Identity Authentication Method, Device, Equipment, Medium and Product

The identity authentication method addresses the cumbersome process of re-entering credentials across multiple platforms by establishing binding relationships, enabling single sign-on and improving user experience and efficiency.

JP2025516338APending Publication Date: 2025-05-27BEIJING ZITIAO NETWORK TECH CO LTD
View PDF 4 Cites 0 Cited by

Patent Information

Application Number
JP2024565128
Authority / Receiving Office
JP · JP
Patent Type
Applications
Current Assignee / Owner
Priority Date
2022-06-24
Filing Date
2023-06-05
Publication Date
2025-05-27

AI Technical Summary

Technical Problem

The existing identity authentication processes for enterprise users are cumbersome, requiring users to re-enter account numbers and passwords across multiple platforms, which reduces processing efficiency and user experience.

Method used

An identity authentication method that allows users to log in to multiple platforms using a single set of credentials by determining binding relationships between accounts on different platforms, thereby eliminating the need for repeated password entries.

Benefits of technology

Simplifies user operations, improves processing efficiency, and enhances user experience by allowing single sign-on across platforms while maintaining security through binding relationships.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure 2025516338000001_ABST
    Figure 2025516338000001_ABST
Patent Text Reader

Abstract

The present disclosure provides an identity authentication method, apparatus, device, medium, and product, relating to the field of computer technology. The method includes: obtaining a first field of a preset first platform and a second field of a second platform; receiving a first field value of the first field sent by the first platform, where the first field value is obtained by the first account passing the identity authentication on the first platform; determining a binding result of the first account based on the first field value; and when the binding result of the first account indicates that there is a second field value in the second field that binds to the first field value, determining that the identity authentication of the second account corresponding to the second field value has passed. This method can simplify the user's operation and improve the processing efficiency and experience of the user's work tasks.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] [Cross - Reference to Related Applications] This disclosure claims priority based on a Chinese patent application filed with the China National Intellectual Property Administration on June 24, 2022, with an application number of 202210724387.X and an invention title of "Identity Authentication Method, Apparatus, Device, Medium, and Product", the entire content of which is incorporated herein by reference. [Technical Field]

[0002] This disclosure belongs to the technical field of computers, and particularly relates to an identity authentication method, apparatus, device, computer - readable storage medium, and computer program product.

Background Art

[0003] With the continuous development of computer technology, especially mobile Internet technology, office platforms have been developed. Enterprise users can process work tasks through their internal office platforms, and it is easier for users to process work tasks through cooperation, collaboration, etc.

[0004] Generally, an enterprise's internal office platform can process work tasks only after a user logs in (identity authentication) using an account on the internal office platform. However, in some cases, due to business requirements, enterprise users need to log in to an external office platform of the enterprise, and in the login process, the user needs to re - enter the account number and password corresponding to the account on the external office platform. The user's operation process is relatively cumbersome, reducing the processing efficiency of the user's work tasks and resulting in a relatively poor user experience.

Summary of the Invention

Problems to be Solved by the Invention

[0005] An object of the present disclosure is to provide an identity authentication method, apparatus, device, computer-readable storage medium, and computer program product that can simplify user operations and improve the processing efficiency and experience of users for work tasks.

Means for Solving the Problems

[0006] According to a first aspect, the present disclosure provides an identity authentication method, the method comprising: obtaining a first field of a preset first platform and a second field of a second platform; receiving a first field value of the first field transmitted by the first platform, the first field value being obtained by a first account passing identity authentication on the first platform; determining a binding result of the first account based on the first field value; when the binding result of the first account indicates that there is a second field value in the second field that binds to the first field value, including that the second account corresponding to the second field value has passed identity authentication.

[0007] According to a second aspect, the present disclosure provides an identity authentication apparatus, the identity authentication apparatus comprising: an acquisition module for acquiring a first field of a preset first platform and a second field of a second platform; a receiving module for receiving a first field value of the first field transmitted by the first platform, the first field value being obtained by a first account passing identity authentication on the first platform; An authentication module for determining a binding result of the first account based on the first field value, wherein when the binding result of the first account indicates that there is a second field value that binds to the first field value in the second field, the authentication module includes passing an identity authentication of a second account corresponding to the second field value.

[0008] According to a third aspect, the present disclosure provides a computer-readable medium storing a computer program, and when the computer program is executed by a processing device, the method according to any one of the first aspects of the present disclosure is realized.

[0009] According to a fourth aspect, the present disclosure provides an electronic device, which includes a storage device storing a computer program, and a processing device for executing the computer program in the storage device to realize the method according to any one of the first aspects of the present disclosure.

[0010] According to a fifth aspect, the present disclosure provides a computer program product including instructions, and when it is executed on a device, the method described in any one of the implementation manners of the first aspect or the second aspect is caused to be executed on the device.

Advantages of the Invention

[0011] As can be seen from the above technical solutions, the present disclosure has the following advantages.

[0012] The present disclosure provides an identity authentication method, which includes the following. Obtain a first field of a preset first platform and a second field of a second platform. Receive a first field value of the first field sent by the first platform, and this first field value is obtained by the first account passing the identity authentication on the first platform. Then, based on this first field value, determine the binding result of the first account. When the binding result of this first account indicates that there is a second field value in the second field that binds to this first field value, the identity authentication of the second account corresponding to the second field value is passed. In this way, the user only needs to input the account number and password corresponding to the first account, and after obtaining the returned first field value, can log in to the second account on the second platform based on the binding relationship, without having to re-enter the password of the account number of the second account, simplifying the operations required by the user in the login process and improving the processing efficiency and experience of the user's work tasks. Furthermore, by performing identity authentication based on the binding relationship, the risk of logging in to another person's account due to the first field value being tampered with can be effectively reduced.

[0013] Other features and advantages of the present disclosure will be described in detail in the following embodiments for carrying out the invention.

Brief Description of the Drawings

[0014]

Figure 1

Figure 2

Figure 3

Figure 4

Figure 5

Mode for Carrying Out the Invention

[0015] The drawings are provided for a further understanding of the present invention, form a part of the specification, and are used in conjunction with the embodiments of the present invention to interpret the present invention, and do not constitute a limitation of the present invention.

[0016] Terms such as "first" and "second" in the embodiments of the present disclosure are used only for description and cannot be understood as indicating or suggesting relative importance or implicitly indicating the number of the indicated technical features. Thus, the features limited by "first" and "second" may explicitly or implicitly include one or more of these features.

[0017] First, some of the technical terms related to the embodiments of the present disclosure will be introduced. Identity authentication refers to the process of verifying the identity of an operator (user) in an office platform, thereby determining whether the user has access and usage rights to a certain resource, and further ensuring and effectively implementing the access policy of the office platform to prevent an attacker from obtaining access rights to the resource by pretending to be a legitimate user, and can guarantee the security of data in the office platform.

[0018] In some cases, due to business requirements, the user not only needs to log in to the enterprise's internal office platform (for example, the first platform), but also needs to log in to the enterprise's external office platform (for example, the second platform). For security considerations, in the process of the user logging in to an account on the first platform, the user needs to enter the account number and password of the account registered on the first platform to perform identity authentication. In the process of the user logging in to an account on the second platform, the user also needs to enter the account number and password of the account registered on the second platform to perform identity authentication.

[0019] As can be seen, in the process of the user logging in with different account numbers on different platforms, the user needs to enter the relevant account numbers and passwords multiple times. The user's operation process is relatively cumbersome, and the user experience is relatively poor.

[0020] Therefore, embodiments of the present disclosure provide an identity authentication method, which may be executed by a second platform. Here, the second platform may be an office platform corresponding to the provider of the office system platform. Specifically, this method includes the following. The second platform acquires a first field of a preset first platform and a second field of the second platform. Then, it receives a first field value of the first field sent by the first platform, and this first field value is obtained by the first account passing the identity authentication on the first platform. Subsequently, based on this first field value, the binding result of the first account is determined. When the binding result of this first account indicates that there exists a second field value in the second field that binds to this first field value, the identity authentication of the second account corresponding to this second field value passes. Therefore, the user can log in to the second account on the second platform only by inputting the account number and password corresponding to the first account, without the need to re-enter the password of the account number of the second account, simplifying the operations required by the user in the login process and improving the processing efficiency and experience of the user's work tasks.

[0021] For ease of understanding, first, the application scenario of the identity authentication method according to the embodiments of the present disclosure will be introduced below.

[0022] The technical solution of the present disclosure can be applied to scenarios such as integrated platforms and integrated services. Currently, the general integration status faced by enterprises includes the following. The operation flow is complex, the difficulty of business integration is high, the point-to-point integration development cost between each system is high, the cycle is long, a large number of repetitive operations in business integration are still manually processed, and the business information and data flow are not smooth. Through the integrated platform and integrated services, the application system and the integration framework can be integrated to form a complete platform, and relatively low costs can be obtained, with relatively high integration capabilities, thus solving the problems of high costs and low efficiency. For example, it changes from manual operation to full automation operation, from IT's deep involvement in each business role to improved integration effects, and from customizing the solution through the main link to realizing a standardized and visualized solution, from the high-cost setting of long links to a flexible low-cost setting, and from meeting the needs of enterprise integration to realizing business innovation and the like.

[0023] As shown in Figure 1, this figure is a schematic diagram of a single sign-on scenario according to an embodiment of the present disclosure. Regarding the related configuration of single sign-on, it can be realized by the above-mentioned integrated platform or integrated service.

[0024] In this scenario, the user can log in to the second platform only with the account of the first platform. For example, the user performs an operation (such as clicking, long-pressing, etc.) on the single sign-on (SSO) control 111 on the login page 110 of the second platform, and based on the enterprise identifier input by the user, can jump to the login page 120 of the internal office platform (such as the first platform) of this enterprise. The user enters the account number and password of the enterprise's internal account (such as the first account) on the login page 120 of this first platform, and clicks the login control 121. After receiving the login request of the first account, the first platform performs identity authentication on this first account. After passing the identity authentication of this first account, it sends the first field value of the first field preset on the second platform, and the second platform first determines the binding result of the first account based on this first field value. When the binding result of this first account indicates that there is a second field value in the second field that binds to the first field value, it passes the identity authentication of the second account corresponding to this second field value, and enters the user page 130 of the second platform. Subsequently, the user can process work tasks on the user page 130 of this second platform, thereby meeting business requirements.

[0025] As can be seen, in the above scenario, the user can log in to the second account of the second platform using the first account of the platform with just one input operation of the account number and password, simplifying the user's operation and improving the user experience.

[0026] To make the technical solutions of the present disclosure clearer and easier to understand, the identity authentication method according to the embodiments of the present disclosure will be introduced below in conjunction with the drawings. As shown in FIG. 2, this figure is a flowchart of the identity authentication method according to the embodiments of the present disclosure, and this method includes the following.

[0027] S201. The second platform acquires a preset first field of the first platform and a second field of the second platform.

[0028] As an alternative example, the first platform refers to the internal office platform of an enterprise, and the second platform refers to the external office platform of the enterprise. The first field refers to an attribute that can uniquely identify the first account on the first platform in the first platform. For example, the first field may be an identity certificate number field corresponding to the first account, a mobile phone number field, a user ID (User Identification, UID) field, etc., where the UID may be assigned by the first platform after the first account registers or logs in to the first platform. Similarly, the second field refers to an attribute that can uniquely identify the second account on the second platform in the second platform. For example, the second field may be an identity certificate number field corresponding to the second account, a mobile phone number field, a user ID (User Identification, UID) field, etc., where the UID may be assigned by the second platform after the second account registers or logs in to the second platform.

[0029] In some examples, the first field of the first platform and the second field of the second platform may be preset. As shown in FIG. 3, this figure is a schematic diagram of a setting page according to an embodiment of the present disclosure. As shown in FIG. 3, this setting interface includes a setting control 310 for the first field of the first platform and a setting control 320 for the second field of the second platform.

[0030] As an alternative example, the user can perform an operation (such as a click) on the setting control 310 of the first field and display the drop-down box 311 of the first field. The drop-down box 311 of the first field contains a plurality of candidate fields 312, and the user can select a first field from the plurality of candidate fields 312. Similarly, the user can perform an operation on the setting control 320 of the second field and display the drop-down box 321 of the second field. The drop-down box of the second field contains a plurality of candidate fields 322, and the user can select a second field from the plurality of candidate fields 322. In this way, after the user completes the presetting of the first field and the second field, the second platform can save the preset first field and second field for subsequent processing such as association, which will be introduced later.

[0031] S202. After the first platform passes the identity authentication of the first account, it obtains the first field value of the first field.

[0032] The first account refers to an account registered or logged in to the first platform. Continuing with the above example, if this first platform is the enterprise's internal office platform, the first account is the account of the enterprise's user. This first account allows the enterprise's user to log in to the first platform to process work tasks. After the first account passes the identity authentication on the first platform, the first platform obtains the first field value of the first field, and this first field value is used to uniquely identify this first account on this first platform.

[0033] After the first platform passes the identity authentication of this first account, it obtains the first field value of this first account. Continuing with the above example, this first field value refers to the attribute value of the attribute that can uniquely identify the first account on the first platform in the first platform, that is, the field value of the first field. For example, this first field may be the UID field, and this first field value may be the UID, such as "123xxx123". After the first platform passes the identity authentication of this first account, it obtains the UID of this first account.

[0034] Continuing to refer to FIG. 1, the user can perform an operation on the single sign-on control 111 on the login page 110 of the second platform and jump to the login page 120 of the first platform. The user can enter the account number and password of the first account on the login page 120 of this first platform and click the login control. After the first platform passes the identity authentication of this first account, it obtains the first field value of this first account.

[0035] S203. The first platform sends the first field value of the first field to the second platform.

[0036] After the first platform passes the identity authentication of the first account, the first platform sends the first field value of this first field to the second platform.

[0037] S204. The second platform determines the binding result of the first account based on the first field value.

[0038] The binding result is used to indicate whether there is a binding relationship between the first field value in the first field and the second field value in the second field. In some examples, the binding relationship is shown in Table 1 below.

[0039]

Table 1

[0040] Here, "Field 11" and "Field 21" are the field values of the first field (i.e., the first field value), and "Field 12" and "Field 22" are the field values of the second field (i.e., the second field value). There is a binding relationship between "Field 11" and "Field 12", and there is a binding relationship between "Field 21" and "Field 22".

[0041] After determining the above first field value, the second platform can determine the binding result of the first account based on Table 1 above. Taking the first field value being "Field 11" as an example, the second platform can determine the binding result of the first account based on this "Field 11" and Table 1 above. As can be seen from Table 1 above, there is a binding relationship between this "Field 11" and "Field 12", and furthermore, in the second field, a binding result can be obtained where there is a "Field 12" that binds to this "Field 11". Similarly, taking the first field value being "31" as an example, this second platform can determine the binding result of the first account based on this "Field 31" and Table 1 above. As can be seen from Table 1 above, this "Field 31" does not exist in Table 1 above, and furthermore, in the second field, a binding result can be obtained where there is no field value that binds to this "Field 31".

[0042] In some embodiments, a set of binding relationships may be stored in the second platform. After receiving the first field value sent by the first platform, the second platform can search for the binding relationship corresponding to this first field value in the set of binding relationships based on this first field value.

[0043] When the second platform can search for the binding relationship corresponding to this first field value from the set of binding relationships based on this first field value, the second field obtains a binding result in which there exists a second field value that binds to this first field value. When the second platform is not searching for the binding relationship corresponding to this first field value from the set of binding relationships based on this first field value, the second field obtains a binding result in which there does not exist a second field value that binds to this first field value. Here, the binding relationship between the field value in the first field and the field value in the second field may be referred to the above Table 1, and will not be further explained here.

[0044] In some embodiments, the binding relationships in the above set of binding relationships may be preset. That is, the binding relationship between the first field value and the second field value is preset, and the binding relationships in the above set of binding relationships may be generated when the second platform searches for the second field value related to the first field value from the second field for the first time, that is, generate the binding relationship between the first field value and the second field value. In some other embodiments, the binding relationships in the set of binding relationships may be obtained by combining the above two methods. The implementation method for generating the binding relationship between the first field value and the second field value will be introduced later.

[0045] S205. When the binding result of the first account indicates that there exists a second field value that binds to the first field value in the second field, the second platform passes the identity authentication of the second account corresponding to the second field value.

[0046] When the binding result of the first account indicates that there is a second field value in this second field that binds to the first field value, it means that there is an account on the second platform that binds to the first account on the first platform. And the second platform can determine a second account based on the second field value that has a binding relationship with the first field value.

[0047] Here, the second field value can uniquely identify this second account on the second platform. In some examples, after the second account registers or logs in to the second platform, the second platform can save the correspondence between the second account and the second field value, and the second platform can determine the second account corresponding to the second field value from this correspondence. Furthermore, the second platform has passed the identity authentication of the second account corresponding to this second field value. Continuing to refer to FIG. 1, after the second platform has passed the identity authentication of this second account, it enters the user page 130 of the second platform, and the user can process work tasks on the user page 130 of this second platform, thereby meeting business requirements.

[0048] In the embodiments of the present disclosure, the user can log in to the second account on the second platform just by entering the account number and password corresponding to the first account on the first platform, without the need to re-enter the password of the account number of the second account, simplifying the operations required by the user in the login process and improving the processing efficiency and experience of the user for work tasks.

[0049] S206. When the binding result of the first account indicates that there is no second field value in the second field that binds to the first field value, search for the second field value related to the first field value from the second field to obtain a search result.

[0050] When the binding result of the first account indicates that there is no second field value in the second field that binds to the first field value, it means that there is no account in the second platform that binds to the first account in the first platform. At this time, the second platform can search for the second field value related to the first field value from the second field to obtain a search result.

[0051] Here, the search result is used to indicate whether there is a relationship between the first field value in the first field and the second field value in the second field. In some examples, the existence of a relationship between the first field value and the second field value may refer to the first field value and the second field value being the same. In some other examples, the existence of a relationship between the first field value and the second field value may refer to the first field value becoming the second field value after undergoing a preset conversion.

[0052] Based on this, the second platform can determine the binding rule, and based on this binding rule, bind the field values in the unbound first field and second field. The binding rule may be to bind when the field value in the first field matches the field value in the second field. The binding rule may also be to bind when the field value in the first field becomes the field value in the second field after undergoing a preset conversion. As can be understood, the embodiments of the present disclosure do not limit the binding rule.

[0053] S207. When the search result indicates that there is a second field value related to the first field value in the second field, generate a binding relationship between the first field value and the second field value.

[0054] When this search result indicates that there is a second field value related to the first field value in the second field, it means that there is an account related to the first account in this first platform in the second platform. And this second platform can bind this first field value and the second field value, that is, generate a binding relationship between the first field value and the second field value.

[0055] In some embodiments, after the second platform determines the second field value related to the first field value, it can process the first field value based on a preset algorithm to obtain the processed first field value. The preset algorithm may be an algorithm that changes the characters in the first field value according to a preset rule. For example, it may be to move the characters in the first field value to the right cyclically by a preset number of bits to obtain the processed first field value.

[0056] Taking the example that the first field value is "123456", after processing this first field value using a preset algorithm, the preset algorithm may shift the characters of this first field value by 2 bits in a right cycle, and even if the processed first field value obtains "561234". Then, the second platform binds based on the processed first field value and the second field value, generates a binding relationship between the processed first field value and the second field value, and thus further increases the security of this binding relationship.

[0057] After generating the binding relationship between the first field value and the second field value for use in the subsequent login process, the second platform can store this binding relationship in the binding relationship set. In this way, in the process of the user performing single sign-on subsequently, the second platform determines the second field value that binds to the first field value of this first account based on the above binding relationship, and determines the second account corresponding to this second field value based on this second field value, and subsequently can make the identity authentication of this second account pass.

[0058] S208. When the search result indicates that there is no second field value related to the first field value in the second field, an error prompt is given.

[0059] When this search result indicates that there is no second field value related to the first field value in the second field, it means that there is no account related to the first account on this first platform on the second platform, and the second platform can issue an error prompt. For example, the current first account cannot log in to the second platform, and the user can be prompted that it is necessary to register or log in to the second account on the second platform.

[0060] In the identity authentication method according to the embodiments of the present disclosure, the second platform first performs identity authentication on the single sign-on account based on the binding relationship. Only when the binding relationship of this account (the binding relationship between the first field value and the second field value) is not stored on the second platform, identity authentication of the single sign-on account is performed by an association method, and the security of single sign-on can be improved. If identity authentication of the single sign-on account is performed only by the association method, since the second platform completely trusts the field value of the first field fed back from the first platform, when this field value is maliciously tampered with, the second platform will pass the identity authentication of the account corresponding to the tampered field value, and the security will be relatively poor. The embodiments of the present disclosure first perform identity authentication based on the binding relationship, and can improve the security of single sign-on.

[0061] It should be noted that the above S206-S208 are optional steps, and in some embodiments, it is not necessary to execute the above S206-S208.

[0062] Based on the above description, embodiments of the present disclosure provide an identity authentication method, which includes the following. Obtain the first field of a preset first platform and the second field of a second platform. Receive the first field value of the first field sent by the first platform, where the first field value is obtained by the first account passing the identity authentication on the first platform. Then, based on the first field value, determine the binding result of the first account. When the binding result of the first account indicates that there is a second field value in the second field that binds to the first field value, the identity authentication of the second account corresponding to the second field value passes. In this way, the user can log in to the second account on the second platform only by inputting the account number and password corresponding to the first account, without the need to re-enter the password of the account number of the second account, simplifying the operations required by the user in the login process and improving the processing efficiency and experience of the user's work tasks.

[0063] FIG. 4 is a schematic diagram of an identity authentication device according to an exemplary disclosure embodiment. As shown in FIG. 4, the identity authentication device 400 includes an acquisition module 401 for obtaining the first field of a preset first platform and the second field of a second platform, a receiving module for receiving the first field value of the first field sent by the first platform, where the first field value is obtained by the first account passing the identity authentication on the first platform, and the receiving module is 402, An authentication module for determining a binding result of the first account based on the first field value, wherein when the binding result of the first account indicates that there is a second field value that binds to the first field value in the second field, the authentication module 403 that passes the identity authentication of the second account corresponding to the second field value is included.

[0064] Optionally, this identity authentication device 400 further includes a binding module. The binding module searches for a second field value related to the first field value from the second field when the binding result of the first account indicates that there is no second field value that binds to the first field value in the second field, obtains a search result, and is used to generate a binding relationship between the first field value and the second field value when the search result indicates that there is a second field value related to the first field value in the second field.

[0065] Optionally, this identity authentication device 400 further includes a prompt module. The prompt module is used to perform an error prompt when the search result indicates that there is no second field value related to the first field value in the second field.

[0066] Specifically, in response to searching for the binding relationship corresponding to the first field value from the binding relationship set based on the first field value, the authentication module 403 obtains a binding result in which there exists a second field value that binds to the first field value in the second field, and in response to not searching for the binding relationship corresponding to the first field value from the binding relationship set based on the first field value, it is used to obtain a binding result in which there does not exist a second field value that binds to the first field value in the second field.

[0067] Optionally, the binding relationship in the binding relationship set is obtained by a method of presetting the binding relationship between the first field value and the second field value, and / or a method of generating the binding relationship between the first field value and the second field value in response to first searching for the second field value related to the first field value from the second field.

[0068] Optionally, the association between the first field value and the second field value is that the first field value and the second field value are the same, or that the first field value becomes the second field value after undergoing a preset conversion.

[0069] Optionally, the first field value is used to uniquely identify the first account on the first platform, and the second field value is used to uniquely identify the second account on the second platform.

[0070] The functions of each of the above modules have already been described in detail in the method steps in the previous embodiment and will not be elaborated here.

[0071] Referring to FIG. 5 below, a schematic structural diagram for implementing the electronic device 500 according to an embodiment of the present disclosure is shown. This electronic device is used to implement the functions corresponding to the identity authentication device 400 shown in FIG. 4. The electronic device shown in FIG. 5 is merely an example and should not impose any limitations on the functions and usage scope of the embodiments of the present disclosure.

[0072] As shown in FIG. 5, the electronic device 500 may include a processing device (such as a central processor, a graphics processor, etc.) 501, which can execute various appropriate operations and processes based on a program stored in a read-only memory (ROM) 502 or a program loaded from a storage device 508 into a random access memory (RAM) 503. Various programs and data necessary for the operation of the electronic device 500 are further stored in the RAM 503. The processing device 501, the ROM 502, and the RAM 503 are connected to each other via a bus 504. An input / output (I / O) interface 505 is also connected to the bus 504.

[0073] Generally, an input device 506 including, for example, a touch screen, a touch pad, a keyboard, a mouse, a camera, a microphone, an accelerometer, a gyro, etc., an output device 507 including, for example, a liquid crystal display (LCD), a speaker, a vibrator, etc., a storage device 508 including, for example, a magnetic tape, a hard disk, etc., and a communication device 509 can be connected to the interface 505. The communication device 509 can allow the electronic device 500 to communicate wirelessly or wiredly with other devices to exchange data. FIG. 5 shows the electronic device 500 having various devices, but it should be understood that it is not necessary to implement or include all the shown devices. More or fewer devices can be implemented or included.

[0074] In particular, according to the embodiments of the present disclosure, the processes described with reference to the flowcharts can be implemented as computer software programs. For example, the embodiments of the present disclosure include a computer program product, including a computer program carried on a non-transitory computer-readable medium, where the computer program includes program code for executing the method shown in the flowchart. In such an embodiment, the computer program may be downloaded and installed from a network via the communication device 509, or may be installed from the storage device 508, or may be installed from the ROM 502. When the computer program is executed by the processing device 501, the above functions limited in the method of the embodiments of the present disclosure are executed.

[0075] It should be noted that the computer-readable medium of the present disclosure may be a computer-readable signal medium, a computer-readable storage medium, or any combination of the above two. The computer-readable storage medium may be, for example, but not limited to, an electrical, magnetic, optical, electromagnetic, infrared, or semiconductor system, apparatus, or device, or any combination of one or more of them. More specific examples of the computer-readable storage medium may include an electrical connection having one or more conductors, a portable computer magnetic disk, a hard disk, a random access memory (RAM), a read-only memory (ROM), an erasable programmable read-only memory (EPROM or flash), an optical fiber, a portable compact disc read-only memory (CD-ROM), an optical storage device, a magnetic storage device, or any suitable combination of the above. In the present disclosure, the computer-readable storage medium may be any tangible medium that includes or stores a program, and this program may be used by or in combination with an instruction execution system, apparatus, or device. In the present disclosure, the computer-readable signal medium may include a data signal propagated in a baseband or as part of a carrier on which a computer-readable program code is carried. Such a propagated data signal may use various forms including, but not limited to, electromagnetic signals, optical signals, or any suitable combination of the above. The computer-readable signal medium may further be any computer-readable medium other than the computer-readable storage medium, and this computer-readable signal medium can transmit, propagate, or transmit a program used by or in combination with an instruction execution system, apparatus, or device. The program code included in the computer-readable medium may be transmitted via any suitable medium including, but not limited to, electric wires, optical cables, RF (radio frequency), etc., or any suitable combination of the above.

[0076] In some embodiments, the client and the server can communicate using any currently known or future-developed network protocol, such as HTTP (HyperText Transfer Protocol), and can be connected to digital data communication in any form or medium (e.g., via a communication network). Examples of communication networks include local area networks ("LAN"), wide area networks ("WAN"), the World Wide Web (e.g., the Internet), and end-to-end networks (e.g., ad hoc end-to-end networks), and any network currently known or future-developed.

[0077] The computer-readable medium may be included in the electronic device or may exist separately without being incorporated into the electronic device.

[0078] One or more programs are stored on the computer-readable medium. When the one or more programs are executed by the electronic device, the electronic device is caused to obtain a first field of a first platform and a second field of a second platform that are preset, receive a first field value of the first field transmitted by the first platform, where the first field value is obtained because the first account has passed identity authentication on the first platform, determine a binding result of the first account based on the first field value, and when the binding result of the first account indicates that there is a second field value corresponding to the first field value in the second field, cause the electronic device to determine that the second account corresponding to the second field value has passed identity authentication.

[0079] Computer program code for performing the operations of the present disclosure can be written in one or more program design languages or combinations thereof, and the program design languages include object-oriented program design languages such as Java, Smalltalk, C++, and may further include general procedural program design languages such as the "C" language or similar program design languages, but are not limited thereto. The program code may be executed entirely on the user computer, partially on the user computer, executed as a single independent software package, partially on the user computer and partially on a remote computer, or entirely on a remote computer or server. When related to a remote computer, the remote computer may be connected to the user's computer via any type of network including a local area network (LAN) or a wide area network (WAN), or may be connected to an external computer (e.g., connected via the Internet using an Internet service provider).

[0080] The flowcharts and block diagrams in the drawings illustrate the possible system architectures, functions, and operations of systems, methods, and computer program products according to various embodiments of the present disclosure. In this regard, each block in a flowchart or block diagram can represent a module, a program segment, or a portion of code that includes one or more executable instructions for implementing a given logical function. It should be noted that in some alternative implementations, the functions marked in the blocks may occur in an order different from the order marked in the drawings. For example, two blocks shown consecutively may actually be executed substantially in parallel or in the reverse order depending on the related functions. It should be noted that each block in the block diagrams and / or flowcharts, and combinations of blocks in the block diagrams and / or flowcharts, may be implemented by a dedicated system based on hardware that performs a given function or operation, or may be implemented by a combination of dedicated hardware and computer instructions.

[0081] The modules described in the description of the embodiments of the present disclosure may be implemented in software or in hardware. Here, the name of the module does not constitute a limitation on the module itself in some cases. For example, the first acquisition module may also be described as "a module that acquires at least two Internet protocol addresses".

[0082] The functions described in this specification may be executed at least in part by one or more hardware logic components. For example, without limitation, exemplary types of hardware logic components that can be used include field programmable gate arrays (FPGAs), application specific integrated circuits (ASICs), application specific standard products (ASSPs), system on chips (SOCs), complex programmable logic devices (CPLDs), and the like.

[0083] In the context of the present disclosure, a machine-readable medium may be a tangible medium that can contain or store a program for use by or in connection with an instruction execution system, apparatus, or device. The machine-readable medium may be a machine-readable signal medium or a machine-readable storage medium. The machine-readable medium may include, but is not limited to, electronic, magnetic, optical, electromagnetic, infrared, or semiconductor systems, apparatus, or devices, or any suitable combination of the foregoing. More specific examples of the machine-readable storage medium include one or more electrical connections based on wires, portable computer disks, hard disks, random access memory (RAM), read-only memory (ROM), erasable programmable read-only memory (EPROM or flash memory), optical fiber, compact disc read-only memory (CD-ROM), optical storage devices, magnetic storage devices, or any suitable combination of the foregoing.

[0084] According to one or more embodiments of the present disclosure, Example 1 provides an identity authentication method, which includes obtaining a first field of a preset first platform and a second field of a second platform; receiving a first field value of the first field transmitted by the first platform, where the first field value is obtained by the first account passing the identity authentication on the first platform; determining a binding result of the first account based on the first field value; and when the binding result of the first account indicates that there is a second field value in the second field that binds to the first field value, it includes that the second account corresponding to the second field value passes the identity authentication.

[0085] According to one or more embodiments of the present disclosure, Example 2 provides the method of Example 1, and the method includes: When the binding result of the first account indicates that there is no second field value that binds to the first field value in the second field, searching for a second field value related to the first field value from the second field to obtain a search result; When the search result indicates that there is a second field value related to the first field value in the second field, further generating a binding relationship between the first field value and the second field value.

[0086] According to one or more embodiments of the present disclosure, Example 3 provides the method of Example 2, and the method further includes: When the search result indicates that there is no second field value related to the first field value in the second field, performing an error prompt.

[0087] According to one or more embodiments of the present disclosure, Example 4 provides the methods of Examples 1 to 3, and determining the binding result of the first account based on the first field value includes: Obtaining a binding result that there is a second field value that binds to the first field value in the second field in response to searching for a binding relationship corresponding to the first field value from a set of binding relationships based on the first field value; Obtaining a binding result that there is no second field value that binds to the first field value in the second field in response to not searching for a binding relationship corresponding to the first field value from a set of binding relationships based on the first field value.

[0088] According to one or more embodiments of the present disclosure, Example 5 provides the method of Example 4, and the binding relationships in the set of binding relationships are: A method of presetting the binding relationship between the first field value and the second field value, and / or It is obtained by a method of generating the binding relationship between the first field value and the second field value in response to the first search for the second field value related to the first field value from the second field.

[0089] According to one or more embodiments of the present disclosure, Example 6 provides the method of Example 2, and the association between the first field value and the second field value is the first field value and the second field value being identical, or the first field value becoming the second field value after undergoing a preset conversion.

[0090] According to one or more embodiments of the present disclosure, Example 7 provides the method of Example 1, wherein the first field value is used to uniquely identify the first account on the first platform, and the second field value is used to uniquely identify the second account on the second platform.

[0091] The above description is only an explanation of the preferred embodiments of the present disclosure and the technical principles used. It should be understood by those skilled in the art that the disclosure scope related to the present disclosure is not limited to the technical solutions formed by specific combinations of the above technical features, and without departing from the above disclosure idea, other technical solutions formed by arbitrarily combining the above technical features or their equivalent features, for example, technical solutions formed by replacing the above features with technical features having similar functions (but not limited to this) disclosed in the present disclosure, should also be included.

[0092] Although each operation is depicted in a specific order, it should not be understood that these operations are required to be performed in the specific order or sequence shown. In certain environments, multitasking and parallel processing may be advantageous. Similarly, although the above includes several specific implementation details, these should not be construed as limitations on the scope of the present disclosure. Some features described in the context of a single embodiment may also be implemented in combination within a single embodiment. Conversely, various features described in the context of a single embodiment may also be implemented separately, or in any suitable sub-combination, in a plurality of embodiments.

[0093] Although specific language has been employed to describe the subject matter in terms of structural features and / or methodological acts, it is to be understood that the subject matter defined in the appended claims is not necessarily limited to the specific features or acts described above. Rather, the specific features and acts described above are merely exemplary forms of implementing the claims. With respect to the apparatus in the above embodiments, although the specific manner in which each module performs operations has been described in detail in the embodiments related to this method, detailed descriptions are omitted herein.

Claims

1. An identity authentication method, comprising: obtaining a first field of a first platform and a second field of a second platform that are preset; receiving a first field value of the first field sent by the first platform, wherein the first field value is obtained by a first account passing identity authentication on the first platform; determining a binding result of the first account based on the first field value; when the binding result of the first account indicates that there is a second field value in the second field that binds to the first field value, including that the second account corresponding to the second field value has passed identity authentication. The identity authentication method is characterized by this.

2. The method further comprises: when the binding result of the first account indicates that there is no second field value in the second field that binds to the first field value, searching for the second field value related to the first field value from the second field to obtain a search result; when the search result indicates that there is a second field value related to the first field value in the second field, generating a binding relationship between the first field value and the second field value. The method according to claim 1 is characterized by this.

3. The method further comprises: when the search result indicates that there is no second field value related to the first field value in the second field, performing an error prompt. The method according to claim 2 is characterized by this.

4. Determining the binding result of the first account based on the first field value comprises: in response to searching for a binding relationship corresponding to the first field value from a set of binding relationships based on the first field value, obtaining a binding result that there is a second field value in the second field that binds to the first field value. In response to not searching for the binding relationship corresponding to the first field value from the binding relationship set based on the first field value, obtaining a binding result in which there is no second field value for binding to the first field value in the second field, characterized in that the method according to any one of claims 1 to 3 includes this.

5. The binding relationship in the binding relationship set is A method of presetting the binding relationship between the first field value and the second field value, and / or Obtained by a method of generating a binding relationship between the first field value and the second field value in response to first searching for the second field value related to the first field value from the second field, characterized in that the method according to claim 4 includes this.

6. The association between the first field value and the second field value is That the first field value and the second field value match, or Including that the first field value becomes the second field value after undergoing a preset conversion, characterized in that the method according to claim 2 includes this.

7. The first field value is used to uniquely identify the first account on the first platform, and the second field value is used to uniquely identify the second account on the second platform, characterized in that the method according to claim 1 includes this.

8. An identity authentication device, An acquisition module for acquiring a first field of a preset first platform and a second field of a second platform, A receiving module for receiving a first field value of the first field transmitted by the first platform, wherein the first field value is obtained by the first account passing the identity authentication on the first platform. An authentication module for determining a binding result of the first account based on the first field value, wherein when the binding result of the first account indicates that there is a second field value that binds to the first field value in the second field, the authentication module includes passing an identity authentication of a second account corresponding to the second field value. An identity authentication apparatus characterized by the above.

9. An electronic device, a storage device in which a computer program is stored, and a processing device for executing the computer program in the storage device to implement the method according to any one of claims 1 to 7. An electronic device characterized by the above.

10. A computer-readable storage medium in which a computer program is stored, and when the computer program is executed by a processing device, the method according to any one of claims 1 to 7 is implemented. A computer-readable storage medium characterized by the above.

11. A computer program product, and when the computer program product is executed on a computer, the method according to any one of claims 1 to 7 is caused to be performed by the computer. A computer program product characterized by the above.

Citation Information

Patent Citations

  • Authentication-based system login method, apparatus, server, and storage medium

    CN109492374A

  • Authentication system and authentication method

    JP2012164191A

  • Service provision system, information processing device, program and service use information creation method

    JP2017033339A

  • Data processing method and device

    WO2022083378A1