentication information to the entrusting party through the first management terminal.
[0095] Specifically, when an organization needs to conduct qualification authentication on a target object located in a remote place, in order to avoid the target object mailing authentication materials from a remote place, or the time cost and labor cost caused by the organization going to the target object's location for on-site investigation, the embodiment of the application completes remote authentication in an online manner. When remote authentication is completed in an online manner, a proxy party in the target object's location needs to be selected, and the proxy party completes the authentication of the target object's authentication materials and returns the authentication information to the entrusting organization, thereby realizing remote authentication of the target object by the remote organization.
[0096] In the above process, the entrusting party is the initiator of the remote authentication request, and in the embodiment of the application, the method for the server to obtain the remote authentication request initiated by the entrusting party includes:
[0097] In response to the remote authentication request being received by the pre-set terminal corresponding to the entrusting party, the remote authentication request is sent to the second management terminal corresponding to the entrusting party, wherein the second management terminal needs to have a pre-set permission to log in. Specifically, when the target object handles an account opening, account change, or account cancellation business, or when the entrusting party itself conducts a regular account daily management business, the entrusting party receives the remote authentication request through the pre-set terminal and sends the remote authentication request to the second management terminal. The operation object corresponding to the second management terminal can authorize the proxy party to entrust the authentication business corresponding to the remote authentication request, or can return the remote authentication request to the pre-set terminal.
[0098] If it is detected that the second management terminal agrees to entrust the authentication business to the proxy party, the remote authentication request is sent to the first management terminal of the proxy party, wherein the operation object of the first management terminal needs to have a corresponding permission; if it is detected that the second management terminal does not agree to entrust the authentication business to the proxy party, the remote authentication request is returned to the pre-set terminal.
[0099] After the remote authentication request is returned to the pre-set terminal, the pre-set terminal can modify the authentication content of the remote authentication request, and of course, some restriction conditions can also be added to the authentication method corresponding to the remote authentication request, such as reasonably restricting the execution personnel of the proxy party participating in the authentication under the condition of being legal and compliant. After detecting that the pre-set terminal modifies the remote authentication request, the modified remote authentication request is re-sent to the second management terminal, and after the second management terminal confirms, the modified remote authentication request is continuously sent to the first management terminal of the proxy party; if it is detected that the pre-set terminal does not modify the remote authentication request within a specified time, the current remote authentication process is ended.
[0100] By the above method, the out-of-place request service can be authorized to the proxy party, so that the proxy party obtains the proxy right of out-of-place authentication, and then can perform the out-of-place authentication service under the condition of legality and compliance.
[0101] Optionally, after sending the out-of-place authentication request to the proxy party, in order to avoid the proxy party missing the request message, the proxy party can be reminded by a preset method, such as a marquee, a voice prompt, etc., so as to ensure that the proxy party completes the authentication service as soon as possible.
[0102] After the first management terminal corresponding to the proxy party receives the out-of-place authentication request sent by the entrusting party, the operator corresponding to the first management terminal can choose to accept the authentication service corresponding to the out-of-place authentication request, or can choose to refuse to accept the authentication service corresponding to the out-of-place authentication request. In the embodiment of the present application, if it is detected that the second management terminal refuses to proxy the authentication service, the out-of-place authentication service is directly ended; if it is detected that the second management terminal accepts the proxy authentication service, each authentication matter corresponding to the authentication service is distributed to each execution terminal corresponding to the proxy party, and the specific distribution method includes:
[0103] Each authentication matter corresponding to the authentication service is determined, wherein each authentication matter represents a sub-service required to complete the authentication service. For example, if the current authentication service is A, four sub-services P1, P2, P3 and P4 are required to complete the service A, and then the four sub-services P1, P2, P3 and P4 are taken as each authentication matter corresponding to the authentication service. In a specific opening account service scenario, each authentication matter can include: collecting face, checking identity, collecting data, checking data, uploading information, etc. under the condition of legality and compliance.
[0104] Further, each authentication matter is distributed to each execution terminal corresponding to the proxy party, wherein each execution terminal is selected by the operator corresponding to the first management terminal. When each authentication matter is distributed to each execution terminal, it can be "one-to-one" distribution, that is, one execution terminal corresponds to one authentication matter, or it can be "one-to-many" distribution, that is, one execution terminal can be assigned multiple authentication matters, or the "one-to-one" and "one-to-many" distribution methods can be used together. The specific distribution method is determined according to the specific business type, the complexity of each authentication matter, the total number of execution terminals, etc., so as to ensure that the time consumption of each execution terminal executing the corresponding authentication matter is within the preset time range, and the difference between each time consumption meets the preset requirement, so as to ensure that each execution terminal completes the task quickly and efficiently, and the completion time of the task is close, thereby improving the authentication efficiency as a whole.
[0105] For example, there are currently five authentication matters k1, k2, k3, k4, and k5. According to empirical values, it can be determined that the processing time of the five authentication matters is t1, t2, t3, t4, and t5, respectively. It is determined that t1+t2≈t3+t5≈t4, and the values of t1+t2, t3+t5, and t4 are within a preset time range. Then, three execution terminals M1, M2, and M3 can be selected. The execution terminal M1 is used to execute authentication matters k1 and k2, the execution terminal M2 is used to execute authentication matters k3 and k5, and the execution terminal M3 is used to execute authentication matter k4.
[0106] After assigning each authentication matter to each execution terminal, if the operation personnel corresponding to the first management terminal considers that the assignment has defects or is unreasonable, the operation personnel can perform a withdrawal operation to reassign the authentication matters. Therefore, the server needs to detect whether the first management terminal withdraws each authentication matter at any time. If yes, the server reassigns each authentication matter to each execution terminal, so that each execution terminal executes the authentication business according to the reassigned authentication matters.
[0107] After each execution terminal obtains each authentication matter, the specific authentication operation can be performed through each execution terminal. The authentication operation mainly includes authentication matter execution, authentication result entry into the system, and uploading of authentication process files, such as collection of authentication scene photos and videos through legal and compliant means.
[0108] After each execution terminal completes the corresponding authentication matter, the authentication information corresponding to each authentication matter can be obtained. The first management terminal sends each authentication information to the principal party, generally the second management terminal, thereby realizing remote authentication. In order to ensure that the principal party can view the authentication information in a timely manner, the principal party can be reminded through a preset manner, such as a marquee, voice prompts, and the like.
[0109] In a possible application scenario, after each execution terminal completes the corresponding authentication matter and obtains the authentication information corresponding to each authentication matter, the principal party cannot reply to the authentication information in a timely manner due to the agent party. At this time, the operation personnel corresponding to the first management terminal can select to perform a delayed reply operation. Therefore, the server needs to determine whether the first management terminal decides to delay the reply. If yes, the server determines the reply time according to the first management terminal and sends each authentication information to the principal party through the first management terminal according to the reply time. If no, the server sends each authentication information to the principal party through the first management terminal in a timely manner, thereby realizing remote authentication.
[0110] After the authentication information is sent to the client using the above method, the client can carry out subsequent work based on the authentication information. For example, the client can legally and compliantly use the authentication information to open, change, or close accounts for the target object, or to carry out daily management of the target object's account information.
[0111] As a preferred solution, during the aforementioned remote authentication process, all authentication materials, on-site photos, videos, and other authentication information are digitally archived, provided they are legal and compliant, for easy future retrieval and use. Simultaneously, key nodes in the authentication process are recorded, such as the allocation and execution of authentication tasks, to support subsequent traceability.
[0112] To illustrate the off-site authentication method provided in this application embodiment in more detail, the following description uses specific application scenarios.
[0113] Specifically, such as Figure 3 The image shown is a schematic diagram of a remote authentication method. Figure 3 This includes a client and an agent; the client is the authorizing party, and the agent is the remote authentication executor. The specific steps for implementing remote authentication include:
[0114] Step 1: The client initiates an agency certification application and simultaneously notifies the agent's representative and operations manager via a scrolling notification. During this process, the client can modify or delete the content of the agency certification application before the agent responds.
[0115] Step 2: After receiving the scrolling notification, the agent's representative or operations manager can approve or reject the client's certification application. When the agent approves, the certification application enters the agent certification allocation stage; when the agent rejects, the certification application process ends, and the client's representative and operations manager are notified via a scrolling notification.
[0116] Step 3: When the agency certification application enters the agency certification allocation stage, the agency manager or operations supervisor assigns the certification items of the agency certification application to the employees responsible for certification according to the division of responsibilities. The agency certification application then enters the certification execution stage. During this process, the agency manager or operations supervisor has the right to reclaim any assigned certification items.
[0117] Step 4: When the agent certification application enters the agent certification execution witnessing stage, the person in charge of the specific certification matter shall enter the certification results and upload the certification attachments according to the requirements of the certification matter, and complete the execution operation of the agent certification matter.
[0118] Step 5: After the agent authentication application part or all of the execution is completed, the agent responsible person or operation supervisor can initiate the authentication reply operation, and at the same time, inform the principal and operation supervisor of the entrusting party through the marquee form. At this time, the entire agent authentication application process is completed. When the agent party cannot reply to the agent authentication application of the entrusting party in time due to various reasons, the agent responsible person or operation supervisor can perform the delayed reply operation, and at the same time, inform the principal and operation supervisor of the entrusting party through the marquee form.
[0119] Step 6: The entrusting party or the agent party can view and print the content and data of the authentication application in the entire agent authentication application process.
[0120] Step 7: After the entrusting party receives the authentication result of the agent party, the entrusting party completes the opening of the account by using the image data in the agent authentication under the condition of legality and compliance.
[0121] Based on the above-mentioned remote authentication method, a target object place agent needs to be selected, and the agent completes the authentication of the authentication materials of the target object and replies the authentication information to the entrusting agency, so that the remote authentication can be completed in an online manner. In addition, in the authentication process, the agent authentication realizes the flow of the business processes of initiation, response, distribution, execution and reply, and the process steps are reminded through a preset manner, so that the entire remote authentication business realizes the closed-loop operation. Moreover, the agent authentication process can be tracked in a digital process, and the data collected in a legal and compliant manner is backed up in a digital information, so that the entire remote authentication business can well support the traceability of the operation and the data.
[0122] Based on the same inventive concept, the embodiment of the present application provides a remote authentication device, which is described with reference to Figure 4 The device comprises:
[0123] The acquisition module 401 is configured to acquire a remote authentication request initiated by an entrusting party, and send the remote authentication request to a first management terminal corresponding to an agent party.
[0124] The detection module 402 is configured to detect whether the first management terminal accepts an authentication business corresponding to the remote authentication request.
[0125] The distribution module 403 is configured to, in response to the first management terminal accepting the authentication business, distribute each authentication matter corresponding to the authentication business to each execution terminal corresponding to the agent party.
[0126] The authentication module 404 is configured to acquire authentication information corresponding to each authentication matter through each execution terminal respectively, and send each authentication information to the entrusting party through the first management terminal.
[0127] In a possible design, the obtaining module 401 is specifically configured to:
[0128] in response to the preset terminal corresponding to the entrusting party receiving the out-of-place authentication request, sending the out-of-place authentication request to a second management terminal corresponding to the entrusting party;
[0129] detecting whether the second management terminal agrees to entrust the authentication service to the agent party;
[0130] if yes, sending the out-of-place authentication request to the first management terminal;
[0131] if no, returning the out-of-place authentication request to the preset terminal.
[0132] In a possible design, the obtaining module 401 is further configured to:
[0133] detecting whether the preset terminal modifies the authentication content of the out-of-place authentication request;
[0134] if yes, sending the modified out-of-place authentication request to the second management terminal, and sending the modified out-of-place authentication request to the first management terminal after the second management terminal confirms;
[0135] if no, ending the current out-of-place authentication process.
[0136] In a possible design, the detecting module 402 is specifically configured to:
[0137] detecting whether the first management terminal accepts to proxy the authentication service corresponding to the out-of-place authentication request;
[0138] in response to the first management terminal refusing to proxy the authentication service, ending the current out-of-place authentication process.
[0139] In a possible design, the allocating module 403 is specifically configured to:
[0140] determining each authentication matter corresponding to the authentication service;
[0141] allocating each authentication matter to each execution terminal corresponding to the agent party;
[0142] detecting whether the first management terminal withdraws the authentication matters;
[0143] if yes, reallocating the authentication matters to the execution terminals.
[0144] In a possible design, the authentication module 404 is specifically configured to:
[0145] Determine whether the first management terminal decides to postpone the response;
[0146] If so, the response time is determined, and each authentication information is sent to the entrusting party through the first management terminal according to the response time;
[0147] If not, the authentication information will be sent to the entrusting party through the first management terminal.
[0148] Based on the aforementioned remote authentication device, it is necessary to select an agent in the location of the target object. The agent will then authenticate the target object's authentication materials and reply with the authentication information to the commissioning agency, thus enabling remote authentication to be completed online.
[0149] Furthermore, because the authentication process involves the flow of proxy authentication from initiation, response, allocation, execution, and reply, and the process steps are reminded via preset messages, the entire remote authentication business achieves closed-loop operation.
[0150] Furthermore, because the agent authentication process can be digitally tracked and legally and compliantly collected data can be digitally backed up, the entire off-site authentication business can well support the traceability of operations and data.
[0151] Based on the same inventive concept, this application also provides an electronic device that can realize the functions of the aforementioned remote authentication method and apparatus. (Refer to...) Figure 5 The electronic device includes:
[0152] At least one processor 501 and a memory 502 connected to at least one processor 501. In this embodiment, the specific connection medium between the processor 501 and the memory 502 is not limited. Figure 5 The example shown is the connection between processor 501 and memory 502 via bus 500. Bus 500 is... Figure 5 The connections between other components are indicated by thick lines and are for illustrative purposes only, not as limiting information. The Bus 500 can be divided into address bus, data bus, control bus, etc., for ease of representation. Figure 5 The term 501 is represented by a single thick line, but this does not imply that there is only one bus or one type of bus. Alternatively, the processor 501 can also be called a controller; there is no restriction on the name.
[0153] In this embodiment, memory 502 stores instructions executable by at least one processor 501. By executing the instructions stored in memory 502, at least one processor 501 can perform the remote authentication method discussed above. Processor 501 can implement... Figure 4 The functions of each module in the device shown.
[0154] The processor 501 is the control center of the apparatus, and can connect all parts of the apparatus by using various interfaces and lines, and monitor the apparatus as a whole by running or executing instructions stored in the memory 502 and calling data stored in the memory 502, so as to process various functions and data of the apparatus.
[0155] In a possible design, the processor 501 can include one or more processing units, and the processor 501 can integrate an application processor and a modem processor, where the application processor mainly processes an operating system, a user interface, and an application program, and the modem processor mainly processes wireless communication. It can be understood that the modem processor can also not be integrated into the processor 501. In some embodiments, the processor 501 and the memory 502 can be implemented on the same chip, and in some embodiments, they can also be implemented on separate chips respectively.
[0156] The processor 501 can be a general-purpose processor, for example, a central processing unit (CPU), a digital signal processor, an application-specific integrated circuit, a field programmable gate array, or other programmable logic device, a discrete gate or transistor logic device, a discrete hardware component, and can implement or execute each method, step, and logic block disclosed in the embodiments of the present application. The general-purpose processor can be a microprocessor or any conventional processor. The steps of the off-site authentication method disclosed in the embodiments of the present application can be directly embodied as execution completed by a hardware processor, or executed by a combination of hardware and software modules in the processor.
[0157] The memory 502 is a non-volatile computer readable storage medium, which can be used to store non-volatile software programs, non-volatile computer executable programs and modules. The memory 502 can include at least one type of storage medium, for example, can include flash memory, hard disk, multimedia card, card type memory, random access memory (RAM), static random access memory (SRAM), programmable read-only memory (PROM), read-only memory (ROM), electrically erasable programmable read-only memory (EEPROM), magnetic storage, magnetic disk, optical disk, etc. The memory 502 is any other medium capable of carrying or storing desired program code in the form of instructions or data structures and capable of being accessed by a computer, but is not limited to this. The memory 502 in the embodiments of the present application can also be a circuit or any other device capable of realizing a storage function, used to store program instructions and / or data.
[0158] By designing and programming the processor 501, the code corresponding to the off-site authentication method introduced in the foregoing embodiments can be fixed in the chip, so that the chip can execute the steps of the off-site authentication method of the embodiments shown in the running time. Figure 2 How to design and program the processor 501 is a technology known to those skilled in the art, which will not be described here.
[0159] Based on the same inventive concept, the embodiments of the present application provide a computer readable storage medium, a computer program product comprising: computer program code, when the computer program code runs on the computer, the computer executes any of the off-site authentication methods discussed in the foregoing. Since the above computer readable storage medium solves the problem by the same principle as the off-site authentication method, the implementation of the above computer readable storage medium can be referred to the implementation of the method, and the repeated parts will not be described.
[0160] Based on the same inventive concept, the embodiments of the present application also provide a computer program product, which comprises: computer program code, when the computer program code runs on the computer, the computer executes any of the off-site authentication methods discussed in the foregoing. Since the above computer program product solves the problem by the same principle as the off-site authentication method, the implementation of the above computer program product can be referred to the implementation of the method, and the repeated parts will not be described.
[0161] Those skilled in the art will appreciate that embodiments of the present application can be readily used as software, hardware, or a combination of software and hardware. In one
[0162] The present application is described in reference to the flow diagrams and / or block diagrams of the methods, apparatus (systems) and computer program products according to this application. It will be understood that each block of the flow diagrams and / or block diagrams, and combinations of blocks in the flow diagrams and / or block diagrams, can be implemented by computer program instructions. These computer program instructions can be provided to a processor of a general purpose computer, special purpose computer, embedded processor, or other programmable data processing apparatus to produce a machine, such that the instructions, which execute via the processor of the computer or other programmable data processing apparatus, create means for implementing the functions specified in the flow diagrams and / or block diagrams block or blocks. Figure 1 The flow diagrams and / or block diagrams in the present application can include functional or operational blocks that may Figure 1 The flow diagrams and / or block diagrams in the present application can include functional or operational blocks that may
[0163] These computer program instructions can also be stored in a computer- readable memory that can direct a computer or other programmable data processing apparatus to function in a particular manner, such that the instructions stored in the computer-readable memory produce an article of manufacture including instructions which implement the flow diagrams and / or block diagrams block or blocks. Figure 1 The flow diagrams and / or block diagrams in the present application can include functional or operational blocks that may Figure 1 The flow diagrams and / or block diagrams in the present application can include functional or operational blocks that may
[0164] These computer program instructions can also be loaded onto a computer or other programmable data processing apparatus to cause a series of operational steps to be performed on the computer or other programmable apparatus to produce a computer implemented process such that the instructions which execute on the computer or other programmable apparatus provide steps for implementing the flow diagrams and / or block diagrams block or blocks. Figure 1 The flow diagrams and / or block diagrams in the present application can include functional or operational blocks that may Figure 1 The flow diagrams and / or block diagrams in the present application can include functional or operational blocks that may
[0165] Obviously, numerous modifications and variations of the present application are possible in light of the above teachings. It is therefore to be understood that within the scope of the appended claims and their equivalents, the application can be practiced otherwise than as specifically described.
Claims
1. A method of remote authentication, characterized by, The method comprises: obtaining a cross-region authentication request initiated by a principal party, and sending the cross-region authentication request to a first management terminal corresponding to an agent party; detecting whether the first management terminal accepts an authentication service corresponding to the cross-region authentication request; in response to the first management terminal accepting the authentication service, determining respective authentication items corresponding to the authentication service; based on a service type, a complexity of the respective authentication items, and a total number of execution terminals, allocating the respective authentication items to respective execution terminals corresponding to the agent party; detecting whether the first management terminal withdraws the respective authentication items; if yes, re-allocating the respective authentication items to the respective execution terminals; obtaining authentication information corresponding to the respective authentication items through the respective execution terminals respectively, and sending the respective authentication information to the principal party through the first management terminal.
2. The method of claim 1, wherein, The obtaining a cross-region authentication request initiated by a principal party, and sending the cross-region authentication request to a first management terminal corresponding to an agent party comprises: in response to a preset terminal corresponding to the principal party receiving the cross-region authentication request, sending the cross-region authentication request to a second management terminal corresponding to the principal party; detecting whether the second management terminal agrees to entrust the authentication service to the agent party; if yes, sending the cross-region authentication request to the first management terminal; if no, returning the cross-region authentication request to the preset terminal.
3. The method of claim 2, wherein, After the cross-region authentication request is returned to the preset terminal, the method further comprises: detecting whether the preset terminal modifies authentication content of the cross-region authentication request; if yes, sending the modified cross-region authentication request to the second management terminal, and after the second management terminal confirms, sending the modified cross-region authentication request to the first management terminal; if no, ending a current cross-region authentication process.
4. The method of claim 1, wherein, The detecting whether the first management terminal accepts an authentication service corresponding to the cross-region authentication request comprises: detecting whether the first management terminal accepts an authentication service corresponding to the cross-region authentication request; in response to the first management terminal refusing to entrust the authentication service, ending a current cross-region authentication process.
5. The method of claim 1, wherein, The sending the respective authentication information to the principal party through the first management terminal comprises: judging whether the first management terminal decides to postpone a reply; if yes, determining a reply time, and sending the respective authentication information to the principal party through the first management terminal according to the reply time; if no, sending the respective authentication information to the principal party through the first management terminal.
6. A remote authentication apparatus characterized by comprising: The device comprises: an obtaining module, configured to obtain a cross-region authentication request initiated by a principal party, and send the cross-region authentication request to a first management terminal corresponding to an agent party; a detecting module, configured to detect whether the first management terminal accepts an authentication service corresponding to the cross-region authentication request; an allocating module, configured to, in response to the first management terminal accepting the authentication service, determine respective authentication items corresponding to the authentication service; an obtaining module, configured to obtain authentication information corresponding to the respective authentication items through the respective execution terminals respectively, and send the respective authentication information to the principal party through the first management terminal. According to the business type, the complexity of each authentication matter, and the total number of the execution terminals, each authentication matter is allocated to each execution terminal corresponding to the agent; Detecting whether the first management terminal withdraws the authentication matters; If yes, the authentication matters are re-allocated to each execution terminal; An authentication module is configured to acquire authentication information corresponding to each authentication matter through each execution terminal respectively, and send the authentication information to the principal through the first management terminal.
7. The apparatus of claim 6, wherein, The acquisition module is specifically configured to: In response to the fact that the preset terminal corresponding to the principal receives the out-of-place authentication request, the out-of-place authentication request is sent to the second management terminal corresponding to the principal; Detecting whether the second management terminal agrees to entrust the authentication business to the agent; If yes, the out-of-place authentication request is sent to the first management terminal; If no, the out-of-place authentication request is returned to the preset terminal.
8. The apparatus of claim 7, wherein, The acquisition module is further configured to: Detecting whether the preset terminal modifies the authentication content of the out-of-place authentication request; If yes, the modified out-of-place authentication request is sent to the second management terminal, and after the second management terminal confirms, the modified out-of-place authentication request is sent to the first management terminal; If no, the current out-of-place authentication process is ended.
9. The apparatus of claim 6, wherein, The detection module is specifically configured to: Detecting whether the first management terminal accepts the authentication business corresponding to the out-of-place authentication request; In response to the fact that the first management terminal refuses to entrust the authentication business, the current out-of-place authentication process is ended.
10. The apparatus of claim 6, wherein, The authentication module is specifically configured to: Judging whether the first management terminal decides to postpone the reply; If yes, a reply time is determined, and each authentication information is sent to the principal through the first management terminal according to the reply time; If no, each authentication information is sent to the principal through the first management terminal.
11. An electronic device, comprising: It includes: A memory configured to store program instructions; A processor configured to invoke the program instructions stored in the memory, and perform the steps included in the method according to the obtained program instructions.
12. A computer-readable storage medium, characterized in that, The computer readable storage medium stores a computer program, and the computer program includes program instructions, which, when executed by a computer, cause the computer to perform the method according to any one of claims 1-5.
13. A computer program product, characterised in that, The computer program product includes computer program code, which, when executed on a computer, causes the computer to perform the method according to any one of claims 1-5.
Citation Information
Patent Citations
Bank agent business processing method and device
CN111242775A