An Internet of Things platform terminal authentication method, device, equipment and medium

CN116980223BActive Publication Date: 2026-09-25E SURFING IOT CO LTD
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
CN202311088779.2
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2023-08-28
Publication Date
2026-09-25
Estimated Expiration
2043-08-28

AI Technical Summary

Technical Problem

[0003]本发明实施例提供了一种物联网平台终端公共认证方法、装置、设备及介质,旨在解决终端厂商无法提前烧录终端产品,且终端产品日认证过程复以及沟通成本过高的问题

Benefits of technology

[0008]本发明实施例提供了一种物联网平台终端公共认证方法、装置、设备及介质。其中,所述方法包括:接收待认证终端产品的公共认证模型创建请求,创建所述待认证终端产品对应的所述公共认证模型,其中,所述公共认证模型中包含有所述待认证终端产品的公共产品信息;根据所述公共产品信息生成所述待认证终端产品的公共认证密钥;若接收到所述待认证终端产品的私有化产品模型的创建请求,创建所述待认证终端产品对应的所述私有化产品模型,并从所述公共认证模型中获取所述待认证终端产品的所述公共产品信息,将所述公共产品信息复用至所述私有化产品模型中;若接收到所述待认证终端产品的登录请求,根据所述登录请求中携带的密钥与所述公共认证秘钥进行验证以完成所述待认证终端产品的登录。本发明实施例根据待认证终端产品创建公共认证模型获取公共产品信息,并根据公共产品信息生成公共认证秘钥,使得终端厂商可直接将所述公共认证秘钥烧录至所述终端设备中,设备使用者在购买所述终端设备并完成私有化后,可根据所述烧录至所述终端产品中的秘钥与平台中生成的公共认证秘钥进行验证并登录,解决了终端厂商和终端使用者对接过程繁琐,和终端厂商无法提前烧录备货以及使用者认证设备过程复杂的问题。

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN116980223B_ABST
    Figure CN116980223B_ABST
Patent Text Reader

Abstract

Embodiments of the present application disclose a kind of Internet of Things platform terminal public authentication method, device, equipment and medium.The method includes: receiving the public authentication model creation request of terminal product to be authenticated, creates the public authentication model corresponding to terminal product to be authenticated, wherein, public authentication model contains the public product information of terminal product to be authenticated;According to public product information, generate the public authentication key of terminal product to be authenticated;Create the product model of private of terminal product to be authenticated, and obtain the public product information of terminal product to be authenticated, and the public product information is multiplexed into the product model of private;If receiving the login request of terminal product to be authenticated, according to the key carried in login request and public authentication secret key are verified to complete the login of terminal product to be authenticated.The method of the present application embodiment can solve the problem that terminal manufacturer cannot burn in terminal product in advance, and terminal product daily authentication process is complex and the cost of communication is too high.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] This invention relates to the field of Internet of Things (IoT) technology, and in particular to a public authentication method, apparatus, device, and medium for IoT platform terminals. Background Technology

[0002] With the development of technology, the Internet of Things (IoT) is gradually increasing its importance in people's lives. The interaction between IoT systems, terminal manufacturers, and users is the main function of IoT. After purchasing terminal products from manufacturers offline, users generate a key for the terminal products through IoT and send it to the manufacturers. The manufacturers then burn the key and device ID information into the terminal products and deliver them to the users. Users need to perform complex operations such as embedding Bluetooth modules into the terminal products and modifying the authentication process before they can add the devices to their accounts. This process means that manufacturers need to contact users to obtain the access key for the terminal products, which prevents them from preparing inventory in advance. Furthermore, the user terminal product authentication process is complex and requires high communication costs. Summary of the Invention

[0003] This invention provides a method, apparatus, device, and medium for public authentication of IoT platform terminals, aiming to solve the problems that terminal manufacturers cannot pre-program terminal products, and that the daily authentication process for terminal products is complicated and communication costs are too high.

[0004] In a first aspect, embodiments of the present invention provide a public authentication method for IoT platform terminals, comprising: receiving a public authentication model creation request for a terminal product to be authenticated; creating a public authentication model corresponding to the terminal product to be authenticated, wherein the public authentication model contains public product information of the terminal product to be authenticated; generating a public authentication key for the terminal product to be authenticated based on the public product information; if a private product model creation request for the terminal product to be authenticated is received, creating a private product model corresponding to the terminal product to be authenticated, obtaining the public product information of the terminal product to be authenticated from the public authentication model, and reusing the public product information in the private product model; if a login request for the terminal product to be authenticated is received, verifying the login of the terminal product to be authenticated based on the key carried in the login request and the public authentication key.

[0005] Secondly, embodiments of the present invention also provide an IoT platform terminal public authentication device, comprising: a creation unit, configured to receive a public authentication model creation request for a terminal product to be authenticated, and create a public authentication model corresponding to the terminal product to be authenticated, wherein the public authentication model contains public product information of the terminal product to be authenticated; a generation unit, configured to generate a public authentication key for the terminal product to be authenticated based on the public product information; a private unit, configured to, if a private product model creation request for the terminal product to be authenticated is received, create a private product model corresponding to the terminal product to be authenticated, obtain the public product information of the terminal product to be authenticated from the public authentication model, and reuse the public product information in the private product model; and a verification unit, configured to, if a login request for the terminal product to be authenticated is received, verify the login of the terminal product to be authenticated based on the key carried in the login request and the public authentication key.

[0006] Thirdly, embodiments of the present invention also provide a computer device, which includes a memory and a processor, wherein the memory stores a computer program, and the processor executes the computer program to implement the above-described method.

[0007] Fourthly, embodiments of the present invention also provide a computer-readable storage medium storing a computer program, the computer program including program instructions that, when executed by a processor, can implement the above-described method.

[0008] This invention provides a method, apparatus, device, and medium for public authentication of IoT platform terminals. The method includes: receiving a public authentication model creation request for a terminal product to be authenticated; creating a public authentication model corresponding to the terminal product to be authenticated, wherein the public authentication model contains public product information of the terminal product to be authenticated; generating a public authentication key for the terminal product to be authenticated based on the public product information; if a request to create a private product model for the terminal product to be authenticated is received, creating a private product model corresponding to the terminal product to be authenticated, obtaining the public product information of the terminal product to be authenticated from the public authentication model, and reusing the public product information in the private product model; if a login request for the terminal product to be authenticated is received, verifying the login with the public authentication key carried in the login request to complete the login of the terminal product to be authenticated. This invention creates a public authentication model based on the terminal product to be authenticated to obtain public product information, and generates a public authentication key based on the public product information. This allows terminal manufacturers to directly burn the public authentication key into the terminal device. After purchasing the terminal device and completing privatization, the device user can verify and log in using the key burned into the terminal product and the public authentication key generated in the platform. This solves the problems of cumbersome connection process between terminal manufacturers and terminal users, terminal manufacturers' inability to burn and prepare inventory in advance, and the complicated device authentication process for users. Attached Figure Description

[0009] To more clearly illustrate the technical solutions of the embodiments of the present invention, the drawings used in the following description of the embodiments will be briefly introduced. Obviously, the drawings described below are some embodiments of the present invention. For those skilled in the art, other drawings can be obtained based on these drawings without creative effort.

[0010] Figure 1 This is a flowchart illustrating the IoT platform terminal authentication method provided in an embodiment of the present invention.

[0011] Figure 2 A schematic diagram of a sub-process of the IoT platform terminal authentication method provided in an embodiment of the present invention;

[0012] Figure 3 A schematic diagram of a sub-process of the IoT platform terminal authentication method provided in an embodiment of the present invention;

[0013] Figure 4 A schematic diagram of a sub-process of the IoT platform terminal authentication method provided in an embodiment of the present invention;

[0014] Figure 5A schematic diagram of a sub-process of the IoT platform terminal authentication method provided in an embodiment of the present invention;

[0015] Figure 6 A schematic diagram of a sub-process of the IoT platform terminal authentication method provided in an embodiment of the present invention;

[0016] Figure 7 A schematic block diagram of an IoT platform terminal authentication device provided in an embodiment of the present invention;

[0017] Figure 8 A schematic block diagram of a computer device provided for an embodiment of the present invention. Detailed Implementation

[0018] The technical solutions of the embodiments of the present invention will be clearly and completely described below with reference to the accompanying drawings. Obviously, the described embodiments are only some, not all, of the embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by those skilled in the art without creative effort are within the scope of protection of the present invention.

[0019] It should be understood that, when used in this specification and the appended claims, the terms "comprising" and "including" indicate the presence of the described features, integrals, steps, operations, elements and / or components, but do not exclude the presence or addition of one or more other features, integrals, steps, operations, elements, components and / or collections thereof.

[0020] It should also be understood that the terminology used in this specification is for the purpose of describing particular embodiments only and is not intended to limit the invention. As used in this specification and the appended claims, the singular forms “a,” “an,” and “the” are intended to include the plural forms unless the context clearly indicates otherwise.

[0021] It should also be further understood that the term "and / or" as used in this specification and the appended claims refers to any combination of one or more of the associated listed items and all possible combinations, and includes such combinations.

[0022] Figure 1 This is a flowchart illustrating the IoT platform terminal authentication method provided in an embodiment of the present invention. As shown in the figure, the method includes the following steps S110-S140.

[0023] S110. Receive a public authentication model creation request for the terminal product to be authenticated, and create the public authentication model corresponding to the terminal product to be authenticated, wherein the public authentication model contains public product information of the terminal product to be authenticated.

[0024] In this embodiment, the terminal product to be certified is a terminal product that has not been certified and logged in on the platform. The public authentication model is a public model that the terminal manufacturer stores in the IoT platform. When a public authentication model creation request for a terminal product to be certified is received, the public authentication model corresponding to the terminal product to be certified is created. The public authentication model corresponding to the terminal product to be certified can be created based on attributes such as the industry type, terminal communication protocol type, terminal authentication method, data encryption method, name, whether transparent transmission is possible, and whether there is a physical model, as well as the terminal manufacturer name, terminal model, and terminal type of the terminal product to be certified. For example, if the industry of the terminal product to be certified is IoT, the terminal manufacturer name is A, and the terminal model is X55LP, then the created public authentication model is named "IoT-A-X55LP". If there are other terminal products of the same type later, they can also be stored in the public authentication model with the corresponding name. After creating the public authentication model, the public product information of the terminal product to be authenticated can be stored in the public authentication model. The public product information includes tenant information, device information, product information, and device function settings of the terminal product to be authenticated. By establishing the public authentication model corresponding to the terminal product to be authenticated, the information of the terminal product to be authenticated produced by the terminal manufacturer is publicly stored on the platform, facilitating subsequent access to the terminal product information by the platform.

[0025] In one embodiment, such as Figure 2 As shown, step S110 further includes steps S111-S112.

[0026] S111. Obtain the preset attribute information and preset type information of the terminal product to be certified;

[0027] S112. Create the public authentication model based on the preset attribute information and the preset type information.

[0028] In this embodiment, the preset attribute information and preset type information are information set by the terminal manufacturer for the terminal product to be certified when producing it. The preset attribute information refers to the essential properties of the terminal product to be certified, such as the industry type, communication protocol type, authentication method, data encryption method, name, whether it is transparent, and whether it has an object model. The preset type information refers to the category of the terminal product's properties and characteristics, such as the terminal manufacturer's name, model number, and type. Based on the information of the terminal product to be certified input by the terminal manufacturer, the preset attribute information and preset type information are obtained, and the public certification model can be created based on these information. For example, if the terminal product belongs to the Internet of Things (IoT) industry, the terminal manufacturer's name is A, and the terminal model is X55LP, then the created public certification model would be named "IoT-A-X55LP". After creating the public certification model, the information of the terminal product to be certified can be stored in the public certification model. By creating the public authentication model, the terminal manufacturer's private terminal products to be authenticated can be stored in the platform, making it convenient for the platform to access the information of the terminal products to be authenticated.

[0029] S120. Generate a public authentication key for the terminal product to be authenticated based on the public product information.

[0030] In this embodiment, the public authentication key is a key generated by the platform based on the public product information to verify the terminal product to be authenticated. The public authentication key is stored in the platform and sent to the terminal manufacturer. Specifically, the terminal manufacturer can choose its own method for generating the public authentication key. The public authentication key can be generated by calling a preset automated interface according to the chosen method. For example, if the terminal manufacturer chooses to generate the key based on tenant information and product information in the public product information, the public authentication key is generated through a pre-set automated interface using the tenant information and product information. By generating the public authentication key for the terminal product to be authenticated based on the public product information, the public authentication key can be automatically generated and sent to the terminal manufacturer. This completes the automated interface integration, enabling batch generation of public authentication keys and terminal production line integration, and facilitating subsequent authentication of the device to be authenticated.

[0031] In one embodiment, such as Figure 3 As shown, step S120 further includes steps S121-S122.

[0032] S121. Obtain the tenant information and product information from the public product information;

[0033] S122. Generate the public authentication key based on the tenant information and the product information.

[0034] In this embodiment, the tenant information is the basic information of the buyer who purchased the terminal product. The terminal manufacturer can input the model information of the terminal product to be certified and the model information of the terminal manufacturer to query the number information of the model to be certified in the public certification model, wherein the number information is unique. After obtaining the number information, the manufacturer selects a method to generate a public certification key for the terminal product to be certified to which the number information belongs. If the terminal manufacturer chooses to generate the public certification key based on the tenant information and product information in the public product information, then the tenant information and product information in the public product information are obtained, and then the public certification key can be generated through a preset automated interface. Generating the public certification key through the automated interface can achieve rapid batch production of terminal keys.

[0035] In one embodiment, such as Figure 4 As shown, step S120 further includes steps S123-S124.

[0036] S123. Obtain tenant information, product information, and equipment information from the public product information;

[0037] S124. Generate the public authentication key based on the tenant information, the product information, and the device information.

[0038] In this embodiment, the device information refers to the hardware information of the terminal product to be authenticated. If the terminal manufacturer chooses to generate the public authentication key based on the tenant information and product information in the public product information, then the tenant information, product information, and device information of the module to be authenticated in the public authentication model are obtained. The public authentication key is generated based on the automated interface and the tenant information, the product information, and the device information. The public authentication key is stored in the platform and sent to the terminal manufacturer. The terminal manufacturer can burn the public authentication key into the terminal product to be authenticated for subsequent key verification.

[0039] S130. If a request to create a private product model for the terminal product to be certified is received, the private product model corresponding to the terminal product to be certified is created, and the public product information of the terminal product to be certified is obtained from the public certification model, and the public product information is reused in the private product model.

[0040] In this embodiment, the privatized product model is a model in the platform where end users store terminal product information. After purchasing the terminal product to be certified, the end user privatizes the terminal product to be certified into a private model through the platform, that is, creates the privatized product model in the end user's private model. If the platform receives a request to create a privatized product model for the terminal product to be certified, it can create the privatized product model based on the product information and device information of the terminal product to be certified, or it can copy the corresponding public certification model to complete the creation of the privatized product model. After creating the privatized product model, the public product information of the terminal product to be certified is obtained from the public certification model stored in the platform, and the public product information is reused in the privatized product model. By creating the privatized product model corresponding to the terminal product to be certified and obtaining the public product information of the terminal product to be certified from the public certification model, and reusing the public product information in the privatized product model, the end user can reduce the workload of creating and debugging the terminal product and platform integration, and improve integration efficiency.

[0041] In one embodiment, such as Figure 5 As shown, step S130 further includes steps S131-S132.

[0042] S131. Query the corresponding public product information based on the model information of the terminal product to be certified carried in the creation request;

[0043] S132. The public product information corresponding to the preset reuse function is reused into the private product model.

[0044] In this embodiment, the preset reuse function is a reuse interface pre-set by the platform. The reuse refers to directly copying the public authentication model and the public product information of the terminal to be authenticated within it into a new model. If a request to create a private product model of the terminal to be authenticated is received, the creation request is parsed to obtain the model information of the terminal to be authenticated carried in the creation request. Based on the model information, the public product information in the public authentication model to which the terminal to be authenticated belongs is queried. The public product information is reused through the preset reuse function and stored in the private product model. By reusing the corresponding public product information into the private product model according to the preset reuse function, the reuse method rationalizes and simplifies the private product model creation process, reducing the workload of end users in creating and debugging devices and platform interfaces, and improving interface efficiency.

[0045] In this embodiment, the method further includes: determining whether the private product model of the terminal product to be certified exists in the user's private model; if the private product model does not exist in the private model, then creating the private product model corresponding to the terminal product to be certified. The private model is a model under the user's private account. The private model can store the terminal products purchased by the user. When a request to create a private product model of the terminal product to be certified is received, the method first determines whether a private model of the terminal device to be certified has already been created in the private model based on the product information and device information of the terminal product to be certified carried in the creation request. If the private model of the terminal device to be certified already exists in the private model, a message is displayed indicating that the device already exists; otherwise, the private product model corresponding to the terminal product to be certified is created. The private product model can be created based on the product information and device information of the terminal product to be certified, or it can be created by copying the public certification model. By determining whether the private product model of the terminal product to be certified exists in the private model, the duplicate creation of the private product model can be avoided, reducing redundant information.

[0046] S140. If a login request for the terminal product to be authenticated is received, the login request is verified using the key carried in the login request and the public authentication key to complete the login of the terminal product to be authenticated.

[0047] In this embodiment, the key carried in the login request is the key burned into the terminal device by the terminal manufacturer. Specifically, the terminal manufacturer obtains the public authentication key of the terminal product to be authenticated, generated by the platform based on the public product information, and burns the public authentication key into the terminal product to be authenticated. When the terminal user purchases the terminal product to be authenticated and logs into the platform through the terminal product to be authenticated, a login request is sent. If the platform receives the login request, it verifies the key burned into the terminal product by the terminal manufacturer in the login request with the public authentication key generated by the platform. If the key matches the public authentication key in the platform, the login of the terminal product to be authenticated can be completed, and daily business such as data reporting of the terminal product can be performed through the platform. By verifying the login of the terminal product to be authenticated based on the key carried in the login request and the public authentication key, the problem that terminal users can only log in by modifying the already burned key through the Bluetooth module in the terminal product transfer scenario can be solved. This facilitates the transfer and management of the terminal product at any time, is simple to operate, and reduces the terminal cost of burning the key.

[0048] In one embodiment, such as Figure 6 As shown, step S140 further includes steps S141-S142.

[0049] S141. Query the public authentication key of the terminal product to be authenticated;

[0050] S142. Verify the key carried in the login request and the corresponding public authentication key through a preset public authentication channel.

[0051] In this embodiment, the preset public authentication channel is a public authentication interface set up by the platform. This public authentication channel verifies whether the key carried in the login request matches the corresponding public authentication key. The public authentication key stored in the platform for the terminal product to be authenticated is queried, the login request is parsed, and the key carried in the login request is obtained. This key is the one burned into the terminal product by the terminal manufacturer after obtaining the public authentication key. Then, the key and the retrieved public authentication key are verified through the preset public authentication channel. If the verification is successful, the terminal product to be authenticated is certified and can perform daily business such as terminal data reporting on the IoT platform. It should be noted that the terminal product to be authenticated needs to be authenticated through the above authentication method every time it logs into the platform. By verifying the key carried in the login request and the corresponding public authentication key through the preset public authentication channel, the login of the terminal device to be processed can be automated, solving the problems of difficult and complex operation for terminal users to authenticate the device.

[0052] Figure 7 This is a schematic block diagram of a public authentication device 200 for an IoT platform terminal provided in an embodiment of the present invention. Figure 7 As shown, corresponding to the above-described IoT platform terminal authentication method, this invention also provides an IoT platform terminal public authentication device. This IoT platform terminal authentication device includes a unit for executing the above-described IoT platform terminal authentication method, and the device can be configured in terminals such as desktop computers, tablet computers, and laptops. For details, please refer to... Figure 7 The IoT platform terminal authentication device includes a creation unit 210, a generation unit 220, a private unit 230, and a verification unit 240.

[0053] The creation unit 210 is used to receive a public authentication model creation request for the terminal product to be authenticated, and to create the public authentication model corresponding to the terminal product to be authenticated, wherein the public authentication model contains public product information of the terminal product to be authenticated.

[0054] In one embodiment, the creation unit 210 includes an acquisition unit and a creation subunit.

[0055] The acquisition unit is used to acquire preset attribute information and preset type information of the terminal product to be certified;

[0056] Create a sub-unit to create the public authentication model based on the preset attribute information and the preset type information.

[0057] The generation unit 220 is used to generate a public authentication key for the terminal product to be authenticated based on the public product information.

[0058] In one embodiment, the generation unit 220 includes a first acquisition unit and a first generation unit.

[0059] The first acquisition unit is used to acquire tenant information and product information from the public product information;

[0060] The first generation unit is used to generate the public authentication key based on the tenant information and the product information.

[0061] In one embodiment, the generation unit 220 includes a second acquisition unit and a second generation unit.

[0062] The first acquisition unit is used to acquire tenant information, product information, and equipment information from the public product information;

[0063] The first generation unit is used to generate the public authentication key based on the tenant information, the product information, and the device information.

[0064] Private unit 230 is used to, upon receiving a request to create a private product model for the terminal product to be certified, create the private product model corresponding to the terminal product to be certified, obtain the public product information of the terminal product to be certified from the public certification model, and reuse the public product information into the private product model.

[0065] In one embodiment, the private unit 230 includes a query unit and a reuse unit.

[0066] The query unit is used to query the corresponding public product information based on the model information of the terminal product to be certified carried in the creation request;

[0067] The reuse unit is used to reuse the corresponding public product information into the private product model according to the preset reuse function.

[0068] In one embodiment, the private unit 230 includes a judgment unit and a private sub-unit.

[0069] The judgment unit is used to determine whether the private product model corresponding to the terminal product to be certified exists in the private model of the terminal user;

[0070] A private subunit is used to create the private product model corresponding to the terminal product to be certified if the private product model does not exist in the private model.

[0071] The verification unit 240 is used to verify the login of the terminal product to be authenticated by using the key carried in the login request and the public authentication key if a login request for the terminal product to be authenticated is received.

[0072] In one embodiment, the verification unit 240 includes a key acquisition unit and a verification subunit.

[0073] A key acquisition unit is used to query the public authentication key of the terminal product to be authenticated.

[0074] The verification subunit is used to verify the key carried in the login request and the corresponding public authentication key through a preset public authentication channel.

[0075] It should be noted that those skilled in the art can clearly understand that the specific implementation process of the above-mentioned IoT platform terminal authentication device 200 and each unit can be referred to the corresponding description in the foregoing method embodiments. For the sake of convenience and brevity, it will not be repeated here.

[0076] The aforementioned IoT platform terminal authentication device can be implemented as a computer program, which can, for example... Figure 8 It runs on the computer device shown.

[0077] Please see Figure 8 , Figure 8 This is a schematic block diagram of a computer device provided in an embodiment of this application. The computer device 500 can be a terminal or a server. The terminal can be an electronic device with communication functions, such as a smartphone, tablet, laptop, desktop computer, personal digital assistant, or wearable device. The server can be a standalone server or a server cluster composed of multiple servers.

[0078] See Figure 8 The computer device 500 includes a processor 502, a memory, and a network interface 505 connected via a system bus 501. The memory may include a non-volatile storage medium 503 and internal memory 504.

[0079] The non-volatile storage medium 503 may store an operating system 5031 and a computer program 5032. The computer program 5032 includes program instructions that, when executed, cause the processor 502 to perform a public authentication method for IoT platform terminals.

[0080] The processor 502 provides computing and control capabilities to support the operation of the entire computer device 500.

[0081] The internal memory 504 provides an environment for the execution of the computer program 5032 in the non-volatile storage medium 503. When the computer program 5032 is executed by the processor 502, the processor 502 can execute a public authentication method for IoT platform terminals.

[0082] This network interface 505 is used for network communication with other devices. Those skilled in the art will understand that... Figure 8 The structure shown is merely a block diagram of a portion of the structure related to the present application and does not constitute a limitation on the computer device 500 to which the present application is applied. The specific computer device 500 may include more or fewer components than those shown in the figure, or combine certain components, or have different component arrangements.

[0083] The processor 502 is used to run a computer program 5032 stored in a memory to implement the steps of the above method.

[0084] It should be understood that in the embodiments of this application, the processor 502 may be a central processing unit (CPU), or it may be other general-purpose processors, digital signal processors (DSPs), application-specific integrated circuits (ASICs), field-programmable gate arrays (FPGAs), or other programmable logic devices, discrete gate or transistor logic devices, discrete hardware components, etc. The general-purpose processor may be a microprocessor or any conventional processor.

[0085] It will be understood by those skilled in the art that all or part of the processes in the methods of the above embodiments can be implemented by a computer program instructing related hardware. The computer program includes program instructions and can be stored in a storage medium, which is a computer-readable storage medium. The program instructions are executed by at least one processor in the computer system to implement the process steps of the embodiments of the above methods.

[0086] Therefore, the present invention also provides a storage medium. This storage medium can be a computer-readable storage medium. The storage medium stores a computer program, wherein the computer program includes program instructions. When executed by a processor, the program instructions cause the processor to perform the steps of the method described above.

[0087] The storage medium can be any computer-readable storage medium capable of storing program code, such as a USB flash drive, portable hard drive, read-only memory (ROM), magnetic disk, or optical disk.

[0088] Those skilled in the art will recognize that the units and algorithm steps of the various examples described in conjunction with the embodiments disclosed herein can be implemented in electronic hardware, computer software, or a combination of both. To clearly illustrate the interchangeability of hardware and software, the components and steps of the various examples have been generally described in terms of functionality in the foregoing description. Whether these functions are implemented in hardware or software depends on the specific application and design constraints of the technical solution. Those skilled in the art can use different methods to implement the described functions for each specific application, but such implementations should not be considered beyond the scope of this invention.

[0089] In the several embodiments provided by this invention, it should be understood that the disclosed apparatus and methods can be implemented in other ways. For example, the apparatus embodiments described above are merely illustrative. For example, the division of each unit is merely a logical functional division, and there may be other division methods in actual implementation. For example, multiple units or components may be combined or integrated into another system, or some features may be ignored or not executed.

[0090] The steps in the method of this invention can be adjusted, merged, or reduced in order according to actual needs. The units in the device of this invention can be merged, divided, or reduced according to actual needs. Furthermore, the functional units in the various embodiments of this invention can be integrated into one processing unit, or each unit can exist physically separately, or two or more units can be integrated into one unit.

[0091] If the integrated unit is implemented as a software functional unit and sold or used as an independent product, it can be stored in a storage medium. Based on this understanding, the technical solution of the present invention, in essence, or the part that contributes to the prior art, or all or part of the technical solution, can be embodied in the form of a software product. This computer software product is stored in a storage medium and includes several instructions to cause a computer device (which may be a personal computer, a terminal, or a network device, etc.) to execute all or part of the steps of the methods described in the various embodiments of the present invention.

[0092] The above description is merely a specific embodiment of the present invention, but the scope of protection of the present invention is not limited thereto. Any person skilled in the art can easily conceive of various equivalent modifications or substitutions within the technical scope disclosed in the present invention, and these modifications or substitutions should all be covered within the scope of protection of the present invention. Therefore, the scope of protection of the present invention should be determined by the scope of the claims.

Claims

1. A public authentication method for IoT platform terminals, characterized in that, include: The system receives a public authentication model creation request for a terminal product to be authenticated, obtains the preset attribute information and preset type information of the terminal product to be authenticated, and creates the public authentication model based on the preset attribute information and the preset type information. The public authentication model contains public product information of the terminal product to be authenticated. The preset attribute information includes the industry type, terminal communication protocol type, terminal authentication method, and data encryption method of the terminal product to be authenticated. The preset type information includes the terminal manufacturer name, terminal model, and terminal type of the terminal product to be authenticated. Generate a public authentication key for the terminal product to be authenticated based on the public product information; If a request to create a private product model for the terminal product to be certified is received, it is determined whether the private product model corresponding to the terminal product to be certified exists in the user's private model; if the private product model does not exist in the private model, the private product model corresponding to the terminal product to be certified is created, and the corresponding public product information is queried according to the model information of the terminal product to be certified carried in the creation request, and the corresponding public product information is reused into the private product model according to the preset reuse function. If a login request for the terminal product to be authenticated is received, the login for the terminal product to be authenticated is completed by verifying the key carried in the login request with the public authentication key. The key carried in the login request is the public authentication key burned into the terminal product to be authenticated by the terminal manufacturer.

2. The method according to claim 1, characterized in that, The step of generating a public authentication key for the terminal product to be authenticated based on the public product information includes: Obtain the tenant information and product information from the public product information; The public authentication key is generated based on the tenant information and the product information.

3. The method according to claim 1, characterized in that, The step of generating the public authentication key for the terminal product to be authenticated based on the public product information further includes: Obtain tenant information, product information, and equipment information from the public product information; The public authentication key is generated based on the tenant information, the product information, and the device information.

4. The method according to claim 1, characterized in that, The step of verifying the login of the terminal product to be authenticated by comparing the key carried in the login request with the public authentication key includes: Query the public authentication key of the terminal product to be authenticated; The key carried in the login request is verified with the corresponding public authentication key through a preset public authentication channel.

5. A public authentication device for IoT platform terminals, characterized in that, include: A creation unit is used to receive a public authentication model creation request for a terminal product to be authenticated, obtain preset attribute information and preset type information of the terminal product to be authenticated, and create the public authentication model based on the preset attribute information and the preset type information. The public authentication model contains public product information of the terminal product to be authenticated. The preset attribute information includes the industry type, terminal communication protocol type, terminal authentication method, and data encryption method of the terminal product to be authenticated. The preset type information includes the terminal manufacturer name, terminal model, and terminal type of the terminal product to be authenticated. A generation unit is used to generate a public authentication key for the terminal product to be authenticated based on the public product information. A private unit is configured to, upon receiving a request to create a private product model for the terminal product to be certified, determine whether the private product model corresponding to the terminal product to be certified exists in the user's private model; if the private product model does not exist in the private model, create the private product model corresponding to the terminal product to be certified, query the corresponding public product information based on the model information of the terminal product to be certified carried in the creation request, and reuse the corresponding public product information into the private product model according to a preset reuse function; The verification unit is configured to, upon receiving a login request from the terminal product to be authenticated, verify the login of the terminal product to be authenticated by comparing the key carried in the login request with the public authentication key, wherein the key carried in the login request is the public authentication key burned into the terminal product to be authenticated by the terminal manufacturer.

6. A computer device, characterized in that, The computer device includes a memory and a processor, wherein the memory stores a computer program, and the processor executes the computer program to implement the method as described in any one of claims 1-4.

7. A storage medium, characterized in that, The storage medium stores a computer program, which includes program instructions that, when executed by a processor, can implement the method as described in any one of claims 1-4.

Citation Information

Patent Citations

  • Method and device for managing Internet of Things equipment, and computer readable medium

    CN115589302A