Identity authentication method and system based on zero trust technology
Through an identity authentication method based on zero-trust technology, utilizing dynamic security authentication factors and two-way verification, the problems of user data leakage and high coupling in existing identity authentication are solved, and safe and reliable identity authentication is achieved.
CN116684109BActive Publication Date: 2025-10-24CHINA MOBILE GROUP DESIGN INST +1
2 Cites 0 Cited by
Patent Information
- Application Number
- CN202210164901.9
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2022-02-22
- Publication Date
- 2025-10-24
- Estimated Expiration
- 2042-02-22
AI Technical Summary
Technical Problem
Existing identity authentication methods have problems such as user data leakage risks, high development costs, and high component coupling when opening user data and business system services to the authentication server.
Method used
Adopting an identity authentication method based on zero-trust technology, a dynamic security authentication factor is generated through the business server, and two-way verification is performed with the authentication server to establish a trusted channel, reduce module coupling, and protect sensitive data.
Benefits of technology
It reduces the coupling of system modules, protects sensitive data, reduces the exposure risk of the original business system, and improves the reliability and security of identity authentication.
✦ Generated by Eureka AI based on patent content.
Abstract
The application discloses an identity authentication method and system based on zero trust technology, and the method is executed on a business server and comprises the following steps: receiving an identity authentication request sent by a business end and generating a dynamic security authentication factor; sending a polling request to an authentication server for bidirectional verification; the bidirectional verification is based on the dynamic security authentication factor; if the bidirectional verification is passed, sending a trust token issued by the authentication server and pre-stored user factor information to the authentication server, so that the authentication server compares the pre-stored user factor information with real-time user factor information collected; receiving a comparison result returned by the authentication server, and completing user identity authentication according to the comparison result. The authentication server does not need to be directly connected with a user database, a trusted channel is established after bidirectional verification with the business server, data required for identity authentication is acquired for judgment, the coupling of different modules in the system is reduced, and information-sensitive data is protected.
Need to check novelty before this filing date? Find Prior Art