Virtual world authentication credential synchronization method and apparatus
Patent Information
- Application Number
- CN202211640782.6
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2022-12-20
- Publication Date
- 2026-09-08
- Estimated Expiration
- 2042-12-20
AI Technical Summary
[0008]本发明实施例提供了一种虚拟世界认证证书同步方法及装置,以至少解决由于相关技术中物理世界与虚拟世界中的认证方式不同步的技术问题
[0018] According to a fourth aspect of the present invention, a readable storage medium is also provided, on which a program or instructions are stored, which, when executed by a processor, implement the steps of the virtual world authentication certificate synchronization method described in the first aspect above.
Smart Images

Figure CN116232649B_ABST
Abstract
Description
Technical Field
[0001] This invention relates to the field of identity authentication technology, and more specifically, to a method and apparatus for synchronizing virtual world authentication certificates. Background Technology
[0002] The metaverse (or virtual world) is a simulated environment in which users live as digital avatars and interact with the digital avatars of other users. Digital avatars, objects, and scenes in the metaverse are typically three-dimensional models. The virtual environment in the metaverse is a simulation of the real environment, thus providing users with an immersive application experience.
[0003] Synchronizing existing authentication functions in the real world within the metaverse or virtual world presents certain challenges.
[0004] I. In the real world, there are various authentication methods, such as IC (Integrated Circuit Chip) cards, passwords, dynamic passwords, biometrics, etc. Some methods require specific physical devices, such as card readers, which cannot be met in the virtual world.
[0005] Second, when the physical world and the virtual world scenes correspond, the authentication result cannot be synchronized from the physical world to the virtual world. For example, if an employee swipes his card to enter the company, his avatar cannot obtain the same authorization to enter the company in the virtual world.
[0006] Third, implementing multiple authentication methods across multiple metaverses is extremely costly.
[0007] It is evident that no effective solution has yet been proposed in the relevant technologies to address the aforementioned problems. Summary of the Invention
[0008] This invention provides a method and apparatus for synchronizing virtual world authentication certificates, which at least solves the technical problem of asynchronous authentication methods between the physical world and the virtual world in related technologies.
[0009] According to a first aspect of the present invention, a virtual world authentication certificate synchronization method is provided, applied to an authentication server, the method comprising: generating an authentication certificate based on a digital identity ID corresponding to a target user and a first authentication action, wherein the first authentication action is located in the physical world; synchronizing the authentication certificate to the digital identity corresponding to the target user in the virtual world server, wherein the authentication certificate is used to execute a second authentication action of the digital identity.
[0010] Furthermore, before generating an authentication certificate based on the target user's corresponding digital identity ID and the first authentication behavior, the method further includes: in response to the first authentication behavior, sending a data request to a mapping unit, wherein the mapping unit is used to match the first authentication behavior and the second authentication behavior; and receiving the digital identity ID returned by the mapping unit.
[0011] Furthermore, before generating the authentication certificate based on the target user's corresponding digital identity ID and the first authentication behavior, the method further includes: verifying the target user's user behavior based on the target user's identity information; if the verification is successful, generating the first authentication behavior.
[0012] Furthermore, after synchronizing the authentication certificate to the digital avatar corresponding to the target user in the virtual world server, the method further includes: in response to the action request corresponding to the second authentication action, verifying the authentication certificate through the management system corresponding to the virtual world server; if the verification is successful, allowing the digital avatar to perform the second authentication action.
[0013] Furthermore, the step of responding to the action request corresponding to the second authentication action by verifying the authentication certificate through the management system corresponding to the virtual world server includes: sending a query request to the mapping module corresponding to the target user through the management system; obtaining the user public key corresponding to the target user based on the virtual avatar ID; and verifying the certificate signature of the authentication certificate based on the user public key through the management system, wherein the certificate signature is signed by the user private key corresponding to the target user.
[0014] According to a second aspect of the present invention, a virtual world authentication certificate synchronization device is also provided, applied to an authentication server. The device includes: a processing module, configured to generate an authentication certificate based on a digital identity ID corresponding to a target user and a first authentication action, wherein the first authentication action is located in the physical world; and a synchronization module, configured to synchronize the authentication certificate to the digital identity corresponding to the target user in the virtual world server, wherein the authentication certificate is used to execute a second authentication action of the digital identity.
[0015] Furthermore, it also includes: a sending module, configured to send a data request to a mapping unit in response to the first authentication behavior before generating an authentication certificate based on the digital identity ID corresponding to the target user and the first authentication behavior, wherein the mapping unit is configured to match the first authentication behavior and the second authentication behavior; and a receiving module, configured to receive the digital identity ID returned by the mapping unit.
[0016] Furthermore, it also includes: a verification module, used to verify the user behavior of the target user based on the target user's identity information; the processing module is also used to generate the first authentication behavior if the verification is successful.
[0017] According to a third aspect of the present invention, an electronic device is also provided, including a processor, a memory, and a program or instructions stored in the memory and executable on the processor, wherein the program or instructions, when executed by the processor, implement the steps of the virtual world authentication certificate synchronization method described in the first aspect above.
[0018] According to a fourth aspect of the present invention, a readable storage medium is also provided, on which a program or instructions are stored, which, when executed by a processor, implement the steps of the virtual world authentication certificate synchronization method described in the first aspect above.
[0019] In this embodiment of the invention, an authentication certificate is generated based on the digital identity ID corresponding to the target user and the first authentication action, wherein the first authentication action is located in the physical world. The authentication certificate is synchronized to the digital identity corresponding to the target user in the virtual world server, wherein the authentication certificate is used to execute the second authentication action of the digital identity. By generating the authentication certificate based on the digital identity ID and the first authentication action, and then synchronizing the authentication certificate to the digital identity, the target user's digital identity can execute the second authentication action in the virtual world through the authentication certificate. This achieves the synchronization of the authentication certificate corresponding to the first authentication action in the physical world to the virtual world, thereby solving the technical problem of the lack of synchronization between the authentication methods in the physical world and the virtual world in related technologies. Attached Figure Description
[0020] The accompanying drawings, which are included to provide a further understanding of the invention and form part of this application, illustrate exemplary embodiments of the invention and, together with their description, serve to explain the invention and do not constitute an undue limitation thereof. In the drawings:
[0021] Figure 1 This is a schematic diagram illustrating an application scenario of an optional virtual world authentication certificate synchronization method according to an embodiment of the present invention;
[0022] Figure 2 This is a flowchart illustrating an optional virtual world authentication certificate synchronization method according to an embodiment of the present invention;
[0023] Figure 3 This is a schematic diagram of an optional authentication server and mapping unit according to an embodiment of the present invention;
[0024] Figure 4 This is a schematic diagram of the framework of another optional virtual world authentication certificate synchronization device according to an embodiment of the present invention. Detailed Implementation
[0025] To enable those skilled in the art to better understand the present invention, the technical solutions of the present invention will be clearly and completely described below with reference to the accompanying drawings of the embodiments of the present invention. Obviously, the described embodiments are only some embodiments of the present invention, and not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by those skilled in the art without creative effort should fall within the scope of protection of the present invention.
[0026] It should be noted that the terms "first," "second," etc., in the specification, claims, and accompanying drawings of this invention are used to distinguish similar objects and are not necessarily used to describe a specific order or sequence. It should be understood that such data can be interchanged where appropriate so that the embodiments of the invention described herein can be implemented in orders other than those illustrated or described herein. Furthermore, the terms "comprising" and "having," and any variations thereof, are intended to cover a non-exclusive inclusion; for example, a process, method, system, product, or apparatus that comprises a series of steps or units is not necessarily limited to those steps or units explicitly listed, but may include other steps or units not explicitly listed or inherent to such processes, methods, products, or apparatus.
[0027] Example 1
[0028] Before introducing a virtual world authentication certificate synchronization method in this embodiment, the application scenario of the virtual world authentication certificate synchronization method in this embodiment will be explained first, such as... Figure 1 The diagram illustrates an application scenario of an optional virtual world authentication certificate synchronization method in this embodiment. This includes, but is not limited to, a user terminal 10, an authentication server 20, and a virtual world server 30.
[0029] The user terminal 10 is the physical device used by the target user, which can be a smartphone, laptop, or PC. The user terminal 10 has a user application client and a virtual world client installed. The authentication server verifies the target user's user information and account information. The virtual world server 30 provides services related to the virtual avatar. The mapping unit matches the target user's physical identity ID and digital avatar ID, physical world authentication, and corresponding virtual world behavior.
[0030] In this embodiment, the target user accesses the corresponding location or performs corresponding actions through the user application client in the user terminal 10, and accesses the virtual world through the virtual world client in the user terminal 10. The authentication server 20 communicates with the user terminal 10 and generates an authentication certificate based on the digital identity ID corresponding to the target user and the first authentication action, wherein the first authentication action is located in the physical world; the authentication server 20 synchronizes the authentication certificate to the digital identity corresponding to the target user in the virtual world server 30, wherein the authentication certificate is used to perform the second authentication action of the digital identity.
[0031] Through the above embodiments, an authentication certificate is generated based on the digital identity ID and the first authentication behavior, and then the authentication certificate is synchronized to the digital identity, enabling the target user's digital identity to perform the second authentication behavior in the virtual world through the authentication certificate. This realizes the synchronization of the authentication certificate corresponding to the first authentication behavior in the physical world to the virtual world, thereby solving the technical problem of the lack of synchronization between the authentication methods in the physical world and the virtual world in related technologies.
[0032] According to an embodiment of the present invention, a method for synchronizing virtual world authentication certificates is provided. This method is applied to an authentication server, such as... Figure 2 As shown, the method specifically includes the following steps:
[0033] S202, Generate an authentication certificate based on the target user's digital identity ID and the first authentication action, wherein the first authentication action is located in the physical world;
[0034] S204 synchronizes the authentication certificate to the digital avatar corresponding to the target user in the virtual world server, wherein the authentication certificate is used to perform the second authentication action of the digital avatar.
[0035] In this embodiment, the authentication server establishes a data connection with the user terminal to verify the user's behavior, identity information, and account information. The user terminal is a physical device used by the target user, including but not limited to smartphones, tablets, and PCs. The user terminal has a user application client and a virtual world client installed.
[0036] In this embodiment, the authentication server is used to verify the target user's user information and account information. The virtual world server is used to provide services related to virtual avatars.
[0037] In this process, target users provide account / password, user biometric data, or make payments to the authentication server through the application client; target users can also provide IC card information to the authentication server through a card reader.
[0038] In this embodiment, the target user accesses the corresponding location or performs corresponding actions through the user application client on the user terminal. The target user accesses the virtual world / metaverse through the virtual world client. Digital avatars, virtual objects, virtual scenes, etc. in the virtual world / metaverse are rendered and displayed on the virtual world client. At the same time, the target user interacts with other digital avatars in the virtual world / metaverse and moves digital avatars, etc., through the virtual world client.
[0039] Furthermore, the first authentication action includes, but is not limited to, the target user's purchase of goods, account authentication, and user actions such as accessing designated areas. The first authentication action also includes, but is not limited to, user behavior and user permission information.
[0040] In this embodiment, the target user's identity information and account information are authenticated or verified by an authentication server. After the target user's identity information and account information are successfully authenticated or verified, a first authentication action corresponding to the user's behavior is generated.
[0041] Then, an authentication certificate is generated based on the target user's digital identity ID and the initial authentication action. This certificate serves as a permission or credential to perform the initial authentication action. For example, it could be an access permission to a designated area or a paid credential to subscribe to a virtual service.
[0042] Next, the authentication certificate will be synchronized to the digital avatar of the target user in the virtual server, so that the digital avatar of the target user has the action permission or credential corresponding to the second authentication action.
[0043] Specifically, a virtual server can issue permissions, credentials, or licenses corresponding to authentication certificates to a digital avatar. For example, a virtual server can issue a purchase license for a song to a digital avatar, or a subscription certificate for a certain virtual service to a digital avatar, or an access license to a specified area in a virtual world to a digital avatar.
[0044] Through the above embodiments, an authentication certificate is generated based on the digital avatar ID corresponding to the target user and the first authentication action, wherein the first authentication action is located in the physical world. The authentication certificate is then synchronized to the digital avatar corresponding to the target user in the virtual world server, whereby the authentication certificate is used to execute the second authentication action of the digital avatar. By generating the authentication certificate based on the digital avatar ID and the first authentication action, and then synchronizing the authentication certificate to the digital avatar, the target user's digital avatar can execute the second authentication action in the virtual world using the authentication certificate. This achieves the synchronization of the authentication certificate corresponding to the first authentication action in the physical world to the virtual world, thereby solving the technical problem of asynchronous authentication methods between the physical and virtual worlds in related technologies.
[0045] Optionally, in this embodiment, before generating an authentication certificate based on the digital identity ID corresponding to the target user and the first authentication behavior, the process includes, but is not limited to: sending a data request to the mapping unit in response to the first authentication behavior, wherein the mapping unit is used to match the first authentication behavior and the second authentication behavior; and receiving the digital identity ID returned by the mapping unit.
[0046] In this embodiment, a mapping unit is used to obtain the target user's account information in the physical world and the corresponding relationship between the target user's digital avatar in the virtual world. The mapping unit is used to match the target user's physical world identity ID and digital avatar ID, physical world authentication, and corresponding virtual world behavior. This mapping unit can be centralized, i.e., a central server managing the activities of multiple authentication servers; or it can be distributed, i.e., each authentication server has an independent mapping unit. The mapping is managed by an authorized organization or individual.
[0047] like Figure 3 As shown, the authentication server includes an authentication module, a certificate module, and a communication module, while the mapping unit includes a communication module, a user mapping module, and an authentication mapping module. The authentication server and the mapping unit communicate via the communication module. The user mapping module matches users with their corresponding digital identity IDs, and the authentication mapping module matches physical world authentication with corresponding virtual world user behavior.
[0048] Specifically, after the first authentication process is completed, the authentication module within the authentication module of the authentication server authenticates the target user's identity information. Then, the authentication server sends a data request to the mapping unit via the communication module to obtain the target user's corresponding digital identity ID. Next, the authentication server uses the mapping unit to match the target user's digital identity ID, the authentication in the physical world, and the corresponding behavior in the virtual world. The mapping unit then returns the digital identity ID, the virtual world behavior, and other information to the authentication server.
[0049] In the above example, in response to the first authentication action, a data request is sent to the mapping unit, and the digital identity ID returned by the mapping unit is received, so as to achieve the matching of the target user's digital identity ID and the corresponding user behavior in the virtual world.
[0050] Optionally, in this embodiment, before generating the authentication certificate based on the target user's digital identity ID and the first authentication behavior, the process may include, but is not limited to: verifying the target user's user behavior based on the target user's identity information; if the verification is successful, generating the first authentication behavior.
[0051] In this embodiment, before the authentication server generates an authentication certificate based on the target user's digital identity ID and the first authentication action, the authentication server receives the target user's user behavior and then verifies the target user's identity information, account information, and permission information through the authentication module.
[0052] Specifically, target users provide account / password, user biometric data, or make payments to the authentication server through the application client; target users can also provide IC card information to the authentication server through a card reader.
[0053] After successful user behavior verification, an authentication certificate is generated based on the target user's identity information, authentication information, digital identity ID, and corresponding behavior in the virtual world.
[0054] In one example, assume that a user behavior verification bit authenticates a target user's purchase of virtual property in the virtual world. In the physical world, an authentication server verifies the target user's purchase behavior, checking information such as the order number, transaction time, payment method, and traded items. If the verification is successful, the target user has successfully purchased the virtual property; if the verification fails, the purchase has failed. Next, an authentication certificate is generated based on the target user's transaction behavior, the virtual property's number, and their digital identity ID. This certificate serves as the target user's proof of purchase of the virtual property in the virtual world.
[0055] The above example demonstrates how to verify a target user's behavior based on their identity information. If the verification is successful, a first authentication action is generated. This achieves the verification of the target user's behavior in the physical world.
[0056] Optionally, in this embodiment, after synchronizing the authentication certificate to the digital avatar corresponding to the target user in the virtual world server, the process includes, but is not limited to: responding to the action request corresponding to the second authentication action, verifying the authentication certificate through the management system corresponding to the virtual world server; if the verification is successful, allowing the digital avatar to perform the second authentication action.
[0057] Specifically, before the target user's digital avatar performs the second authentication action corresponding to the first authentication action in the virtual world, the authentication certificate is verified by the management system corresponding to the virtual world server. If the authentication certificate verification is successful, it means that the target user's digital avatar can perform the second authentication action corresponding to the first authentication action, and the digital avatar is allowed to perform the second authentication action; otherwise, the digital avatar is not allowed to perform the second authentication action.
[0058] In one example, after an employee successfully enters the company by swiping their IC card at the entrance, the authentication server sends a request to the mapping unit to obtain the employee's corresponding digital identity ID and the verified activity in the virtual world corresponding to the card swipe (i.e., being allowed entry into a designated area of the company within the virtual world). The authentication server generates a certificate indicating that the specified user is permitted to enter the designated area. This certificate is sent to the digital identity. When the digital identity requests entry into the virtual area, it submits the certificate to the virtual world's security management system. Once the certificate proves its validity, entry is granted to the digital identity.
[0059] In the above example, in response to the action request corresponding to the second authentication action, the management system corresponding to the virtual world server verifies the authentication certificate; if the verification is successful, the digital avatar is allowed to execute the second authentication action, thus realizing the permission to execute the second authentication action based on the authentication certificate corresponding to the first authentication action.
[0060] Optionally, in this embodiment, in response to the action request corresponding to the second authentication action, the authentication certificate is verified through the management system corresponding to the virtual world server, including but not limited to: sending a query request to the mapping module corresponding to the target user through the management system; obtaining the user public key corresponding to the target user based on the virtual avatar ID; and verifying the certificate signature of the authentication certificate based on the user public key through the management system, wherein the certificate signature is signed by the user private key corresponding to the target user.
[0061] In practical applications, to verify that the certificate was issued by the user corresponding to the avatar, the target user signs the issued certificate using their own private key. When the digital avatar sends the obtained authentication certificate to the management system of the virtual world, the management system can send a query request to the user mapping module, determine the target user's account information in the physical world through the digital avatar ID corresponding to the digital avatar, and verify the certificate signature using the user's public key.
[0062] The above example demonstrates how the public key corresponding to the target user can be obtained based on the virtual avatar ID, and the certificate signature of the authentication certificate can be verified based on the public key, thus ensuring the identity of the certificate generator and improving user data security.
[0063] According to the embodiments of the present invention, an authentication certificate is generated based on the digital identity ID corresponding to the target user and the first authentication action, wherein the first authentication action is located in the physical world. The authentication certificate is synchronized to the digital identity corresponding to the target user in the virtual world server, wherein the authentication certificate is used to execute the second authentication action of the digital identity. By generating the authentication certificate based on the digital identity ID and the first authentication action, and then synchronizing the authentication certificate to the digital identity, the target user's digital identity can execute the second authentication action in the virtual world through the authentication certificate. This achieves the synchronization of the authentication certificate corresponding to the first authentication action in the physical world to the virtual world, thereby solving the technical problem of the lack of synchronization between the authentication methods in the physical world and the virtual world in related technologies.
[0064] It should be noted that, for the sake of simplicity, the foregoing method embodiments are all described as a series of actions. However, those skilled in the art should understand that the present invention is not limited to the described order of actions, because according to the present invention, some steps can be performed in other orders or simultaneously. Furthermore, those skilled in the art should also understand that the embodiments described in the specification are preferred embodiments, and the actions and modules involved are not necessarily essential to the present invention.
[0065] Through the above description of the embodiments, those skilled in the art can clearly understand that the methods according to the above embodiments can be implemented by means of software plus necessary general-purpose hardware platforms. Of course, they can also be implemented by hardware, but in many cases the former is a better implementation method. Based on this understanding, the technical solution of the present invention, in essence, or the part that contributes to the prior art, can be embodied in the form of a software product. This computer software product is stored in a storage medium (such as ROM / RAM, magnetic disk, optical disk) and includes several instructions to cause a terminal device (which may be a mobile phone, computer, server, or network device, etc.) to execute the methods described in the various embodiments of the present invention.
[0066] Example 2
[0067] According to embodiments of the present invention, a virtual world authentication certificate synchronization device is also provided for implementing the above-described virtual world authentication certificate synchronization method, applied to an authentication server, such as... Figure 4 As shown, the device includes:
[0068] 1) Processing module 40, used to generate an authentication certificate based on the digital identity ID corresponding to the target user and the first authentication behavior, wherein the first authentication behavior is located in the physical world;
[0069] 2) Synchronization module 42, used to synchronize the authentication certificate to the digital identity corresponding to the target user in the virtual world server, wherein the authentication certificate is used to perform the second authentication action of the digital identity.
[0070] Optionally, in this embodiment, the device further includes:
[0071] 1) A sending module, configured to send a data request to a mapping unit in response to the first authentication behavior before generating an authentication certificate based on the digital identity ID corresponding to the target user and the first authentication behavior, wherein the mapping unit is configured to match the first authentication behavior and the second authentication behavior;
[0072] 2) Receiving module, used to receive the digital identity ID returned by the mapping unit.
[0073] Optionally, in this embodiment, the device further includes:
[0074] 1) A verification module, used to verify the user behavior of the target user based on the target user's identity information;
[0075] 2) The processing module is further configured to generate the first authentication behavior if the verification is successful.
[0076] In this embodiment, an authentication certificate is generated based on the digital avatar ID corresponding to the target user and the first authentication action, wherein the first authentication action is located in the physical world. The authentication certificate is then synchronized to the digital avatar corresponding to the target user in the virtual world server. This authentication certificate is used to execute the second authentication action of the digital avatar. By generating the authentication certificate based on the digital avatar ID and the first authentication action, and then synchronizing the authentication certificate to the digital avatar, the target user's digital avatar can execute the second authentication action in the virtual world using the authentication certificate. This achieves the synchronization of the authentication certificate corresponding to the first authentication action in the physical world to the virtual world, thereby solving the technical problem of asynchronous authentication methods between the physical and virtual worlds in related technologies.
[0077] Example 3
[0078] According to an embodiment of the present invention, an electronic device is also provided, including a processor, a memory, and a program or instructions stored in the memory and executable on the processor, wherein the program or instructions, when executed by the processor, implement the steps of the virtual world authentication certificate synchronization method as described above.
[0079] Optionally, in this embodiment, the memory is configured to store program code for performing the following steps:
[0080] S1, Generate an authentication certificate based on the digital identity ID corresponding to the target user and the first authentication behavior, wherein the first authentication behavior is located in the physical world;
[0081] S2, synchronize the authentication certificate to the digital avatar corresponding to the target user in the virtual world server, wherein the authentication certificate is used to perform the second authentication action of the digital avatar.
[0082] Optionally, specific examples in this embodiment can refer to the examples described in Embodiment 1 above, and will not be repeated here.
[0083] Example 4
[0084] Embodiments of the present invention also provide a readable storage medium storing a program or instructions that, when executed by a processor, implement the steps of the virtual world authentication certificate synchronization method as described above.
[0085] Optionally, in this embodiment, the readable storage medium is configured to store program code for performing the following steps:
[0086] S1, Generate an authentication certificate based on the digital identity ID corresponding to the target user and the first authentication behavior, wherein the first authentication behavior is located in the physical world;
[0087] S2, synchronize the authentication certificate to the digital avatar corresponding to the target user in the virtual world server, wherein the authentication certificate is used to perform the second authentication action of the digital avatar.
[0088] Optionally, the readable storage medium is also configured to store program code for performing the steps included in the method of Embodiment 1 above, which will not be described again in this embodiment.
[0089] Optionally, in this embodiment, the aforementioned readable storage medium may include, but is not limited to, various media capable of storing program code, such as USB flash drives, read-only memory (ROM), random access memory (RAM), portable hard drives, magnetic disks, or optical disks.
[0090] Optionally, specific examples in this embodiment can refer to the examples described in Embodiment 1 above, and will not be repeated here.
[0091] The sequence numbers of the above embodiments of the present invention are for descriptive purposes only and do not represent the superiority or inferiority of the embodiments.
[0092] If the integrated units in the above embodiments are implemented as software functional units and sold or used as independent products, they can be stored in the aforementioned computer-readable storage medium. Based on this understanding, the technical solution of the present invention, in essence, or the part that contributes to the prior art, or all or part of the technical solution, can be embodied in the form of a software product. This computer software product is stored in a storage medium and includes several instructions to cause one or more computer devices (which may be personal computers, servers, or network devices, etc.) to execute all or part of the steps of the methods described in the various embodiments of the present invention.
[0093] In the above embodiments of the present invention, the descriptions of each embodiment have different focuses. For parts not described in detail in a certain embodiment, please refer to the relevant descriptions of other embodiments.
[0094] In the several embodiments provided in this application, it should be understood that the disclosed client can be implemented in other ways. The device embodiments described above are merely illustrative; for example, the division of units is only a logical functional division, and in actual implementation, there may be other division methods. For example, multiple units or components may be combined or integrated into another system, or some features may be ignored or not executed. Furthermore, the coupling or direct coupling or communication connection shown or discussed may be through some interfaces, indirect coupling or communication connection between units or modules, and may be electrical or other forms.
[0095] The units described as separate components may or may not be physically separate. The components shown as units may or may not be physical units; that is, they may be located in one place or distributed across multiple network units. Some or all of the units can be selected to achieve the purpose of this embodiment according to actual needs.
[0096] Furthermore, the functional units in the various embodiments of the present invention can be integrated into one processing unit, or each unit can exist physically separately, or two or more units can be integrated into one unit. The integrated unit can be implemented in hardware or as a software functional unit.
[0097] The above description is only a preferred embodiment of the present invention. It should be noted that for those skilled in the art, several improvements and modifications can be made without departing from the principle of the present invention, and these improvements and modifications should also be considered within the scope of protection of the present invention.
Claims
1. A method for synchronizing virtual world authentication certificates, characterized in that, Applied to an authentication server, the method includes: An authentication certificate is generated based on the target user's digital identity ID and the first authentication action, wherein the first authentication action is located in the physical world; the authentication certificate is a permission or credential for executing the first authentication action. The authentication certificate is synchronized to the digital avatar corresponding to the target user in the virtual world server, wherein the authentication certificate is used to perform the second authentication action of the digital avatar; Before generating the authentication certificate based on the target user's digital identity ID and the first authentication action, the process also includes: In response to the first authentication action, a data request is sent to the mapping unit, wherein the mapping unit is used to match the first authentication action and the second authentication action, and to obtain the correspondence between the target user's account information in the physical world and the digital avatar in the virtual world; Receive the digital identity ID returned by the mapping unit.
2. The method according to claim 1, characterized in that, Before generating the authentication certificate based on the target user's digital identity ID and the first authentication action, the process also includes: The user behavior of the target user is verified based on the target user's identity information; If the verification is successful, the first authentication action is generated.
3. The method according to claim 1, characterized in that, After synchronizing the authentication certificate to the digital identity corresponding to the target user in the virtual world server, the process further includes: In response to the action request corresponding to the second authentication action, the authentication certificate is verified through the management system corresponding to the virtual world server; If the verification is successful, the digital identity is allowed to perform the second authentication action.
4. The method according to claim 3, characterized in that, The step of responding to the action request corresponding to the second authentication action by verifying the authentication certificate through the management system corresponding to the virtual world server includes: The management system sends a query request to the mapping module corresponding to the target user. Obtain the user's public key corresponding to the target user based on the digital identity ID; The management system verifies the certificate signature of the authentication certificate based on the user's public key, wherein the certificate signature is signed by the user's private key corresponding to the target user.
5. A virtual world authentication certificate synchronization device, characterized in that, The apparatus, used in an authentication server, includes: The processing module is used to generate an authentication certificate based on the digital identity ID of the target user and the first authentication behavior, wherein the first authentication behavior is located in the physical world; A synchronization module is used to synchronize the authentication certificate to the digital avatar corresponding to the target user in the virtual world server, wherein the authentication certificate is used to perform the second authentication action of the digital avatar; The sending module is configured to send a data request to the mapping unit in response to the first authentication behavior before generating an authentication certificate based on the digital identity ID corresponding to the target user and the first authentication behavior, wherein the mapping unit is configured to match the first authentication behavior and the second authentication behavior; A receiving module is used to receive the digital identity ID returned by the mapping unit.
6. The apparatus according to claim 5, characterized in that, Also includes: The verification module is used to verify the user behavior of the target user based on the target user's identity information; The processing module is further configured to generate the first authentication action if the verification is successful.
7. An electronic device, characterized in that, It includes a processor, a memory, and a program or instructions stored in the memory and executable on the processor, wherein the program or instructions, when executed by the processor, implement the steps of the virtual world authentication certificate synchronization method as described in claims 1-4.
8. A readable storage medium, characterized in that, The program or instructions are stored on the readable storage medium, and when the program or instructions are executed by a processor, they implement the steps of the virtual world authentication certificate synchronization method as described in claims 1-4.
Citation Information
Patent Citations
Information processing method based on unified code sending and server
CN114782066A
Electronic-data authentication method, Elctronic-data authentication program, and electronic-data, authentication system
US20100005311A1