首页> 外国专利> The Master-password based Method to manage authentication media securely and conveniently

The Master-password based Method to manage authentication media securely and conveniently

机译:基于主密码的方法,用于安全和方便地管理身份验证媒体

摘要

The present invention relates to a technology for safely managing a self-authentication medium without user inconvenience. The user terminal of the present invention is a method of accessing the 'site server of the present invention'. When the user inputs a master password into the user terminal, Calculate the hash value of the master password, calculate the hash value of the site identification information, calculate the hash value of the authentication app issuer identification information, and use the hash values calculating a master key; Search the 'encrypted secret key' matching the authentication app issuer identification information in the secret information DB, and search the 'site ID, encrypted site password, and encrypted one-time terminal verification code' matching the site identification information, and , decrypting the 'encrypted site password' with the site dedicated master key, and decrypting the 'encrypted secret key' with the app management server dedicated master key; generating an OTP by decrypting the 'encrypted one-time terminal verification code' with the 'decrypted secret key' and encrypting the 'decrypted site password' with the decrypted one-time terminal verification code; transmitting the OTP to the site server by matching the site ID; The site server searches the customer DB for 'the hash value of the site password, the public key, and the one-time terminal verification code' matched with the site ID, and decrypts the OTP with the one-time terminal verification code to calculate the site password, comparing the hash value of the 'calculated site password' with the 'hash value of the searched site password'; If the matching result matches, the site server determines that authentication is complete, randomly generates a new one-time terminal verification code in the form of a binary code, and generates a terminal verification code field matching the ID for the site in the customer DB update to the one-time terminal verification code, encrypt the 'updated one-time terminal verification code' with the 'searched public key', and send the site identification information and 'the encrypted, updated one-time terminal verification code' to the user terminal transmitting; updating a terminal verification code field matched with the site identification information in the secret information DB in the user terminal to the 'encrypted one-time terminal verification code'; includes
机译:本发明涉及一种用于安全地管理自我认证介质而无需用户不便的技术。本发明的用户终端是访问本发明的“站点服务器”的方法。当用户将主密码输入到用户终端时,计算主密码的哈希值,计算站点识别信息的散列值,计算认证应用程序发布者标识信息的散列值,并使用计算a的散列值主密钥;在秘密信息DB中搜索匹配身份验证应用程序发布者识别信息的“加密密钥”,并搜索“站点ID,加密站点密码和加密的一次性终端验证码”匹配网站标识信息,并解密“加密网站密码”与站点专用主密钥,并使用App Management Server专用主密钥解密“加密密钥”;通过使用“解密的秘密密钥”解密“加密的一次性终端验证码”并通过解密的一次性终端验证码加密“解密的站点密码”来生成OTP;通过匹配网站ID将OTP传输到站点服务器;站点服务器将客户DB搜索“站点密码的哈希值,公钥”,公钥和一次性终端验证码“与站点ID匹配,并使用单时终端验证码解密OTP以计算网站密码,将“计算网站密码”的哈希值与“搜索网站密码”的“哈希值”进行比较;如果匹配结果匹配,则站点服务器确定已完成身份验证,则随机地以二进制代码的形式生成新的一次性终端验证码,并生成与客户DB中的网站的ID匹配的终端验证码字段更新到一次性终端验证码,使用“搜索公钥”加密“更新的一次性终端验证码”,并将网站标识信息发送到“加密,更新的一次终端验证码”用户终端发送;更新在用户终端中的秘密信息DB中匹配的终端验证码字段,以“加密的一次性终端验证码”;包括

著录项

  • 公开/公告号KR20210136487A

    专利类型

  • 公开/公告日2021-11-17

    原文格式PDF

  • 申请/专利权人 조현준;

    申请/专利号KR20200054797

  • 发明设计人 조현준;

    申请日2020-05-07

  • 分类号G06F21/60;G06F21/46;G06F21/71;G06F21/73;

  • 国家 KR

  • 入库时间 2022-08-24 22:30:36

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号