Identity authentication method and system based on zero trust technology

Through an identity authentication method based on zero-trust technology, utilizing dynamic security authentication factors and two-way verification, the problems of user data leakage and high coupling in existing identity authentication are solved, and safe and reliable identity authentication is achieved.

CN116684109BActive Publication Date: 2025-10-24CHINA MOBILE GROUP DESIGN INST +1
2 Cites 0 Cited by

Patent Information

Application Number
CN202210164901.9
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-02-22
Publication Date
2025-10-24
Estimated Expiration
2042-02-22

AI Technical Summary

Technical Problem

Existing identity authentication methods have problems such as user data leakage risks, high development costs, and high component coupling when opening user data and business system services to the authentication server.

Method used

Adopting an identity authentication method based on zero-trust technology, a dynamic security authentication factor is generated through the business server, and two-way verification is performed with the authentication server to establish a trusted channel, reduce module coupling, and protect sensitive data.

Benefits of technology

It reduces the coupling of system modules, protects sensitive data, reduces the exposure risk of the original business system, and improves the reliability and security of identity authentication.

✦ Generated by Eureka AI based on patent content.
Patent Text Reader

Abstract

The application discloses an identity authentication method and system based on zero trust technology, and the method is executed on a business server and comprises the following steps: receiving an identity authentication request sent by a business end and generating a dynamic security authentication factor; sending a polling request to an authentication server for bidirectional verification; the bidirectional verification is based on the dynamic security authentication factor; if the bidirectional verification is passed, sending a trust token issued by the authentication server and pre-stored user factor information to the authentication server, so that the authentication server compares the pre-stored user factor information with real-time user factor information collected; receiving a comparison result returned by the authentication server, and completing user identity authentication according to the comparison result. The authentication server does not need to be directly connected with a user database, a trusted channel is established after bidirectional verification with the business server, data required for identity authentication is acquired for judgment, the coupling of different modules in the system is reduced, and information-sensitive data is protected.
Need to check novelty before this filing date? Find Prior Art