Nothing Special   »   [go: up one dir, main page]

CN101873331B - Safety authentication method and system - Google Patents

Safety authentication method and system Download PDF

Info

Publication number
CN101873331B
CN101873331B CN 201010227274 CN201010227274A CN101873331B CN 101873331 B CN101873331 B CN 101873331B CN 201010227274 CN201010227274 CN 201010227274 CN 201010227274 A CN201010227274 A CN 201010227274A CN 101873331 B CN101873331 B CN 101873331B
Authority
CN
China
Prior art keywords
server
client
computer
random number
information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN 201010227274
Other languages
Chinese (zh)
Other versions
CN101873331A (en
Inventor
彭琳
潘葛桐
赵爱新
张洋
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Industrial and Commercial Bank of China Ltd ICBC
Original Assignee
Industrial and Commercial Bank of China Ltd ICBC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Industrial and Commercial Bank of China Ltd ICBC filed Critical Industrial and Commercial Bank of China Ltd ICBC
Priority to CN 201010227274 priority Critical patent/CN101873331B/en
Publication of CN101873331A publication Critical patent/CN101873331A/en
Application granted granted Critical
Publication of CN101873331B publication Critical patent/CN101873331B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Telephonic Communication Services (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

The invention discloses a safety authentication method and a system. The method comprises the following steps that: a user submits a bonding establishing request to a server through a client; the server downloads a safety detection device and a generated first random number for the client; the safety detection device generates computer fingerprint information and a computer mark by utilizing the hardware information of the client and uploads the encrypted computer fingerprint information, the computer mark and a random number to the server; the server deciphers ciphertext to acquire the random number; if the random number is equal to the first random number, the computer fingerprint information and the computer mark are registered; otherwise, bonding failure information is returned; when the server provides the service to the client each time, the bonding is checked. By utilizing the technical scheme of the invention, the client is identified by using the computer hardware information in the safety authentication process, and thereby, a network is ensured to uniquely identify client equipment so that the safety of the network communication is improved.

Description

A kind of safety certifying method and system
Technical field
The present invention relates to network security technology, relate in particular to a kind of method and system that client is carried out safety certification.
Background technology
Along with the generally use of Internet technology, network security problem has become a key factor of puzzlement network Development.Network security hidden danger is mainly manifested in following three aspects: virus, the illegal operation of internal user and the assault of network-external.The illegal operation of internal user comprises malice and two kinds of non-malice: a kind of is imprecision due to network settings, and network internal user is strayed into the field that they originally should not enter, and changes by mistake data wherein; Another kind is that some internal user utilizes legal identity intentionally data to be destroyed.Assault is the most fearful, and in a single day network hacker enters certain network, and its loss that causes can't be estimated.
For domestic consumer, in order to use network safely, checking to client identity concentrates on medium and password mostly, whether be that the client exists significant limitation to identification like this, in case medium is lost and/or password is revealed, the client's of this operation of judgement that network side can't be exactly true identity.Subject matter is the network knowledge that fail safe too relies on user itself at present, and for the relatively poor user of security concept, its password is easy to be stolen.The hacker might obtain by illegal means client's the information such as password, so make client's private data or even some very important data stolen.
For example, a kind of method of commonplace use is, server end utilizes the session mode to keep state with client, preserve a session ID in each page, if the hacker takes this session ID, (this moment, system can not be judged as concurrent login control just to use client's current sessions to pretend to be the client to submit request to, because that the hacker uses is the session ID that the client logins, rather than the new sessionID of new login generation), therefore when carrying out online operation, there is very large risk in the client.
In view of present this situation, a kind of effective security mechanism need to be provided, make the user obtain the network service of safety when using the Internet.
Summary of the invention
The technical problem that (one) will solve
In order to overcome the defects of prior art, the invention provides a kind of security certification system and method, to improve internet security.
(2) technical scheme
Security certification system of the present invention comprises: server is used for providing service to client; Client is connected with server by network, is used for receiving service from server.This client comprises a safety detection device, is used for the hardware information according to client, and client and server are set up binding relationship, so that server this client of unique identification when service is provided.
This safety detection device also comprises main control unit, with the hardware information processing unit be connected the binding processing unit and be connected and call its function; The hardware information processing unit is used for gathering the client hardware relevant information, and this information can be used for this client of unique identification, and utilizes institute's obtaining information to generate computer fingerprint and the computer identity of unique this client of identification of energy; Set up the binding information processing unit, to described computer fingerprint, computer identity and be encrypted from the first random number that server obtains, and ciphertext is sent to described server; Check the binding information processing unit, for the second random number of obtaining described computer fingerprint, computer identity and receiving from server, utilize described computer fingerprint as the key of symmetric cryptography, described the second random number is encrypted, ciphertext and described computer identity after encrypting are submitted to server in the lump.Described hardware relevant information comprises ID, mainboard information, hard disk information or the network interface card information of CPU.
Above-mentioned server comprises: the unit is set up in binding, be used for after server gets described ciphertext, described ciphertext is decrypted, obtain a random number, computer fingerprint and computer identity, if this random number equates with described the first random number that server produces, described computer fingerprint and computer identity are registered in described customer information, complete the binding relationship between client and server; Check and bind the unit, be used for utilizing the computer identity of client upload, at the computer fingerprint of server retrieves client in server registers, and utilize this computer fingerprint to decipher the ciphertext of client upload, obtain a random number, described second random number of this random number and server generation is compared, if equate, check to bind and pass through.
The above-mentioned binding information processing unit of setting up utilizes the RSA asymmetric arithmetic, and using public-key is encrypted described the first random number, computer fingerprint and computer identity.The binding of server is set up unit by using RSA pairing private key the ciphertext of submitting to is decrypted, and obtains described the first random number, computer fingerprint and computer identity.
Safety certifying method of the present invention comprises: step 1, and the user submits to binding to set up request by user end to server; Step 2, server is to client downloads safety detection device and first random number that generates; Step 3, described safety detection device utilizes the hardware information of client to generate Computer fingerprint and computer identity, and described Computer fingerprint, computer identity and described the first random number are encrypted, ciphertext is uploaded to described server; Step 4, described server is decrypted the acquisition random number to the ciphertext that receives, if this random number equate with described the first random number, register described Computer fingerprint and computer identity, otherwise return to Bind Failed information.
Wherein, when the client-requested server provides service, at first submit the binding checking request to; Server is to client downloads one second random number, and in client, safety detection device utilizes computer fingerprint as symmetric cryptographic key, described the second random number to be encrypted, and ciphertext and computer identity are sent to server; The described computer identity of server by utilizing retrieves this client registers at the computer fingerprint of server, and utilize this computer fingerprint to decipher described ciphertext, obtain a random number, if this random number equates with described the second random number, binding checking passes through, otherwise returns to the binding checking failure information.
(3) beneficial effect
Use system and method for the present invention, the user utilizes the hardware information of client device to carry out network registry, the same hardware information that uses client device in safety certification process makes the network side server can this client of unique identification, thereby guarantees the fail safe of network operation.
Description of drawings
Fig. 1 is the structured flowchart of safety detection device in security certification system of the present invention;
Fig. 2 is the flow chart that in safety certifying method of the present invention, process is set up in binding; And
Fig. 3 is the flow chart of binding checking process in safety certifying method of the present invention.
Embodiment
For making the purpose, technical solutions and advantages of the present invention clearer, below in conjunction with example and with reference to accompanying drawing, the present invention is described in further details.
Usually, the user utilizes the Internet or local area network (LAN) etc. to be connected with server, thereby obtains various services by client devices such as PC, mobile phone or PDA, such as sending Email, accessing database, downloading data or online browse etc.But a lot of services need to be carried out safety certification to the user, according to security authentication mechanism of the present invention, need to one safety detection device be set at client device, and this safety detection device can be realized by computer software.It realizes that principle is that particular clients and a certain server are bound, thereby realize that server is when providing certain service to the user, server comes this client of unique identification by the hardware information of client, usurps user cipher and intercepting message to prevent network hacker.
With reference to Fig. 1, Fig. 1 shows security certification system of the present invention, and it comprises server 2 and client 1.Server 2 is connected with client and is connected by networks such as the Internet, local area network (LAN) or wide area networks.Also comprise safety detection device in client 1, this device comprises main control unit 10, hardware information processing unit 11, sets up binding information processing unit 12, checks binding information processing unit 14 and security control unit 15.Wherein hardware information processing unit 11, set up binding information processing unit 12, check that binding information processing unit 14 all is connected with main control unit 10 with security control unit 15.
Main control unit 10 is used for receiving the instruction from client, coordinates each functional unit and realizes the binding of client device and check binding function.
Hardware information processing unit 11, be used for gathering the hardware relevant information of client device, when client device was PC, relevant hardware information was such as being: the ID of CPU, mainboard information, hard disk information, network interface card information etc., these information can make a distinction any two machines.
After collecting the hardware relevant information, described hardware information processing unit 11 is according to built-in computer fingerprint generating algorithm, the combination of these information is generated optional network specific digit information by summary and special algorithm, it is computer fingerprint, the computer of the unique definite correspondence of energy, simultaneously, according to built-in computer sign generating algorithm, with the combination of the partial information of above-mentioned computer hardware relevant information by summary and special algorithm generation optional network specific digit information, be computer identity, computer that also can unique definite correspondence.And computer fingerprint and the computer identity that generates is transferred to main control unit 10.
Set up binding information processing unit 12, receive one first random number, computer fingerprint and computer identity from main control unit 10.If safety detection device is to obtain by downloading from server, described the first random number can together download to client with safety detection device.Set up binding information processing unit 12 and utilize built-in RSA asymmetric arithmetic, utilize PKI that described the first random number, computer fingerprint and computer identity are encrypted, wherein said the first random number can be used as one and obscures the factor.Then the first random number, computer fingerprint and computer identity after encrypting return to main control unit 10, submit to server by main control unit 10.
with client accordingly, at server end, one binding is set and sets up unit 21, be connected with control unit 20 and controlled by it, wherein this binding is set up unit 21 in the first random number that gets from client through encrypting, after computer fingerprint and computer identity, utilize RSA pairing private key that the ciphertext of submitting to is decrypted, obtain described the first random number, computer fingerprint and computer identity, the first random number that produces with this random number that decrypts and server compares, if equate, described computer fingerprint and computer identity are registered in described customer information.
Safety detection device also comprises inspection binding information processing unit 14, be used for receiving one second random number, described computer fingerprint and computer identity from main control unit 10, described the second random number is when this safety detection device downloads to client from server, produced by server, and follow safety detection device and together download to client.Check that binding information processing unit 14 utilizes described computer fingerprint as the key of symmetric cryptography, described the second random number is encrypted, ciphertext and described computer identity after encrypting are returned to main control unit 10 in the lump.Submit to server by main control unit.
With client accordingly, arrange one at server end and check and binding unit 22 to be connected with control unit 20 and controlled by it.The computer identity that unit 22 utilizes client to transmit is up bound in this inspection, to the computer fingerprint of server retrieves client in server registers, and utilize this computer fingerprint to decipher the ciphertext of sending on client, obtain one second random number, the second random number of this random number and server generation is compared, if equate, check to bind and pass through.
Safety detection device also comprises security control unit 15, be used for to control can only the domain name of appointment (for example: https: //www.***.com.cn/) website calls this safety detection device, can not or call by the website that IP accesses by other domain name websites, prevent that effectively the hacker from calling this safety detection device, gain client's hardware information by cheating, or obtain disposable hardware check ciphertext spoofing server.
Fig. 2 shows the flow chart that in safety certifying method of the present invention, binding between client and server is set up, and comprises the following steps.
Step 300: the user submits to binding to set up request by user end to server.
Wherein client can be the equipment such as PC, mobile phone or PDA, and client establishes a communications link with server by the Internet or local area network (LAN) etc.The user can by the input domain name (for example: https: //www.***.com.cn/) mode accesses certain server in station, before the service of obtaining from this website, needs to set up in advance the binding relationship with this server in station.At first, user end to server submits to binding to set up request, for example sends this request by the menu option of clicking on the website webpage.
Step 301: server in station is downloaded safety detection device to client after the binding foundation request that receives from client, simultaneously, produce one first random number by server, is built in described safety detection device.
Step 302: after safety detection device downloads to client, at first call security control unit 15 and carry out analysis, for example, by judge described client be whether the designated domain name website (for example: https: //www.***.com.cn/) maybe can conduct interviews by assigned ip, thereby judge whether to allow this client call, if so, enter step 304, otherwise enter step 303, Bind Failed.
Step 303: show and set up Bind Failed information to the client.
Step 304: the hardware information processing unit 11 in safety detection device gathers the hardware relevant information of client devices, such as the ID of CPU, mainboard information, hard disk information, network interface card information etc., and these information can make a distinction any two machines.After collecting the hardware relevant information, safety detection device is according to built-in computer fingerprint generating algorithm, the combination of these information is generated optional network specific digit information by summary and special algorithm, be computer fingerprint, the computer of the unique definite correspondence of energy, simultaneously, according to built-in computer sign generating algorithm, with the combination of the partial information of above-mentioned computer hardware relevant information by summary and special algorithm generation optional network specific digit information, i.e. computer identity, computer that also can unique definite correspondence.Afterwards, safety detection device utilizes built-in RSA asymmetric arithmetic, utilize the first random number that PKI produces the described server of step 301 and call computer fingerprint and the computer identity that the computer hardware information processing unit obtains and be encrypted, wherein random number can be used as one and obscures the factor, and the ciphertext after then encrypting is submitted to server.
Step 305: server by utilizing RSA pairing private key submits to the ciphertext of coming up to be decrypted to step 304, obtain described the first random number, computer fingerprint and computer identity, compare with the first random number that this first random number that decrypts and the described server of step 301 produce, if equate, described computer fingerprint and computer identity are registered in described customer information, enter step 306, otherwise enter step 303.
Step 306: return to binding success information to client.
Client just can receive the service from server after successfully binding with server, downloading data for example, online browse etc.
After setting up binding, before client is accessed this server at every turn, all need to check binding, inspection can conduct interviews after passing through.
Fig. 3 is the flow chart of binding checking in safety certifying method of the present invention, comprises the following steps.
Step 400, user end to server is submitted the binding checking request to.This request can together be submitted to service request.Wherein service request is for example that request server provides data to download, or the service such as online browse.
Step 401, server downloads to client with safety detection device after receiving the binding checking request, simultaneously, produce one second random number by server, is built in described safety detection device.
Step 402, after safety detection device downloads to client, at first the security control unit that calls wherein carries out analysis, for example, by judge described client be whether the designated domain name website (for example: https: //www.***.com.cn/) maybe can conduct interviews by assigned ip, thereby judge whether to allow this safety detection device of this client call, if, enter step 404, otherwise enter step 403.
Step 403 shows to client the Bind Failed information that checks, and shows the information of forbidding providing service.
Step 404, the computer fingerprint that safety detection device utilization hardware information processing unit 11 wherein obtains is as symmetric cryptographic key, described the second random number of step 401 is encrypted, the computer identity of this ciphertext and 11 acquisitions of hardware information processing unit is submitted to server together.
Step 405: the computer identity of server by utilizing client upload, retrieve client at the computer fingerprint of server registers, and utilize this computer fingerprint to decipher the ciphertext of client upload, obtain a random number, the second random number of this random number and the described server generation of step 401 is compared, if equate, binding checking passes through, enter step 406, otherwise enter step 403.
Step 406, binding checking passes through, and provides respective service to client.
By safety certifying method of the present invention and system are provided, can set up client and provide between the server of service binding relationship, improve the ability that the client resists network fraud and false website " fishing ", and improved the relative safety of the customer information after the information such as password are stolen, be that a kind of very effective of existing network secure authentication mode replenished.This safety certifying method and system can also effectively control the risk that client sessions is held as a hostage, even the hacker takes the session ID that preserves in each page of certain website, also can't carry out key operation from the machine of binding, thereby guarantee that further the user carries out the fail safe of network operation.
Safety certifying method provided by the invention and system are a kind of safety certification patterns of active, provide the client to set up the terminal binding, make the client to complete some network operation on the terminal of described binding, effectively taken precautions against the networking password and revealed this risk.core concept of the present invention is at client computer terminal deployment secure checkout gear by the webserver, collect the computer hardware fingerprint and (refer to the computer hardware relevant information, such as: CPU information, mainboard information, hard disk information, the optional network specific digit information that the combination of network interface card information is obtained by summary and special algorithm, the unique definite corresponding computer of energy), and the computer hardware finger print information of collecting is registered in the webserver, when the client carries out network operation, whether check client the computer hardware finger print information that uses and the computer hardware finger print information that has been registered in the webserver mates, if be complementary, allow to carry out network operation, otherwise forbid the network operation of being correlated with.
Above-described specific embodiment; purpose of the present invention, technical scheme and beneficial effect are further described; institute is understood that; the above is only specific embodiments of the invention; be not limited to the present invention; within the spirit and principles in the present invention all, any modification of making, be equal to replacement, improvement etc., within all should being included in protection scope of the present invention.

Claims (17)

1. security certification system, this system comprises:
Server is used for providing service to client;
Client is connected with server by network, is used for receiving service from server;
It is characterized in that, this client comprises a safety detection device, and this safety detection device comprises:
The hardware information processing unit is used for gathering the client hardware relevant information, and this information can be used for this client of unique identification, and utilizes institute's obtaining information to generate computer fingerprint and the computer identity of unique this client of identification of energy;
Set up the binding information processing unit, be used for described computer fingerprint, computer identity and be encrypted from the first random number that server obtains, and ciphertext is sent to described server;
Security control unit, being used for controlling described safety detection device can only maybe can call by the website that assigned ip conducts interviews by appointed domain name website;
Described server further comprises binding sets up the unit, be used for after server gets described ciphertext, described ciphertext is decrypted, obtain a random number, computer fingerprint and computer identity, if this random number equates with described the first random number that server produces, described computer fingerprint and computer identity are registered in described customer information, complete the binding relationship between client and server.
2. system according to claim 1, wherein safety detection device further comprises:
Check the binding information processing unit, for the second random number of obtaining described computer fingerprint, computer identity and receiving from server, utilize described computer fingerprint as the key of symmetric cryptography, described the second random number is encrypted, ciphertext and described computer identity after encrypting are submitted to server in the lump.
3. system according to claim 2, wherein server further comprises:
Check and bind the unit, be used for utilizing the computer identity of client upload, at the computer fingerprint of server retrieves client in server registers, and utilize this computer fingerprint to decipher the ciphertext of client upload, obtain a random number, described second random number of this random number and server generation is compared, if equate, check to bind and pass through.
4. according to claim 1-3 any one described systems, described client comprises PC, mobile terminal or PDA.
5. according to claim 1-3 any one described systems, described hardware information comprises ID, mainboard information, hard disk information or the network interface card information of CPU.
6. system according to claim 5, set up the binding information processing unit and utilize the RSA asymmetric arithmetic, and using public-key is encrypted described the first random number, computer fingerprint and computer identity.
7. system according to claim 6, the binding of server is set up the ciphertext that unit by using RSA pairing private key receives and is decrypted, and obtains described the first random number, computer fingerprint and computer identity.
8. safety certifying method, the method comprises the following steps:
Step 1, the user submits to binding to set up request by user end to server;
Step 2, server is to client downloads safety detection device and first random number that generates;
Step 3, described safety detection device utilizes the hardware information of client to generate Computer fingerprint and computer identity, and described Computer fingerprint, computer identity and described the first random number are encrypted, ciphertext is uploaded to described server;
Step 4, described server is decrypted to obtain a random number to the ciphertext that receives, if this random number equate with described the first random number, register described Computer fingerprint and computer identity, otherwise return to Bind Failed information;
Wherein said safety detection device comprises a security control unit, and being used for controlling described safety detection device can only by described server calls, can not or call by the website that IP accesses by other domain name websites.
9. method according to claim 8, further comprise after described step 2 judging whether described client can call described safety detection device, and if so, execution in step 3, if not, returns to Bind Failed information.
10. method according to claim 9 further comprises by judging that whether described client is the designated domain name website or noly can conducts interviews to determine whether it can call described safety detection device by assigned ip.
11. method according to claim 8, wherein said client comprises PC, mobile terminal or PDA.
12. method according to claim 9, wherein said client hardware information comprise ID, mainboard information, hard disk information or the network interface card information of CPU.
13. method according to claim 8, wherein said client is utilized the RSA asymmetric arithmetic, uses public-key described the first random number, computer fingerprint and computer identity are encrypted.
14. method according to claim 13, wherein said server by utilizing RSA pairing private key is decrypted the ciphertext that receives, and obtains described random number, computer fingerprint and computer identity.
15. according to claim 8-14 described methods of any one further comprise:
Step 5 when the client-requested server provides service, is at first submitted the binding checking request to
Step 6, server utilizes computer fingerprint as symmetric cryptographic key to client downloads one second random number at the client secure checkout gear, and described the second random number is encrypted, and ciphertext and computer identity are sent to server;
Step 7, the described computer identity of server by utilizing retrieves this client registers at the computer fingerprint of server, and utilize this computer fingerprint to decipher described ciphertext, obtain a random number, if this random number equates with described the second random number, binding checking passes through, otherwise returns to the binding checking failure information.
16. method according to claim 15 further comprises judging whether described client can call described safety detection device, and if so, execution in step 6, if not, returns to the binding checking failure information after step 5.
17. method according to claim 16 further comprises by judging that whether described client is the designated domain name website or noly can conducts interviews to determine whether it can call described safety detection device by assigned ip.
CN 201010227274 2010-07-07 2010-07-07 Safety authentication method and system Active CN101873331B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 201010227274 CN101873331B (en) 2010-07-07 2010-07-07 Safety authentication method and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 201010227274 CN101873331B (en) 2010-07-07 2010-07-07 Safety authentication method and system

Publications (2)

Publication Number Publication Date
CN101873331A CN101873331A (en) 2010-10-27
CN101873331B true CN101873331B (en) 2013-11-06

Family

ID=42997991

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201010227274 Active CN101873331B (en) 2010-07-07 2010-07-07 Safety authentication method and system

Country Status (1)

Country Link
CN (1) CN101873331B (en)

Families Citing this family (18)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102271140B (en) * 2011-09-05 2014-05-21 盛趣信息技术(上海)有限公司 Identity authentication method, device and system
CN103024090B (en) * 2011-09-20 2015-07-01 阿里巴巴集团控股有限公司 Method and system for identifying user terminal
CN102769629B (en) * 2012-07-27 2016-03-02 汉柏科技有限公司 Client-side password storage method and service system
CN104348615A (en) * 2013-07-26 2015-02-11 镇江雅迅软件有限责任公司 Encryption method based on server hardware information and RAS algorithm
WO2015081560A1 (en) * 2013-12-06 2015-06-11 北京新媒传信科技有限公司 Instant messaging client recognition method and recognition system
CN104573474B (en) * 2014-09-10 2019-01-11 中电科技(北京)有限公司 A kind of identity generation system and method based on UEFI
CN105812124A (en) * 2014-12-31 2016-07-27 环达电脑(上海)有限公司 Password generation method and password verification method
CN106209727B (en) * 2015-04-29 2020-09-01 阿里巴巴集团控股有限公司 Session access method and device
CN105007273B (en) * 2015-07-24 2018-11-20 广州华多网络科技有限公司 A kind of method and relevant device of data processing
KR102465249B1 (en) * 2016-02-19 2022-11-11 삼성전자주식회사 Electronic device for authenticating based on biometric data and operating method thereof
CN106487509B (en) * 2016-11-09 2019-01-29 北京信安世纪科技股份有限公司 A kind of method and host equipment generating key
CN106533683A (en) * 2016-11-11 2017-03-22 西安远眺网络科技有限公司 Equipment authentication method using national commercial cryptographic algorithm
CN106533669B (en) 2016-11-15 2018-07-13 百度在线网络技术(北京)有限公司 The methods, devices and systems of equipment identification
CN106788983B (en) * 2017-03-01 2020-07-10 北京同有飞骥科技股份有限公司 Communication data encryption method and device based on client/server mode
CN107707564B (en) * 2017-11-06 2018-11-09 山东渔翁信息技术股份有限公司 A kind of escape way based on cloud network establishes system
CN108924089B (en) * 2018-05-29 2021-11-09 武汉斗鱼网络科技有限公司 Client device identification method and device and client device
CN108923911A (en) * 2018-07-12 2018-11-30 广州安研信息科技有限公司 RSA cloud signature generating method
CN111709044B (en) * 2020-06-19 2021-06-22 山东省计算中心(国家超级计算济南中心) Hardware fingerprint information generation method and system based on state cryptographic algorithm

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1694564A (en) * 2005-05-19 2005-11-09 中国科学院计算技术研究所 Authentication, authority and accounting method of voice communication in radio block network
CN101183932A (en) * 2007-12-03 2008-05-21 宇龙计算机通信科技(深圳)有限公司 Security identification system of wireless application service and login and entry method thereof

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101039324B (en) * 2007-03-12 2011-09-14 华为技术有限公司 Method, system and apparatus for defending network virus

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1694564A (en) * 2005-05-19 2005-11-09 中国科学院计算技术研究所 Authentication, authority and accounting method of voice communication in radio block network
CN101183932A (en) * 2007-12-03 2008-05-21 宇龙计算机通信科技(深圳)有限公司 Security identification system of wireless application service and login and entry method thereof

Also Published As

Publication number Publication date
CN101873331A (en) 2010-10-27

Similar Documents

Publication Publication Date Title
CN101873331B (en) Safety authentication method and system
CN108092776B (en) System based on identity authentication server and identity authentication token
CN111917773B (en) Service data processing method and device and server
CN102647461B (en) Communication means based on HTTP, server, terminal
CN106341429B (en) A kind of authentication method for protecting server data safety
CN101374050B (en) Apparatus, system and method for implementing identification authentication
CN104767731B (en) A kind of Restful move transactions system identity certification means of defence
CN102448061B (en) Method and system for preventing phishing attack on basis of mobile terminal
CN104283886B (en) A kind of implementation method of the web secure access based on intelligent terminal local authentication
CN101951321B (en) Device, system and method for realizing identity authentication
CN104869102B (en) Authorization method, device and system based on xAuth agreement
CN105975846B (en) The authentication method and system of terminal
CN102685093A (en) Mobile-terminal-based identity authentication system and method
CN108243176B (en) Data transmission method and device
CN108880822A (en) A kind of identity identifying method, device, system and a kind of intelligent wireless device
CN102209046A (en) Network resource integration system and method
CN104463584A (en) Method for achieving mobile terminal App safety payment
CN102629928B (en) Implementation method for safety link of internet lottery ticket system based on public key
CN110138558A (en) Transmission method, equipment and the computer readable storage medium of session key
EP3664363B1 (en) Device and method for processing public key of user in communication system that includes a plurality of nodes
CN109729045A (en) Single-point logging method, system, server and storage medium
CN201717891U (en) Safety certification system
KR102118556B1 (en) Method for providing private blockchain based privacy information management service
CN106453259A (en) Internet finance safety link realization method based on block chaining encryption technology
CN117527333A (en) Identity authentication method, server and terminal equipment

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant