Method and system for authentication management of a play-out terminal

The distributed architecture of the broadcast control terminal authentication management system uses device information digests for encrypted authentication, which solves the device security problem of digital broadcast control terminals and achieves efficient and reliable device legitimacy authentication and information protection.

CN116388997BActive Publication Date: 2025-12-12WUHAN SHIP COMM RES INST (NO 722 RES INST OF CHINA STATE SHIPBUILDING CORP)
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202310248425.3
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2023-03-13
Publication Date
2025-12-12
Estimated Expiration
2043-03-13

AI Technical Summary

Technical Problem

In existing technologies, the authentication methods of digital broadcast control terminals lack protection for sensitive information, resulting in insufficient equipment security and significant security risks.

Method used

The broadcast control terminal authentication management system, which adopts a distributed architecture, uses the collaborative work of the authentication node server and the broadcast control management platform to perform encrypted authentication using device information digests, avoid the transmission of sensitive information, generate authentication information digests, and perform final authentication on the broadcast control management platform.

Benefits of technology

It improves the reliability of equipment legality authentication for broadcast control terminals, protects sensitive information, reduces the communication and authentication processing burden on the broadcast control management platform, ensures equipment security, and improves the system's authentication efficiency and stability.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN116388997B_ABST
    Figure CN116388997B_ABST
Patent Text Reader

Abstract

The application discloses a kind of play control terminal authentication management method and system.The method includes obtaining target device information digest reported by target play control terminal through authentication node server, in the case where the device information digest stored in authentication node server contains target device information digest, the unique identification of target play control terminal and target device information digest are encrypted, and target authentication information digest is generated;Through play control server, the unique identification of target play control terminal and target authentication information digest are forwarded to play control management platform;Through play control management platform, the unique identification of target play control terminal and the device information digest stored in database server corresponding to the unique identification of target play control terminal are encrypted, and theoretical authentication information digest is generated, in the case where target authentication information digest and theoretical authentication information digest are consistent, determine that target play control terminal is authenticated successfully.The reliability of the method can improve the legality authentication of play control terminal.
Need to check novelty before this filing date? Find Prior Art

Description

TECHNICAL FIELD

[0001] The present application relates to the technical field of security authentication, and more particularly to a broadcast terminal authentication management method and system. BACKGROUND

[0002] With the continuous development of the Internet and multimedia technology, digital broadcast platforms are widely used in financial securities, network education, community advertising and other fields. Digital broadcast terminals have the characteristics of convenient installation, diversified promotional materials and rich video effects, and are widely deployed in financial securities business points, teaching points, community elevators and other places to provide information promotion services for people.

[0003] Due to the wide deployment of digital broadcast terminals, the communication security and device security of each terminal are facing serious challenges. The traditional authentication method of the digital broadcast terminal is identity information matching, which needs to report the sensitive information such as the unique identifier and MAC address (full name: Media Access Control Address) of the terminal to the digital broadcast platform.

[0004] However, this method lacks protection of sensitive information of the digital broadcast terminal, and still has a large security risk. Therefore, how to reliably authenticate the identity of the digital broadcast terminal to identify whether the digital broadcast terminal is a legal device, so as to ensure the device security of the digital broadcast terminal, has become a problem to be solved. SUMMARY

[0005] In view of at least one defect or improvement demand of the prior art, the present application provides a broadcast terminal authentication management method and system, which can improve the reliability of device legality authentication of the broadcast terminal, thereby ensuring the device security of the broadcast terminal.

[0006] To achieve the above-mentioned purpose, according to the first aspect of the present application, a broadcast terminal authentication management method is provided, which comprises:

[0007] obtaining a target device information digest reported by a target broadcast terminal through an authentication node server;

[0008] encrypting the unique identifier of the target broadcast terminal and the target device information digest to generate a target authentication information digest through the authentication node server, in the case that the device information digest stored in the authentication node server contains the target device information digest;

[0009] forwarding the unique identifier of the target broadcast terminal and the target authentication information digest to a broadcast management platform through a broadcast server, the broadcast server being network-connected with the authentication node server and the broadcast management platform, respectively;

[0010] The unique identifier of the target play control terminal and the device information digest corresponding to the unique identifier of the target play control terminal stored in the database server are encrypted by the play control management platform to generate a theoretical authentication information digest; the database server and the play control management platform are network connected and used to store data to be processed by the play control management platform.

[0011] The target play control terminal is determined to be authenticated successfully by the play control management platform when the target authentication information digest and the theoretical authentication information digest are consistent.

[0012] Further, the number of authentication node servers is one, and before the target device information digest reported by the target play control terminal is acquired by the authentication node server, the play control terminal authentication management method further comprises creating at least one play control terminal by the play control management platform, generating the unique identifier and the device information digest of each play control terminal; storing the device information digest of each play control terminal by the database server; synchronizing the device information digest of each play control terminal to the authentication node server by the play control server; and storing the device information digest of each play control terminal by the authentication node server.

[0013] Further, the number of authentication node servers is at least two, and before the target device information digest reported by the target play control terminal is acquired by the authentication node server, the play control terminal authentication management method further comprises creating at least one play control terminal by the play control management platform, generating the unique identifier and the device information digest of each play control terminal, and binding an authentication node server for each play control terminal; storing the device information digest of each play control terminal by the database server; synchronizing the device information digest of each play control terminal to the authentication node server bound to the play control terminal by the play control server; and storing the device information digest of at least one play control terminal bound to each authentication node server by the authentication node server.

[0014] Further, the unique identifier and the device information digest of each play control terminal are generated by the play control management platform, including generating the unique identifier and the device information digest of each play control terminal by the play control management platform, and setting the state of each play control terminal as an illegal device or a legal device.

[0015] Further, the binding relationship between the play control terminal and the authentication node server is modified by the play control management platform.

[0016] According to a second aspect of the present application, a broadcast terminal authentication management system is also provided, which adopts a distributed architecture and comprises a broadcast management platform, a database server, a broadcast server, at least one authentication node server and at least one broadcast terminal, the broadcast management platform and the database server being network-connected, the broadcast server being network-connected with the broadcast management platform and the at least one authentication node server respectively, each authentication node server and the at least one broadcast terminal being network-connected;

[0017] The authentication node server is configured to acquire a target device information digest reported by a target broadcast terminal;

[0018] The authentication node server is further configured to, in a case where the device information digest stored in the authentication node server contains the target device information digest, encrypt the unique identifier of the target broadcast terminal and the target device information digest to generate a target authentication information digest;

[0019] The broadcast server is configured to forward the unique identifier of the target broadcast terminal and the target authentication information digest to the broadcast management platform;

[0020] The broadcast management platform is configured to encrypt the unique identifier of the target broadcast terminal and a device information digest corresponding to the unique identifier of the target broadcast terminal and stored in the database server to generate a theoretical authentication information digest; and the database server is configured to store data required to be processed by the broadcast management platform.

[0021] The broadcast management platform is further configured to, in a case where the target authentication information digest and the theoretical authentication information digest are consistent, determine that the target broadcast terminal is authenticated successfully.

[0022] Further, the number of authentication node servers is one, and the broadcast management platform is further configured to create at least one broadcast terminal, generate a unique identifier and a device information digest of each broadcast terminal; the database server is further configured to store the device information digest of each broadcast terminal; the broadcast server is further configured to synchronize the device information digest of each broadcast terminal to the authentication node server; and the authentication node server is further configured to store the device information digest of each broadcast terminal.

[0023] Further, the number of authentication node servers is at least two, and the broadcast management platform is further configured to create at least one broadcast terminal, generate a unique identifier and a device information digest of each broadcast terminal, and bind one authentication node server for each broadcast terminal; the database server is further configured to store the device information digest of each broadcast terminal; the broadcast server is further configured to synchronize the device information digest of each broadcast terminal to the authentication node server bound with the broadcast terminal; and the authentication node server is further configured to store the device information digest of at least one broadcast terminal bound therewith.

[0024] Further, the play control management platform is further configured to create at least one play control terminal, generate a unique identifier and device information digest of each play control terminal, and set a state of each play control terminal as an illegal device or a legal device.

[0025] Further, the play control management platform is further configured to modify a binding relationship between the play control terminal and the authentication node server.

[0026] Overall, compared with the prior art, the above technical solutions of the present application can achieve the following beneficial effects:

[0027] (1) The play control terminal authentication management method provided by the present application can protect sensitive information of the play control terminal, improve the reliability of device legality authentication of the play control terminal, and ensure the device security of the play control terminal, because the target play control terminal reports the target device information digest instead of the target device information, and the target authentication information digest is generated based on the target device information digest, i.e. the transmission of the target device information is not involved in the entire authentication process.

[0028] (2) The play control terminal authentication management method provided by the present application can reduce the communication burden and authentication processing burden of the play control management platform compared with the traditional technology of only using the play control management platform for authentication, because the authentication node server and the play control management platform work together, i.e. the authentication node server performs preliminary authentication on the device information digest of the play control terminal and generates the authentication information digest, and the play control management platform only needs to process the correctness of the authentication information digest.

[0029] (3) The play control terminal authentication management system provided by the present application can establish a distributed play control terminal authentication management system through the deployment of the play control management platform, the play control server, the authentication node server and the play control terminal, and can appropriately increase the authentication node server as the play control terminal increases, so that the play control management platform can complete the cooperative authentication of multiple play control terminals through the authentication node server, thereby ensuring the authentication efficiency and stable operation of the system. BRIEF DESCRIPTION OF DRAWINGS

[0030] In order to more clearly illustrate the technical solutions in the embodiments of the present application, the drawings required in the embodiments will be briefly introduced as follows. Obviously, the drawings in the following description are only some embodiments of the present application, and other drawings can be obtained by those skilled in the art without creative labor.

[0031] Figure 1 The flowchart of the play control terminal authentication management method provided by an embodiment of the present application is shown in the figure.

[0032] Figure 2A structural diagram of a broadcast terminal authentication management system is provided for an embodiment of the present application.

[0033] Figure 3 A flowchart of a broadcast terminal authentication management method is provided for another embodiment of the present application. DETAILED DESCRIPTION

[0034] In order to make the objectives, technical solutions and advantages of the present application clearer, the present application is further described in detail below with reference to the accompanying drawings and embodiments. It should be understood that the specific embodiments described herein are only used to explain the present application and do not limit the present application. In addition, the technical features involved in each embodiment of the present application described below can be combined with each other as long as they do not conflict with each other.

[0035] The terms "first", "second", and the like in the specification and claims of the present application and the above-described drawings are used to distinguish different objects and are not used to describe a specific order. In addition, the terms "include" and "have" and any variations thereof are intended to cover non-exclusive inclusion. For example, a process, method, system, product or device including a series of steps or units is not limited to the listed steps or units, but can optionally include steps or units not listed or can optionally include other steps or units inherent to the process, method, product or device.

[0036] As shown in Figure 1 , a broadcast terminal authentication management method is provided, which is applied to a broadcast terminal authentication management system as shown in Figure 2 . The broadcast terminal authentication management system adopts a distributed architecture and includes a broadcast management platform, a database server, a broadcast server, at least one authentication node server and at least one broadcast terminal. The broadcast management platform and the database server are network connected, the broadcast server is network connected with the broadcast management platform and at least one authentication node server, and each authentication node server and at least one broadcast terminal are network connected. The broadcast terminal authentication management method includes the following steps:

[0037] Step 101, obtaining a target device information digest reported by a target broadcast terminal through an authentication node server.

[0038] The target broadcast terminal is a current broadcast terminal to be authenticated. Due to the wide deployment of broadcast terminals, not every broadcast terminal is a legal device. Therefore, the identity of the broadcast terminal needs to be authenticated before the broadcast terminal accesses the broadcast terminal authentication management system to ensure the security of the device.

[0039] The target device information digest is a device information digest of the target broadcast control terminal. The device information includes unique identification (also referred to as an identity ID), an IP address (full name: Internet Protocol Address), a MAC address, a factory number, a hard disk serial number, and other attribute information of the broadcast control terminal. The device information digest is obtained by encrypting the device information by using an information digest algorithm. The information digest algorithm can be an MD5 information digest algorithm.

[0040] In step 102, the unique identification of the target broadcast control terminal and the target device information digest are encrypted by the authentication node server to generate a target authentication information digest, in a case where the device information digest stored in the authentication node server contains the target device information digest.

[0041] The target authentication information digest is an authentication information digest of the target broadcast control terminal. The authentication information digest of the broadcast control terminal is obtained by encrypting the unique identification of the broadcast control terminal and the device information digest of the broadcast control terminal by using an MD5 information digest algorithm.

[0042] It should be noted that, since the broadcast control terminal authentication management method is applied to a distributed broadcast control terminal authentication management system, the system includes at least one authentication node server, and each authentication node server can perform preliminary authentication on at least one broadcast control terminal that is bound in advance. Therefore, when performing identity authentication on a target broadcast control terminal, preliminary authentication needs to be performed by the authentication node server bound with the target broadcast control terminal, rather than other authentication node servers.

[0043] Exemplarily, in a case where the broadcast control terminal authentication management system includes one authentication node server, the target broadcast control terminal is preliminarily authenticated by the authentication node server: it is determined whether the device information digest stored in the authentication node server contains the target device information digest. If the target device information digest is contained, the unique identification of the target broadcast control terminal and the target device information digest are encrypted to generate a target authentication information digest. If the target device information digest is not contained, it is determined that the target broadcast control terminal fails in preliminary authentication, and the target broadcast control terminal is an illegal device.

[0044] In a broadcast control terminal authentication management system with at least two authentication node servers, the target broadcast control terminal undergoes preliminary authentication through the current authentication node server: It is determined whether the device information digest stored in the current authentication node server contains the target device information digest. If it does, the unique identifier of the target broadcast control terminal and the target device information digest are encrypted to generate a target authentication information digest. If the target device information digest is not contained, the target broadcast control terminal undergoes preliminary authentication again through any other authentication node server besides the current authentication node server: It is determined whether its stored device information digest contains the target device information digest. If one authentication node server contains the target device information digest, the unique identifier of the target broadcast control terminal and the target device information digest are encrypted to generate a target authentication information digest. If all other authentication node servers besides the current authentication node server do not contain the target device information digest, the preliminary authentication of the target broadcast control terminal fails, and the target broadcast control terminal is an illegal device.

[0045] Step 103: The unique identifier of the target broadcast control terminal and the target authentication information digest are forwarded to the broadcast control management platform through the broadcast control server. The broadcast control server is connected to the authentication node server and the broadcast control management platform via the network.

[0046] For example, in the case where the broadcast control terminal authentication management system includes an authentication node server, the broadcast control server forwards the unique identifier of the target broadcast control terminal and the target authentication information digest to the broadcast control management platform. The broadcast control server is connected to both the authentication node server and the broadcast control management platform via the network.

[0047] In a broadcast control terminal authentication management system that includes at least two authentication node servers, the broadcast control server forwards the unique identifier of the target broadcast control terminal and the target authentication information digest to the broadcast control management platform. The broadcast control server is connected to each of the at least two authentication node servers via the network, and the broadcast control server is also connected to the broadcast control management platform via the network.

[0048] Step 104: Through the broadcast control management platform, the unique identifier of the target broadcast control terminal and the device information digest corresponding to the unique identifier of the target broadcast control terminal stored in the database server are encrypted to generate a theoretical authentication information digest; the database server and the broadcast control management platform are connected to the network and are used to store the data that the broadcast control management platform needs to process.

[0049] The database server and the broadcast management platform are connected in network, and are used for storing data needed to be processed by the broadcast management platform. Since the broadcast management platform comprises functional modules such as the device management module, the material management module, the online management module and the log management module, the data needed to be processed by the broadcast management platform comprises all data of these functional modules, wherein the data comprises the device information digest corresponding to the unique identification of each broadcast terminal. The theoretical authentication information digest is encrypted by the MD5 information digest algorithm.

[0050] Exemplarily, according to the unique identification of the target broadcast terminal received, the broadcast management platform acquires the device information digest corresponding to the unique identification of the target broadcast terminal from the database server; and encrypts the device information digest corresponding to the unique identification of the target broadcast terminal acquired from the database server and the unique identification of the target broadcast terminal, to generate the theoretical authentication information digest.

[0051] Step 105, according to the broadcast management platform, if the target authentication information digest is consistent with the theoretical authentication information digest, it is determined that the target broadcast terminal is authenticated successfully.

[0052] Exemplarily, according to the broadcast management platform, it is judged whether the target authentication information digest is consistent with the theoretical authentication information digest; if yes, it is determined that the target broadcast terminal is authenticated successfully, and the target broadcast terminal is a legal device and can access the broadcast terminal authentication management system; if no, it is determined that the target broadcast terminal is authenticated unsuccessfully, and the target broadcast terminal is an illegal device.

[0053] In the above broadcast terminal authentication management method, since the target broadcast terminal reports the target device information digest instead of the target device information, and the target authentication information digest is generated based on the target device information digest, in the whole authentication process, the transmission of the target device information is not involved, so that the sensitive information of the broadcast terminal can be protected, the reliability of the device legality authentication of the broadcast terminal is improved, and the purpose of ensuring the device security of the broadcast terminal is achieved.

[0054] Secondly, the authentication management system is applied to the broadcast terminal adopting the distributed architecture, the broadcast management platform is mainly responsible for the authentication processing, the broadcast server is mainly responsible for the message forwarding between the broadcast management platform and the authentication node server, and the database server is mainly responsible for storing the data required to be processed by the broadcast management platform, so as to reduce the communication burden and storage burden of the broadcast management platform. Moreover, the authentication node server is mainly responsible for isolating the authentication link and the broadcast management platform, that is, the authentication node server performs preliminary authentication on the device information digest of the broadcast terminal and generates an authentication information digest, and the broadcast management platform only needs to process the correctness of the authentication information digest, so that compared with the traditional technology in which the authentication is performed only by the broadcast management platform, the authentication processing burden of the broadcast management platform is reduced through the cooperative work of the authentication node server and the broadcast management platform.

[0055] In one embodiment, the number of authentication node servers is one, and before step 101, the broadcast terminal authentication management method further comprises: creating at least one broadcast terminal through the broadcast management platform, generating a unique identifier and a device information digest of each broadcast terminal, setting the state of each broadcast terminal as an illegal device; storing the device information digest of each broadcast terminal generated by the broadcast management platform through the database server; synchronizing the device information digest of each broadcast terminal to the authentication node server through the broadcast server; and storing the device information digest of each broadcast terminal through the authentication node server.

[0056] In one embodiment, the number of authentication node servers is at least two, and before step 101, the broadcast terminal authentication management method further comprises: creating at least one broadcast terminal through the broadcast management platform, generating a unique identifier and a device information digest of each broadcast terminal, setting the state of each broadcast terminal as an illegal device, and binding an authentication node server for each broadcast terminal; storing the device information digest of each broadcast terminal generated by the broadcast management platform through the database server; synchronizing the device information digest of each broadcast terminal to the authentication node server bound to the broadcast terminal through the broadcast server; and storing the device information digest of at least one broadcast terminal bound to each authentication node server through the authentication node server.

[0057] The creating at least one broadcast terminal through the broadcast management platform and generating a unique identifier and a device information digest of each broadcast terminal comprises: creating at least one broadcast terminal through the broadcast management platform, configuring device information for each broadcast terminal, and generating a device information digest of each broadcast terminal by encrypting the device information through an MD5 information digest algorithm. The device information comprises a unique identifier, an IP address, a MAC address, a factory number, a hard disk serial number, and the like of the broadcast terminal.

[0058] In the embodiment, when the number of authentication node servers is at least two, at least one broadcast terminal is created by the broadcast management platform, and one authentication node server is bound to each broadcast terminal, so that a distributed broadcast terminal authentication management system is established by the deployment of the broadcast management platform, the database server, the broadcast server, the at least two authentication node servers and the at least one authentication node server, which can meet the needs of increasing broadcast terminals and authentication node servers as the types of business involved in the broadcast management platform increase.

[0059] In one embodiment, the broadcast terminal authentication management method further includes deleting the created broadcast terminal, modifying the binding relationship between the broadcast terminal and the authentication node server, or modifying the state of the broadcast terminal from an illegal device to a legal device by the broadcast management platform. The broadcast management platform deletes the broadcast terminal, allocates the terminal, enables or disables a certain broadcast terminal, so that the broadcast server and the corresponding bound authentication node server can perform corresponding operations, and ensures the cooperative work of the authentication node server and the broadcast management platform.

[0060] In one embodiment, as shown in Figure 3 A broadcast terminal authentication management method is provided, including the following steps:

[0061] Step 1: The broadcast management platform newly creates a broadcast terminal, generates an identity ID of the broadcast terminal, then sets IP address, MAC address, factory number, hard disk serial number and other device information for the broadcast terminal, and performs MD5 encryption on the identity ID and device information of each broadcast terminal by MD5 information digest algorithm to generate a device information digest of each broadcast terminal; the identity ID and device information digest of each broadcast terminal are synchronized to the authentication node server through the broadcast server.

[0062] Step 2: The target broadcast terminal reports the target device information digest and identity ID to the authentication node server; the target broadcast terminal is preliminarily authenticated by the authentication node server, if the target device information digest exists in the authentication node server or the database connected to the authentication node server, that is, the target device information digest is correct, then the target authentication information digest is calculated according to the identity ID and target device information digest of the target broadcast terminal by MD5 encryption; otherwise, it is determined that the preliminary authentication fails.

[0063] Step 3: In the case of preliminary authentication failure, the authentication node server reports the identity ID and target authentication information digest of the target broadcast control terminal to the broadcast server, and the broadcast server forwards the identity ID and target authentication information digest of the target broadcast control terminal to the broadcast management platform; in the case of preliminary authentication failure, the authentication node server reports the message that the target broadcast control terminal is an illegal device to the broadcast server, and the broadcast server forwards the message that the target broadcast control terminal is an illegal device to the broadcast management platform, and the authentication ends.

[0064] Step 4: The broadcast management platform receives the identity ID and target authentication information digest of the target broadcast control terminal forwarded by the broadcast server, finds the device information digest corresponding to the identity ID of the target broadcast control terminal from the data stored in the database server, and according to the device information digest corresponding to the identity ID of the target broadcast control terminal and the identity ID of the target broadcast control terminal, performs MD5 encryption to calculate the authentication information digest, and compares it with the received target authentication information digest. If they are consistent, that is, the target authentication information digest is correct, it is determined that the authentication is successful; otherwise, it is determined that the authentication fails, the target broadcast control terminal is an illegal device, and the authentication ends.

[0065] In this embodiment, the identity of the broadcast control terminal is authenticated based on the device information digest and the authentication information digest, and the transmission of sensitive information of the broadcast control terminal is not involved, which ensures the security of the device of the broadcast control terminal. Secondly, the device information digest of the broadcast control terminal is preliminarily authenticated by the authentication node server and the authentication information digest is generated, and the broadcast management platform only needs to process the correctness of the authentication information digest, so compared with the traditional technology of only authentication by the broadcast management platform, the broadcast control terminal authentication management method provided by the present application reduces the communication burden and authentication processing burden of the broadcast management platform.

[0066] In addition, by deploying the broadcast management platform, the broadcast server, the authentication node server and the broadcast control terminal, a distributed broadcast control terminal authentication management system is established, and as the number of broadcast control terminals increases, the authentication node server can be appropriately increased. The broadcast management platform completes the cooperative authentication of multiple broadcast control terminals through the authentication node server, thereby ensuring the authentication efficiency and stable operation of the system.

[0067] The play control management platform can configure the terminal information of the play control terminal in real time, the terminal information is forwarded to the authentication node server by the play control server, the authentication node server completes the information interaction and reporting of the terminal information, so that the external network communication link does not directly transmit the sensitive information of the equipment, the link authentication data transmission is completed by the play control server and the authentication node server in the internal network, the communication burden of the play control management platform is reduced, a safe play control terminal authentication management system is formed, and the state management of the play control terminal of the whole network is realized. Through the deployment of multiple authentication node servers, the authentication needs of distributed, different sizes and different data forms of digital play control terminals are met, the deployment cost of the play control terminal is reduced, the use efficiency of the system is greatly improved, and the deployment safety of the play control terminal in the densely populated areas such as bank outlets, financial securities outlets and communities is ensured.

[0068] It should be noted that, for the foregoing method embodiments, in order to simply describe, they are all expressed as a series of action combinations, but those skilled in the art should know that the present application is not limited to the action sequence described, because according to the present application, certain steps can be performed in other sequences or simultaneously. Secondly, those skilled in the art should know that the embodiments described in the specification all belong to preferred embodiments, and the actions and modules involved are not necessarily necessary for the present application.

[0069] In the above embodiments, the description of each embodiment has its own emphasis, and the parts not described in detail in a certain embodiment can be referred to the related description of other embodiments.

[0070] The above is only an exemplary embodiment of the present disclosure, which cannot limit the scope of the present disclosure. Any equivalent changes and modifications made according to the teachings of the present disclosure are still within the scope of the present disclosure. Those skilled in the art will easily think of the embodiments of the present disclosure after considering the specification and practicing the disclosure herein. The present application aims to cover any variations, uses or adaptive changes of the present disclosure, which follow the general principles of the present disclosure and include common knowledge or conventional technical means in the technical field not recorded in the present disclosure. The specification and examples are only considered as exemplary, and the scope and spirit of the present disclosure are defined by the claims.

[0071] The technical features of the above embodiments can be combined arbitrarily, and in order to make the description simple, not all possible combinations of the technical features in the above embodiments are described, however, as long as the combination of the technical features does not exist contradictory, it should be considered as the scope recorded in the present disclosure.

[0072] Those skilled in the art can easily understand that the above description is only the preferred embodiment of the present application, and is not intended to limit the present application. Any modification, equivalent replacement and improvement made within the spirit and principle of the present application shall be included in the protection scope of the present application.

Claims

1. A method for managing authentication of a playout terminal, characterized by, The method comprises the following steps: obtaining, by an authentication node server, a target device information digest reported by a target broadcast control terminal; encrypting, by the authentication node server, a unique identifier of the target broadcast control terminal and the target device information digest to generate a target authentication information digest, if the target device information digest is contained in device information digests stored in the authentication node server; forwarding, by a broadcast control server, the unique identifier of the target broadcast control terminal and the target authentication information digest to a broadcast control management platform, the broadcast control server being network-connected with the authentication node server and the broadcast control management platform; encrypting, by the broadcast control management platform, the unique identifier of the target broadcast control terminal and a device information digest corresponding to the unique identifier of the target broadcast control terminal stored in a database server to generate a theoretical authentication information digest; the database server and the broadcast control management platform being network-connected to store data required to be processed by the broadcast control management platform; determining, by the broadcast control management platform, that the target broadcast control terminal is authenticated successfully, if the target authentication information digest is consistent with the theoretical authentication information digest.

2. The method of claim 1, wherein, The number of the authentication node servers is one, and before the step of obtaining, by the authentication node server, the target device information digest reported by the target broadcast control terminal, the method further comprises the following steps: creating, by the broadcast control management platform, at least one broadcast control terminal to generate a unique identifier of each broadcast control terminal and the device information digest; storing, by the database server, the device information digest of each broadcast control terminal; synchronizing, by the broadcast control server, the device information digest of each broadcast control terminal to the authentication node server; storing, by the authentication node server, the device information digest of each broadcast control terminal.

3. The method of claim 1, wherein, The number of the authentication node servers is at least two, and before the step of obtaining, by the authentication node server, the target device information digest reported by the target broadcast control terminal, the method further comprises the following steps: creating, by the broadcast control management platform, at least one broadcast control terminal to generate a unique identifier of each broadcast control terminal and the device information digest, and binding each broadcast control terminal with one authentication node server; storing, by the database server, the device information digest of each broadcast control terminal; synchronizing, by the broadcast control server, the device information digest of each broadcast control terminal to the authentication node server bound with the broadcast control terminal; storing, by each authentication node server, the device information digest of at least one broadcast control terminal bound therewith.

4. The method of claim 2 or 3, characterized in that The step of creating, by the broadcast control management platform, at least one broadcast control terminal to generate a unique identifier of each broadcast control terminal and the device information digest comprises the following steps: creating, by the broadcast control management platform, at least one broadcast control terminal to generate a unique identifier of each broadcast control terminal and the device information digest, and setting a state of each broadcast control terminal as an illegal device or a legal device.

5. The method of claim 3, wherein, The method further comprises the following steps: modifying, by the broadcast control management platform, a binding relationship between a broadcast control terminal and an authentication node server.

6. A broadcast control terminal authentication management system, characterized in that, The system adopts a distributed architecture, comprising a control management platform, a database server, a control server, at least one authentication node server and at least one control terminal, the control management platform and the database server are network connected, the control server is network connected with the control management platform and the at least one authentication node server respectively, each authentication node server and at least one control terminal are network connected; The authentication node server is configured to acquire a target device information digest reported by a target control terminal; The authentication node server is further configured to, in a case where the device information digest stored in the authentication node server contains the target device information digest, encrypt a unique identifier of the target control terminal and the target device information digest to generate a target authentication information digest; The control server is configured to forward the unique identifier of the target control terminal and the target authentication information digest to the control management platform; The control management platform is configured to encrypt the unique identifier of the target control terminal and a device information digest corresponding to the unique identifier of the target control terminal stored in the database server to generate a theoretical authentication information digest; The database server is configured to store data required to be processed by the control management platform; The control management platform is further configured to, in a case where the target authentication information digest and the theoretical authentication information digest are consistent, determine that the target control terminal is authenticated successfully.

7. The system of claim 6, wherein, The number of the authentication node servers is one, and the control management platform is further configured to create at least one control terminal, generate a unique identifier of each control terminal and the device information digest; The database server is further configured to store the device information digest of each control terminal; The control server is further configured to synchronize the device information digest of each control terminal to the authentication node server; The authentication node server is further configured to store the device information digest of each control terminal.

8. The system of claim 6, wherein, The number of the authentication node servers is at least two, and the control management platform is further configured to create at least one control terminal, generate a unique identifier of each control terminal and the device information digest, and bind one authentication node server for each control terminal; The database server is further configured to store the device information digest of each control terminal; The control server is further configured to synchronize the device information digest of each control terminal to the authentication node server bound with the control terminal; The authentication node server is further configured to store the device information digest of at least one control terminal bound therewith.

9. The system of claim 7 or 8, wherein, The control management platform is further configured to create at least one control terminal, generate a unique identifier of each control terminal and the device information digest, and set a state of each control terminal as an illegal device or a legal device.

10. The system of claim 8, wherein, The control management platform is further configured to modify a binding relationship between a control terminal and an authentication node server.

Citation Information

Patent Citations

  • Method, device and system for playing and controlling stream medium

    CN101466031A

  • Registration method, content playing control method and corresponding device of playing control terminal

    CN103188528A