首页> 外国专利> SYSTEM AND METHOD FOR AUTHENTICATING ONE-TIME PASSWORD BASED ON VISUAL CRYPTOGRAPHY

SYSTEM AND METHOD FOR AUTHENTICATING ONE-TIME PASSWORD BASED ON VISUAL CRYPTOGRAPHY

机译:基于可视密码的一次性密码认证系统及方法

摘要

The present invention relates to a system and a method for authenticating a one-time password based on visual cryptography. A system for authenticating a one-time password based on visual cryptography includes an RP server, an RP client, an FIDO server, and a visual OTP FIDO authentication device. The RP server randomly generates a shared secret key, generates a shared image thereof, and transmits random image information and secret image information about the shared image to the FIDO server and the RP client, respectively. The RP client displays the received shared image information, receives the identified shared secret key, and transmits it to the RP server. The FIDO server generates an FIDO UAF authentication request message by including the secret image information received from the RP server in a transaction field of a UAF authentication protocol, verifies the FIDO UAF authentication response message, and transmits a shared secret key included in a response message to the RP server. When the FIDO UAF authentication request message is received, the visual OTP FIDO authentication device performs a user authentication operation, displays the secret image information on a secure display of the visual OTP FIDO authentication device. In addition, the visual OTP FIDO authentication device allows the random image output on the RP client screen to overlap the secret image displayed on the secure display of the visual OTP FIDO authentication device in cooperation with a camera of a user apparatus. In addition, the visual OTP FIDO authentication device allows the user to visually identify the shared secret key generated by the RP server and to input the identified shared secret key, and generates an FIDO UAF authentication response message including the identified shared secret key.;COPYRIGHT KIPO 2018
机译:基于视觉密码的一次性密码认证系统及方法技术领域本发明涉及一种基于视觉密码的一次性密码认证系统及方法。一种基于视觉密码认证一次性密码的系统,包括RP服务器,RP客户端,FIDO服务器和视觉OTP FIDO认证设备。 RP服务器随机地生成共享密钥,生成其共享图像,并将与该共享图像有关的随机图像信息和秘密图像信息分别发送到FIDO服务器和RP客户端。 RP客户端显示接收到的共享映像信息,接收标识的共享密钥,并将其发送到RP服务器。 FIDO服务器通过将从RP服务器接收的秘密图像信息包括在UAF认证协议的交易字段中来生成FIDO UAF认证请求消息,验证FIDO UAF认证响应消息,并发送响应消息中包括的共享密钥。到RP服务器。当接收到FIDO UAF认证请求消息时,视觉OTP FIDO认证设备执行用户认证操作,在视觉OTP FIDO认证设备的安全显示器上显示秘密图像信息。另外,视觉OTP FIDO认证设备与用户设备的相机协作,允许在RP客户端屏幕上输出的随机图像与在视觉OTP FIDO认证设备的安全显示器上显示的秘密图像重叠。另外,可视OTP FIDO认证设备使用户可以直观地识别RP服务器生成的共享密钥并输入识别出的共享密钥,并生成包括识别出的共享密钥的FIDO UAF认证响应消息。韩国知识产权局2018

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号