A door access card checking method and device
By setting sector keys and reading rules in the access control card and combining them with a multi-level verification process, the problem of low access control card authentication security level is solved, achieving higher security and flexibility.
Patent Information
- Application Number
- CN202411774512.3
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2024-12-02
- Publication Date
- 2026-01-02
- Estimated Expiration
- 2044-12-02
AI Technical Summary
The existing access control card authentication has a low level of security and is vulnerable to malicious copying or cracking.
Several sectors are written into the access card, each sector corresponding to a unique sector key. Key reading rules are set for the same sector reading interval and the number of sector accesses, and authentication is performed in combination with different verification levels and verification processes.
It enhances the security level of access card authentication, reduces the risk of malicious copying or cracking, adapts to different card swiping security verification scenarios, and improves flexibility and security.
Smart Images

Figure CN119580388B_ABST
Abstract
Description
TECHNICAL FIELD
[0001] The present application relates to the technical field of access control cards, in particular to an access control card verification method and device. BACKGROUND
[0002] In today's society, access control cards, as a widely used access management tool in various scenarios, have profoundly changed people's way of life. From communities, schools to companies and other types of places, the use of access control cards is ubiquitous, bringing great convenience to people's daily life. It not only simplifies the access management process, but also effectively controls personnel access, improving the management efficiency of the place.
[0003] With the popularity of mobile phone NFC function, some users use mobile phone APP software or copy card tools to copy access control cards, so as to achieve opening the door through the copied access control card. Although this brings great convenience to users, if the access control card is maliciously copied or cracked by others, it will cause certain security risks.
[0004] Therefore, in order to effectively avoid the above security risks, a secret key is usually written in the access control card at present, and then when the access control card is authenticated, the secret key in the access control card is read and matched with the local secret key to realize authentication. However, this authentication has a relatively low security level and still has certain security risks. SUMMARY
[0005] Therefore, the purpose of the present application is to provide an access control card verification method and device to solve at least one technical problem in the background art.
[0006] According to an access control card verification method of an embodiment of the present application, applied in an access control device, the method comprises the following steps:
[0007] When it is detected that any access control card performs card swiping authentication on the access control device, a sector secret key is read from the access control card according to a pre-configured secret key reading rule;
[0008] According to the current verification level set in the access control device, the access control card is verified and authenticated in the verification process corresponding to the current verification level and in combination with the read sector secret key;
[0009] Wherein, the access control card contains a plurality of sectors, each sector corresponds to a unique sector secret key, and the secret key reading rule at least includes sector reading interval and / or sector access number.
[0010] In addition, the access control card verification method according to the above-mentioned embodiments of the present application can also have the following additional technical features:
[0011] Further, before the step of reading the sector key from the access control card according to the pre-configured key reading rule, the method further comprises:
[0012] identifying whether the access control card is written with a predetermined mark;
[0013] If not, the step of reading the sector key from the access control card according to the pre-configured key reading rule is executed.
[0014] Further, when the current verification level is the first level, the step of verifying and authenticating the access control card according to the verification procedure corresponding to the current verification level and in combination with the read sector key comprises:
[0015] matching the read sector key with the sector key stored locally by the access control device to verify and authenticate the access control card.
[0016] Further, when the current verification level is the second level, the second level being higher than the first level, the step of verifying and authenticating the access control card according to the verification procedure corresponding to the current verification level and in combination with the read sector key comprises:
[0017] matching the read sector key with the sector key stored locally by the access control device to verify and authenticate the access control card;
[0018] After the verification and authentication is passed, a current authentication serial number is generated, and whether the authentication serial number of the access control card is continuous is determined according to the current authentication serial number, and if not continuous, an abnormal prompt is sent to the administrator.
[0019] Further, when the current verification level is the third level, the third level being higher than the second level, the step of verifying and authenticating the access control card according to the verification procedure corresponding to the current verification level and in combination with the read sector key comprises:
[0020] matching the read sector key with the sector key stored locally by the access control device to verify and authenticate the access control card;
[0021] After the verification and authentication is passed, a current authentication serial number is generated, and whether the authentication serial number of the access control card is continuous is determined according to the current authentication serial number, to perform a final verification and authentication on the access control card.
[0022] Further, the step of generating a current authentication serial number and determining whether the authentication serial number of the access control card is continuous according to the current authentication serial number comprises:
[0023] reading a historical authentication serial number written on the access control card, and generating the current authentication serial number continuous with the historical authentication serial number according to the historical authentication serial number.
[0024] write the current authentication serial number into the access control card and replace the historical authentication serial number, and report the card number of the access control card and the current authentication serial number to the access control management software, so that the access control management software judges whether the authentication serial number of the access control card is continuous according to the current authentication serial number and the previous reported authentication serial number corresponding to the card number of the access control card.
[0025] Further, when reading the sector key from the access control card, the check information in the access control card is also read;
[0026] Then, the step of matching the read sector key with the sector key stored locally in the access control device to perform check authentication on the access control card comprises:
[0027] Matching the read sector key with the sector key stored locally in the access control device;
[0028] If the key matching is successful, the read check information is matched with the check information stored locally in the access control device;
[0029] If the check information matching is successful, the access control card check authentication is passed.
[0030] Further, the step of reading the sector key from the access control card according to the pre-configured key reading rule comprises:
[0031] Reading the sector key from the access control card according to the pre-configured key reading rule;
[0032] Judging whether the sector key is read successfully, and if not, writing the predetermined mark into the access control card.
[0033] Further, before the step of reading the sector key from the access control card according to the pre-configured key reading rule, the step further comprises:
[0034] Judging whether the access control device is encrypted by the administrator key card;
[0035] If encrypted by the administrator key card, the card swiping authentication of the access control card is not responded or a prompt that the authentication is not passed is fed back;
[0036] If not encrypted by the administrator key card, the step of reading the sector key from the access control card according to the pre-configured key reading rule is executed.
[0037] According to the access control card check device of an embodiment of the application, the device is applied to the access control device, and the device comprises:
[0038] The key reading module is configured to read sector keys from the access control cards according to a pre-configured key reading rule when it is detected that any access control card is used for card swiping authentication on the access control device;
[0039] The verification authentication module is configured to perform verification authentication on the access control card according to a current verification level set in the access control device, a verification process corresponding to the current verification level, and the read sector keys.
[0040] The access control card contains a plurality of sectors, each sector corresponds to a unique sector key, and the key reading rule includes at least a same sector reading interval and / or a sector access number.
[0041] The application further provides a computer readable storage medium having a computer program stored thereon, and the program is executed by a processor to implement the access control card verification method.
[0042] The application further provides an access control device, which comprises a memory, a processor, and a computer program stored in the memory and executable on the processor, and the processor implements the access control card verification method when executing the program.
[0043] Compared with the prior art, the application writes a plurality of sectors in the access control card, each sector corresponds to a unique sector key, and a special key reading rule of a same sector reading interval and / or a sector access number is set, when the access control card is used for card swiping authentication, the sector keys in the access control card are read based on the same sector reading interval and the sector access number, then verification authentication is performed based on the special read sector keys, and the verification authentication level is improved. In addition, different verification levels are set in the access control device, different degrees of verification levels can be set according to different card swiping security verification scenes, verification authentication is performed according to the verification process corresponding to the verification level, and the verification authentication level is further improved, and the security risk is reduced. BRIEF DESCRIPTION OF DRAWINGS
[0044] Figure 1 The flowchart of the access control card verification method in the first embodiment of the application;
[0045] Figure 2 The structure schematic diagram of the key management system provided by the embodiment of the application;
[0046] Figure 3 The structure schematic diagram of the access control management system provided by the embodiment of the application;
[0047] Figure 4 The structure schematic diagram of the access control card verification device in the fourth embodiment of the application;
[0048] Figure 5A structure schematic diagram of the access control device in the fifth embodiment of the present application.
[0049] The following detailed description will further describe the present application in conjunction with the above-mentioned drawings. DETAILED DESCRIPTION
[0050] In order to facilitate the understanding of the present application, the present application will be described more fully below with reference to the accompanying drawings. The present application is shown in several embodiments in the drawings. However, the present application can be realized in many different forms and is not limited to the embodiments described herein. On the contrary, the purpose of providing these embodiments is to make the disclosure of the present application more thorough and comprehensive.
[0051] It should be noted that when an element is referred to as being "fixed to" another element, it can be directly on the other element or there can be a mediating element. When an element is referred to as being "connected" to another element, it can be directly connected to the other element or there can be a mediating element. The terms "vertical", "horizontal", "left", "right", and similar expressions used herein are for illustrative purposes only.
[0052] Unless otherwise defined, all technical and scientific terms used herein have the same meaning as commonly understood by one of ordinary skill in the art to which the present application belongs. The terminology used in the description of the present application herein only for the purpose of describing specific embodiments and is not intended to limit the present application. The term "and / or" used herein includes any and all combinations of one or more of the associated listed items.
[0053] With the popularity of mobile phone NFC function, some users use mobile phone APP software or copy card tool to copy access control card, so as to achieve opening the door through the copied access control card. Although this brings great convenience to the user, if the access control card is maliciously copied by others, it will cause certain security risks.
[0054] Therefore, in order to effectively avoid the above security risks, a string of secret keys is usually written in the access control card at present, and then the secret key in the access control card is read and matched with the local secret key to realize authentication when the access control card is authenticated. However, the security level of such authentication is relatively low, and there is still a certain security risk.
[0055] Therefore, the embodiments of the present application aim to provide an access control card verification method, which mainly aims to verify and authenticate the access control card by embedding a special authentication secret key in the access control card, cooperating with a special secret key reading mode and an authentication process, and setting different verification and authentication levels to adapt to different card swiping security verification scenarios, greatly improving the security level of access control card verification and authentication, and reducing security risks.
[0056] Except for the need to be explained in advance, the access control card verification method in the embodiment of the application is specifically applied to an access control device, which includes but is not limited to a door lock, a barrier gate, an access control all-in-one machine, a security door, etc., and the specific application scenario is not limited, and in the specific implementation, the access control card verification method in the embodiment of the application can be specifically applied to any access control device that needs to be authenticated by card swiping to be released.
[0057] In order to more clearly illustrate the access control card verification method in the embodiment of the application, specific embodiments will be given below.
[0058] Embodiment one
[0059] Please refer to Figure 1 , which shows the access control card verification method in the first embodiment of the application, which is applied to an access control device and can be specifically implemented by software and / or hardware, and the method specifically includes steps S01-S02.
[0060] Step S01, when detecting that any access control card performs card swiping authentication on the access control device, a sector key is read from the access control card according to a pre-configured key reading rule.
[0061] Among them, the access control card contains a plurality of sectors, each sector corresponds to a unique sector key, and the key reading rule at least includes a same sector reading interval and / or a sector access number.
[0062] Specifically, in the specific implementation, the access control card (user encrypted IC card) needs to be set first, which is specifically implemented by a key management system, and the key management system can include a key issuer and a key management software in communication connection with the key issuer. Specifically, when the card is issued, the administrator can set the sector number that needs to be encrypted for the access control card through the key management software, and then the key management software issues the sector number that needs to be encrypted for the access control card to the key issuer. The key issuer encrypts the sector that needs to be encrypted through a sector encryption algorithm to form a sector key, that is, each sector corresponds to a unique sector key. Then the key issuer writes the sector number and the corresponding sector key into the access control card, thereby completing the card issuance and production of the access control card.
[0063] After the card issuance and production of the access control card are completed, when the access control card performs card swiping on the access control device, the card swiping sensing device of the access control device will sense it and trigger the card swiping authentication application of the access control card. At this time, in the embodiment, the sector key is read from the access control card according to the key reading rule of the same sector reading interval and the sector access number. Among them, the same sector reading interval limits the interval time of reading the key of the same sector, for example, the reading interval of sector 1 is 10 seconds, then sector 1 can only be read once within 10 seconds. The sector access number limits the number of reading the sector key each time.
[0064] The setting of this specific key reading rule serves to monitor and give a warning for the abnormal behavior of continuously authenticating multiple times with the same card number (such as continuously swiping the access control card), that is, in some optional cases of the embodiment, the step of reading the sector key from the access control card according to the preconfigured key reading rule specifically can include:
[0065] reading the sector key from the access control card according to the preconfigured key reading rule;
[0066] determining whether the sector key is read successfully, if not, writing the predetermined mark into the access control card, and if yes, performing step S02.
[0067] It can be understood that, due to the setting of the same sector reading interval and the sector access number, if the same card number is continuously authenticated multiple times, the second access to the sector will fail, resulting in unsuccessful reading of the sector key. For example, assuming that there are 4 sectors in the access control card, the 4 sectors correspond to 4 sector keys, if the same sector reading interval is 10 seconds and the sector access number is 3, if the second card is swiped for authentication within 10 seconds, 3 sectors cannot be accessed, that is, 3 valid sector keys cannot be read, resulting in unsuccessful reading of the sector key, at this time, the predetermined mark will be written into the access control card, wherein the predetermined mark is an illegal identification, used for identifying the abnormality of the access control card.
[0068] Therefore, before the step of reading the sector key from the access control card according to the preconfigured key reading rule, it further includes:
[0069] identifying whether the predetermined mark is written in the access control card;
[0070] if not, performing the step of reading the sector key from the access control card according to the preconfigured key reading rule.
[0071] if yes, prohibiting the access control card from being authenticated.
[0072] That is, after the abnormal behavior occurs, the access control device will write the predetermined mark into the access control card, which makes the access control card can judge its legality by whether the predetermined mark is written in it when it is authenticated next time. If the predetermined mark is written, it is prohibited to authenticate, and if the predetermined mark is not written, the key is read and the authentication is continued.
[0073] Of course, in some optional embodiments, when the same card number is continuously authenticated multiple times, the access control device can also report the abnormal event to the access control management software, the administrator can analyze or check the real reason according to the reported abnormal event, and can decide whether to cancel the predetermined mark for the access control card. In some optional manners, when the predetermined mark needs to be cancelled, the user can be notified to go to the management department for cancellation, or the access control management software can be used to send a cancellation instruction to the access control device, and when the access control card is authenticated next time, the access control device will analyze whether the corresponding cancellation instruction is received after reading the predetermined mark in the access control card, and if the cancellation instruction is received, it is determined that the access control card is still legal, and then the verification is continued.
[0074] In step S02, the access control card is authenticated according to the current verification level set in the access control device, and the verification process corresponding to the current verification level is combined with the read sector key.
[0075] Specifically, the embodiments of the present application set different verification levels for the access control device according to different card swiping security verification scenarios, so as to meet the security verification requirements in different card swiping security verification scenarios, thereby greatly improving the flexibility and security. Specifically, in some preferred embodiments of the present application, the access control device can set first, second and third levels, the second level is higher than the first level, and the third level is higher than the second level, for example, low, medium and high levels can be set. The corresponding specific verification processes are as follows.
[0076] When the current verification level is the first level, the step of authenticating the access control card according to the verification process corresponding to the current verification level and combining the read sector key specifically includes:
[0077] The read sector key is matched with the locally stored sector key of the access control device to authenticate the access control card.
[0078] Specifically, when the access control device is set to a low verification level, the read sector key and the locally stored sector key are matched, and if the matching is successful, the authentication is passed, the access control device allows access, otherwise the authentication is not passed.
[0079] When the current verification level is the second level, the step of authenticating the access control card according to the verification process corresponding to the current verification level and combining the read sector key specifically includes:
[0080] The read sector key is matched with the locally stored sector key of the access control device to authenticate the access control card.
[0081] After the check authentication passes, a current authentication serial number is generated, and whether the authentication serial number of the access control card is continuous is judged according to the current authentication serial number, if not continuous, an abnormal prompt is sent to the administrator.
[0082] That is, when the access control device is set to the medium check level, the read sector key and the locally stored sector key are matched, if the matching is successful, the check authentication passes, the access control device allows access, otherwise the check authentication does not pass. And after the check authentication passes, a current authentication serial number is generated, and whether the authentication serial number of the access control card is continuous is judged according to the current authentication serial number, if not continuous, an abnormal prompt is sent to the administrator, the administrator can choose to freeze the access control card or write the predetermined mark to the access control card, thereby limiting the next check authentication pass at the access control device.
[0083] When the current check level is the third level, the step of checking and authenticating the access control card in the current check level corresponding to the check process and combining the read sector key includes:
[0084] The read sector key is matched with the locally stored sector key of the access control device to check and authenticate the access control card.
[0085] After the check authentication passes, a current authentication serial number is generated, and whether the authentication serial number of the access control card is continuous is judged according to the current authentication serial number, to perform the final check authentication on the access control card.
[0086] That is, when the access control device is set to the high check level, first, the read sector key and the locally stored sector key are matched, after the matching is successful, a current authentication serial number is generated, and whether the authentication serial number of the access control card is continuous is judged according to the current authentication serial number, if the authentication serial number is continuous, it means that the final check authentication passes, if the sector key matching does not pass or the authentication serial number is not continuous, the check authentication does not pass.
[0087] In some optional embodiments, the step of generating a current authentication serial number and judging whether the authentication serial number of the access control card is continuous according to the current authentication serial number specifically includes:
[0088] The historical authentication serial number written on the access control card is read, and the current authentication serial number continuous with the historical authentication serial number is generated according to the historical authentication serial number;
[0089] write the current authentication serial number into the access control card and replace the historical authentication serial number, and report the card number of the access control card and the current authentication serial number to the access control management software, so that the access control management software judges whether the authentication serial number of the access control card is continuous according to the current authentication serial number and the previous reported authentication serial number corresponding to the card number of the access control card.
[0090] Therefore, through further verification of the continuity of the authentication serial number, the security level of the verification and authentication can be further increased. Through the special secret key and the special secret key reading rule in the embodiment of the application, the difficulty of malicious copying, cracking or sniffing of the access control card can be greatly increased, and the access control management software further verifies whether the authentication serial number is continuous.
[0091] Embodiment two
[0092] The second embodiment of the application also provides an access control card verification method, which can be specifically realized by software and / or hardware. The difference between the access control card verification method in the second embodiment and the access control card verification method in the first embodiment is that:
[0093] When the sector secret key is read from the access control card, the verification information in the access control card is also read;
[0094] Then, the step of matching the read sector secret key with the sector secret key stored locally in the access control device to verify and authenticate the access control card comprises:
[0095] Matching the read sector secret key with the sector secret key stored locally in the access control device;
[0096] If the secret key matching is successful, the read verification information is matched with the verification information stored locally in the access control device;
[0097] If the verification information matching is successful, the access control card verification and authentication is passed. That is, the embodiment further introduces verification information, and further verifies and authenticates through the verification information, so as to further improve the security of the verification and authentication.
[0098] Embodiment three
[0099] The third embodiment of the application also provides an access control card verification method, which can be specifically realized by software and / or hardware. The difference between the access control card verification method in the third embodiment and the access control card verification method in the first embodiment is that:
[0100] Before the step of reading the sector secret key from the access control card according to the preconfigured secret key reading rule, the method further comprises:
[0101] Judging whether the access control device is encrypted by an administrator secret key card;
[0102] if the administrator secret key card is encrypted, the step of reading the sector secret key from the access control card according to the pre-configured secret key reading rule is not executed;
[0103] if the administrator secret key card is not encrypted, the step of reading the sector secret key from the access control card according to the pre-configured secret key reading rule is executed.
[0104] That is, in the embodiment, the administrator secret key card is also assigned, and after the administrator secret key card encrypts the access control device, only the administrator secret key card can open and / or decrypt the access control device, and other access control cards cannot pass the verification. Therefore, the verification scene of the access control device is further flexible, and the verification security is further improved.
[0105] In some optional embodiments, the secret key management system as shown in Figure 2 The secret key management system can include a secret key issuer 203 and a secret key management software 202 in communication connection with the secret key issuer 203. The card manufacturing process of the administrator secret key card 201 can be as follows: the administrator can set project configuration information through the secret key management software 202, the secret key management software 202 generates a basic secret key according to the project configuration information, and then the secret key management software 202 issues the basic secret key to the secret key issuer 203. The secret key issuer 203 encrypts and writes the basic secret key and the corresponding verification information into the administrator secret key card 201, and the card manufacturing of the administrator secret key card is completed. The manufacturing process of the access control card 204 can be as follows: the administrator can set the sector number to be encrypted of the access control card through the secret key management software 202, and then the secret key management software 202 issues the sector number to be encrypted of the access control card to the secret key issuer 203. The secret key issuer 203 encrypts the sector to be encrypted through a sector encryption algorithm to form a sector secret key, that is, each sector corresponds to a unique sector secret key. Then the secret key issuer 203 writes the sector number, the corresponding sector secret key, and the corresponding verification information into the access control card 204, and the card manufacturing of the access control card is completed.
[0106] In some specific application scenarios, the administrator secret key card 201 is mainly used for card swiping encryption of the access control device, and the card is swiped once to encrypt and swiped once to cancel the encryption. After the access control device is encrypted, only the administrator secret key card can decrypt it. The decryption process is also a matching verification of the basic secret key and the verification information.
[0107] As shown in Figure 3As shown, as an optional application scenario in the embodiment of the present application, a kind of access control management system is specifically shown, including access control management software 102, access control equipment 103, administrator secret key card 201 and access control card (user encrypted IC card) 204, information interaction process between access control management software 102, access control equipment 103, administrator secret key card 201 and access control card 204 is as described above, and will not be repeated here.
[0108] It should be noted that the above embodiments and their features can be combined arbitrarily without conflict, and the new technical solutions obtained by combination still belong to the protection scope of the present application.
[0109] In summary, the access control card verification method in the above embodiment of the present application writes several sectors in the access control card, each sector corresponds to a unique sector key, and a special key reading rule of sector access number and sector reading interval is also set, when the access control card is authenticated, the sector key in the access control card is read based on the sector access number and sector reading interval, and then the authentication is verified based on the special sector key, to improve the authentication level. In addition, by setting different verification levels for access control equipment, different verification levels can be set according to different card swiping security verification scenarios, and authentication is performed according to the verification process corresponding to the verification level, to further improve the authentication level and reduce security risks.
[0110] Embodiment four
[0111] The present application also provides an access control card verification device, please refer to Figure 4 As shown, the access control card verification device in the third embodiment of the present application is applied to access control equipment, and the access control card verification device comprises:
[0112] Key reading module 11, for reading sector key from the access control card according to pre-configured key reading rule when detecting any access control card on the access control equipment for card swiping authentication;
[0113] Verification and authentication module 12, for verifying and authenticating the access control card according to the verification process corresponding to the current verification level of the access control equipment and combining the read sector key according to the current verification level;
[0114] Wherein, the access control card contains several sectors, each sector corresponds to a unique sector key, and the key reading rule at least includes sector access number and sector reading interval.
[0115] Further, in some optional embodiments of the present application, the access control card verification device further comprises:
[0116] The marking identification module is configured to identify whether the access control card has a predetermined marking written therein.
[0117] If the predetermined marking is not written, the key reading module 11 reads the sector key from the access control card according to the preconfigured key reading rule.
[0118] Further, in some optional embodiments of the present application, the verification and authentication module 12 is further configured to, when the current verification level is the first level, match the read sector key with the sector key stored locally by the access control device to verify and authenticate the access control card.
[0119] Further, in some optional embodiments of the present application, the verification and authentication module 12 is further configured to, when the current verification level is the second level, match the read sector key with the sector key stored locally by the access control device to verify and authenticate the access control card, the second level being higher than the first level; after the verification and authentication is passed, generating a current authentication serial number and determining whether the authentication serial number of the access control card is continuous according to the current authentication serial number, and if not, sending an abnormal prompt to the administrator.
[0120] Further, in some optional embodiments of the present application, the verification and authentication module 12 is further configured to, when the current verification level is the third level, match the read sector key with the sector key stored locally by the access control device to verify and authenticate the access control card, the third level being higher than the second level; after the verification and authentication is passed, generating a current authentication serial number and determining whether the authentication serial number of the access control card is continuous according to the current authentication serial number to perform a final verification and authentication on the access control card.
[0121] Further, in some optional embodiments of the present application, the verification and authentication module 12 is further configured to read a historical authentication serial number written on the access control card, generate the current authentication serial number continuous to the historical authentication serial number according to the historical authentication serial number, write the current authentication serial number on the access control card to replace the historical authentication serial number, and report the card number of the access control card and the current authentication serial number to the access control management software, so that the access control management software determines whether the authentication serial number of the access control card is continuous according to the current authentication serial number and the previous reported authentication serial number corresponding to the card number of the access control card.
[0122] Further, in some optional embodiments of the present application, when reading the sector key from the access control card, the verification information in the access control card is also read; the authentication module 12 is further configured to match the read sector key with the sector key stored locally in the access control device; if the keys match successfully, the read verification information is matched with the verification information stored locally in the access control device; if the verification information matches successfully, the access control card verification authentication is passed.
[0123] Further, in some optional embodiments of the present application, the key reading module 11 is further configured to read the sector key from the access control card according to a preconfigured key reading rule; and determine whether the sector key is read successfully, and if not, write the predetermined mark into the access control card.
[0124] Further, in some optional embodiments of the present application, the access control card verification device further comprises:
[0125] an encryption determination module configured to determine whether the access control device is encrypted by an administrator key card; if encrypted by the administrator key card, not respond to the card swiping authentication of the access control card or feedback a prompt that the authentication is not passed; if not encrypted by the administrator key card, the key reading module 11 performs the step of reading the sector key from the access control card according to the preconfigured key reading rule.
[0126] The functions or operation steps realized when the above modules and units are executed are generally the same as those of the above method embodiments, and will not be repeated here.
[0127] Embodiment Five
[0128] Another aspect of the present application also provides an access control device, please refer to Figure 5 , which is an access control device in the fifth embodiment of the present application, comprising a memory 20, a processor 10, and a computer program 30 stored in the memory and executable on the processor, wherein the processor 10 implements the access control card verification method as described above when executing the computer program 30.
[0129] In some embodiments, the processor 10 can be a central processing unit (CPU), a controller, a microcontroller, a microprocessor, or other data processing chip, configured to run program codes or process data stored in the memory 20, such as executing access restriction programs.
[0130] The memory 20 includes at least one type of readable storage medium, such as a flash memory, a hard disk, a multimedia card, a card-type memory (e.g., an SD or DX memory, etc.), a magnetic memory, a magnetic disk, an optical disk, etc. The memory 20 can be an internal storage unit of the access control device in some embodiments, such as a hard disk of the access control device. The memory 20 can also be an external storage device of the access control device in other embodiments, such as a plug-in hard disk, a smart media card (SMC), a secure digital (SD) card, a flash card, etc. Further, the memory 20 can include both an internal storage unit and an external storage device of the access control device. The memory 20 can be used to store application software and various data installed in the access control device, and to temporarily store data that has been output or is to be output.
[0131] It should be noted that, Figure 5 The illustrated structure does not limit the access control device, which can include fewer or more components than shown, or combine certain components, or have different component arrangements in other embodiments.
[0132] The embodiments of the present application also provide a computer readable storage medium having a computer program stored thereon, which, when executed by a processor, implements the access control method as described above.
[0133] Those skilled in the art can understand that the logic and / or steps represented in the flowcharts or otherwise described herein, for example, can be considered as a list of executable instructions for implementing the logic function, which can be specifically implemented in any computer readable storage medium for use by or in conjunction with an instruction execution system, device or apparatus, such as a computer-based system, a system including a processor or other system that can fetch and execute instructions from the instruction execution system, device or apparatus. For the present specification, the "computer readable storage medium" can be any device that can contain, store, communicate, propagate or transport programs for use by or in conjunction with the instruction execution system, device or apparatus, or in conjunction with these instruction execution systems, devices or apparatus.
[0134] More specific examples (a non-exhaustive list) of the computer-readable storage medium include the following: an electrical connection having one or more wires (electrical device), a portable computer diskette (magnetic device), a random access memory (RAM), a read-only memory (ROM), an erasable programmable read-only memory (EPROM or Flash memory), an optical fiber device, and a portable compact disc read-only memory (CDROM). Additionally, the computer-readable storage medium can also be paper or another suitable medium upon which the program is printed, as the program can be electronically captured, for example, via an optical scanner, then compiled, interpreted, or otherwise processed, and stored in a computer memory in a form that is then reproducible in a computer.
[0135] It should be understood that aspects of the application can be implemented in hardware, software, firmware or combinations thereof. In the embodiments described above, various steps or methods can be implemented, for example, by software or firmware stored in memory and executed by a suitable instruction execution system. For example, if implemented in hardware, and in another embodiment, any of the following techniques can be used to implement the hardware used in the described embodiments: a discrete logic circuit(s) having logic gates for implementing logic functions upon data signals, an application specific integrated circuit having appropriate combinational logic gates, a programmable gate array(s) (PGA), a field programmable gate array (FPGA), and / or the like.
[0136] In the description of the specification, the description of the terms "one embodiment", "some embodiments", "an example", "a specific example", or "some examples" and the like means that the specific feature, structure, material or characteristic being described is included in at least one embodiment or example of the application. The illustrative description of the above terms in the specification does not necessarily refer to the same embodiment or example. Moreover, the description of the specific feature, structure, material or characteristic can be combined in any one or more embodiments or examples in a suitable manner.
[0137] The above-described embodiments are merely some embodiments of the present application, and the description is relatively specific and detailed, but should not be understood as limiting the scope of the patent of the present application. It should be noted that, for those skilled in the art, without departing from the concept of the present application, a number of modifications and improvements can be made, which are within the scope of protection of the present application. Therefore, the scope of protection of the patent of the present application should be subject to the appended claims.
Claims
1. A method for checking an access card, characterized by, The method is applied to an access control device and comprises the following steps: When it is detected that any access card is used for card swiping authentication on the access control device, a sector key is read from the access card according to a preconfigured key reading rule; According to a current verification level set in the access control device, the access card is verified and authenticated by a verification process corresponding to the current verification level and in combination with the read sector key; specifically, when the current verification level is a first level, the read sector key is matched with a sector key stored locally in the access control device to verify and authenticate the access card; when the current verification level is a second level, the read sector key is matched with the sector key stored locally in the access control device to verify and authenticate the access card, and after the verification and authentication is passed, a current authentication serial number is generated, and whether the authentication serial number of the access card is continuous is judged according to the current authentication serial number, and if not, an abnormal prompt is sent to an administrator; when the current verification level is a third level, the read sector key is matched with the sector key stored locally in the access control device to verify and authenticate the access card, and after the verification and authentication is passed, the current authentication serial number is generated, and whether the authentication serial number of the access card is continuous is judged according to the current authentication serial number to perform final verification and authentication on the access card; the third level is higher than the second level, and the second level is higher than the first level. The access card contains a plurality of sectors, each sector corresponds to a unique sector key, and the key reading rule at least includes a same sector reading interval and / or a sector access number.
2. The access card verification method of claim 1, wherein, Before the step of reading the sector key from the access card according to the preconfigured key reading rule, the following steps are further included: Whether a predetermined mark is written in the access card is identified; If not, the step of reading the sector key from the access card according to the preconfigured key reading rule is performed.
3. The access card verification method of claim 1, wherein, The step of generating the current authentication serial number and judging whether the authentication serial number of the access card is continuous according to the current authentication serial number includes: A historical authentication serial number written on the access card is read, and a current authentication serial number continuous with the historical authentication serial number is generated according to the historical authentication serial number; The current authentication serial number is written in the access card to replace the historical authentication serial number, and a card number of the access card and the current authentication serial number are reported to an access control management software, so that the access control management software judges whether the authentication serial number of the access card is continuous according to the current authentication serial number and a previous reported authentication serial number corresponding to the card number of the access card.
4. The access card verification method of claim 1, wherein, When the sector key is read from the access card, verification information in the access card is also read; If yes, the step of matching the read sector key with the sector key stored locally in the access control device to verify and authenticate the access card includes: The read sector key is matched with the sector key stored locally in the access control device; If the key matching is successful, the read verification information is matched with verification information stored locally in the access control device; If the verification information matching is successful, the access card verification and authentication is passed.
5. The access card verification method of claim 2, wherein, The step of reading a sector key from the access card according to a preconfigured key reading rule comprises: reading a sector key from the access card according to a preconfigured key reading rule; determining whether the sector key is read successfully, and if not, writing the predetermined mark into the access card.
6. The access card verification method of claim 1, wherein, Before the step of reading a sector key from the access card according to a preconfigured key reading rule, the method further comprises: determining whether the access device is encrypted by an administrator key card; if encrypted by the administrator key card, not responding to the card swiping authentication of the access card or feeding back a prompt that the authentication is not passed; if not encrypted by the administrator key card, performing the step of reading a sector key from the access card according to a preconfigured key reading rule.
7. An access card verification device, characterized by, The device is applied to an access device, and comprises: a key reading module configured to read a sector key from any access card according to a preconfigured key reading rule when detecting that the access card is performing card swiping authentication on the access device; a verification authentication module configured to perform verification authentication on the access card according to a current verification level set in the access device, a verification process corresponding to the current verification level, and the read sector key; specifically, when the current verification level is a first level, the read sector key is matched with a sector key stored locally in the access device to perform verification authentication on the access card; when the current verification level is a second level, the read sector key is matched with the sector key stored locally in the access device to perform verification authentication on the access card, and after the verification authentication is passed, a current authentication serial number is generated, and whether the authentication serial number of the access card is continuous is determined according to the current authentication serial number, and if not, an abnormal prompt is sent to an administrator; when the current verification level is a third level, the read sector key is matched with the sector key stored locally in the access device to perform verification authentication on the access card, and after the verification authentication is passed, a current authentication serial number is generated, and whether the authentication serial number of the access card is continuous is determined according to the current authentication serial number to perform final verification authentication on the access card; the third level is higher than the second level, and the second level is higher than the first level. The access card comprises a plurality of sectors, each sector corresponding to a unique sector key, and the key reading rule comprises at least a same sector reading interval and / or a sector access number.
Citation Information
Patent Citations
Off-line hand-held terminal unloading management system and method
CN103020798A
Intelligent door lock and card registration method
CN116071852A
Method, medium and equipment supporting multi-level trusted digital identity authentication
CN117319002A
Entrance guard card verification method, entrance guard card verification system and storage medium
CN118212717A