首页> 外国专利> METHOD AND SYSTEM FOR CONVENIENT USER AUTHENTICATION SERVICE USING USER TERMINAL BASED ON TRUSTED EXECUTION ENVIRONMENT

METHOD AND SYSTEM FOR CONVENIENT USER AUTHENTICATION SERVICE USING USER TERMINAL BASED ON TRUSTED EXECUTION ENVIRONMENT

机译:基于受信任执行环境的使用用户终端的便捷用户认证服务的方法和系统

摘要

The present invention relates to a method and a system for a convenient user authentication service by using a user terminal based on a trusted execution environment. The method for the convenient user authentication service by using the user terminal based on the trusted execution environment according to the present invention includes: a step of requesting login in which the user terminal operated by an ordinary operating system and a secure operating system makes a request for the login to a site server and receives a user token, a site ID and whether the authentication service is used as a login response; a step of registering the authentication service in which an authentication application executed by the user terminal transmits the user token via an authentication server to the site server to request site registration and receives a user private key as a result of approving the site registration to encrypt the user private key and store the user private key in the secure operating system; and a step of a login service in which the executed authentication application transmits an authentication token generated by using the site ID and the user private key in the secure operating system to the authentication server to request the login service when the login service to a site registered at the authentication application executed by the user terminal and receives a permission token generated in the authentication server as a login response result to transmit the permission token to the user terminal.;COPYRIGHT KIPO 2016
机译:基于可信执行环境的用户终端技术领域本发明涉及一种通过使用基于可信执行环境的用户终端的便捷用户认证服务的方法和系统。根据本发明的基于可信执行环境的使用用户终端的便捷用户认证服务的方法,包括:请求登录的步骤,在该步骤中,由普通操作系统和安全操作系统操作的用户终端发出请求用于登录到站点服务器并接收用户令牌,站点ID以及是否将认证服务用作登录响应;注册身份验证服务的步骤,其中由用户终端执行的身份验证应用程序通过身份验证服务器将用户令牌发送到站点服务器以请求站点注册,并作为批准站点注册以加密用户的结果接收用户私钥用户私钥,并将用户私钥存储在安全操作系统中;登录服务的步骤,其中执行的认证应用将使用安全操作系统中的站点ID和用户私钥生成的认证令牌发送到认证服务器,以在登录到站点的登录服务时请求登录服务COPYRIGHT KIPO 2016;在由用户终端执行的认证应用中,接收登录服务器在认证服务器中生成的许可令牌作为登录响应结果,以将该许可令牌发送给用户终端。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号