CN103281173A - Key management method for plural network platforms - Google Patents
Key management method for plural network platforms Download PDFInfo
- Publication number
- CN103281173A CN103281173A CN2013101529272A CN201310152927A CN103281173A CN 103281173 A CN103281173 A CN 103281173A CN 2013101529272 A CN2013101529272 A CN 2013101529272A CN 201310152927 A CN201310152927 A CN 201310152927A CN 103281173 A CN103281173 A CN 103281173A
- Authority
- CN
- China
- Prior art keywords
- private cloud
- user
- key
- pass
- network platform
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
- 238000007726 management method Methods 0.000 title claims abstract description 18
- 238000012546 transfer Methods 0.000 claims abstract description 5
- 238000012795 verification Methods 0.000 claims abstract description 5
- 238000004891 communication Methods 0.000 claims description 7
- 238000012790 confirmation Methods 0.000 claims 2
- 238000000034 method Methods 0.000 description 6
- 230000008569 process Effects 0.000 description 5
- 230000004913 activation Effects 0.000 description 2
- 230000005540 biological transmission Effects 0.000 description 2
- 238000005516 engineering process Methods 0.000 description 2
- 238000011161 development Methods 0.000 description 1
- 238000010586 diagram Methods 0.000 description 1
- 238000012986 modification Methods 0.000 description 1
- 230000004048 modification Effects 0.000 description 1
- 238000012545 processing Methods 0.000 description 1
- 230000004044 response Effects 0.000 description 1
Images
Landscapes
- Information Transfer Between Computers (AREA)
Abstract
Description
技术领域technical field
本发明关于一种复数网络平台的密钥管理方法,特别是指一种允许利用网页浏览器、通行密钥传输网络(data transmission network)、私有云端及服务器进行安全的远程动态登入(dynamic entry)的电子商务的系统。The present invention relates to a key management method for a plurality of network platforms, in particular to a secure remote dynamic entry (dynamic entry) that allows the use of a web browser, a pass key transmission network (data transmission network), a private cloud, and a server e-commerce system.
背景技术Background technique
云端运算技术(Cloud Computing)最早是由亚马逊Amazon所提出的一种软件技术,因应网络购物平台而生的云端运算。之后Google、Microsoft也跟进,而这个技术,其实早就已经存在我们的生活中,而且应用持续扩大,成为生活中不可或缺的一部分。随着因特网急剧发展下,硬件效能与网页浏览器的高速运算需求提升,加上宽带的普及等各种面向,来观察云端运算的演进,可以由早期的网络拨接(Modem)谈起,历经网络服务器(Web Server)、主机代管(WebHosting)、到现今发展的应用程序代管(ASP)。Cloud computing technology (Cloud Computing) was first proposed by Amazon as a software technology, which was born in response to the online shopping platform. After that, Google and Microsoft also followed up, and this technology has already existed in our lives, and its applications continue to expand, becoming an indispensable part of our lives. With the rapid development of the Internet, hardware performance and high-speed computing requirements of web browsers have increased, coupled with the popularity of broadband and other aspects, to observe the evolution of cloud computing, we can start from the early network dial-up (Modem). Web server (Web Server), host hosting (WebHosting), and the application program hosting (ASP) developed today.
计算机运算能力随着网络慢慢聚集在伺服端,伺服端也因此聚集更大量的运算能力,因此我们借由因特网,不断衍生出更多WWW及其相关的需求,许多公司纷纷开始提供网络服务或电子商务。Computer computing power gradually gathers on the server side along with the network, and the server side also gathers a larger amount of computing power. Therefore, we use the Internet to continuously generate more WWW and related needs. Many companies have begun to provide network services or e-commerce.
凡在商业活动中,全部或部分利用数字电子设备,即可称这类商业活动是一种电子商务。电子商务通常牵涉到通行锁流、物流与金流这三个议题,而其中的物流与金流往往因为流程繁复而成为整个电子商务活动的瓶颈,这两项因素也是一个电子商务能否成功的重大关键。电子商务在现代已是我们熟悉的一种商业活动型式。电子商务借由网页浏览器的便利性,较传统的商业活动有更多的优点,但是却还存在着一些亟待解决的问题。Where digital electronic devices are used in whole or in part in commercial activities, such commercial activities can be called a kind of electronic commerce. E-commerce usually involves three issues: traffic lock, logistics and cash flow, and the logistics and cash flow often become the bottleneck of the entire e-commerce activity because of the complicated process. These two factors are also the key to the success of e-commerce. big key. E-commerce is already a kind of business activity pattern that we are familiar with in modern times. E-commerce has more advantages than traditional commercial activities through the convenience of web browsers, but there are still some problems that need to be solved urgently.
发明内容Contents of the invention
本发明的目的即在于提供一种复数网络平台的密钥管理方法,其利用在不同类型的网页浏览器中共享的通行锁来支持启动用户的网络平台,使所述通行锁帮助验证激活使用者的真实性。The purpose of the present invention is to provide a key management method for multiple network platforms, which utilizes the access lock shared by different types of web browsers to support the activation of the user's network platform, so that the access lock helps to verify the activation user authenticity.
本发明的另一目的在于提供一种复数网络平台的密钥管理方法,只有带有正确通行密钥的网页浏览器可以自由地链接网络平台,并使用网络服务交易来要求存取网络平台上完整或部分装载服务。Another object of the present invention is to provide a key management method for multiple network platforms, only web browsers with correct passkeys can freely link to the network platforms, and use network service transactions to request access to the complete or partially loaded services.
可达成上述发明目的的复数网络平台的密钥管理方法,为以私有云端链接复数网络平台,并接受使用者以不同类型的网页浏览器经由任一网络平台链接;其次,使用者于网页浏览器输入个人参数注册;再者,私有云端以个人参数使用密钥算法生成一通行锁,所述通行锁供日后使用者以不同类型的网页浏览器链接任一网络平台,私有云端验证使用者身分用,所述管理包括下列步骤:The key management method of the plurality of network platforms that can achieve the purpose of the above invention is to link the plurality of network platforms with a private cloud, and accept users to use different types of web browsers to connect via any network platform; secondly, the user uses the web browser Enter personal parameters to register; moreover, the private cloud uses personal parameters to generate a pass-through lock using a key algorithm. The pass-through lock will be used by the user to connect to any network platform with different types of web browsers in the future, and the private cloud will verify the user's identity. , the management includes the following steps:
当使用者日后以不同类型的网页浏览器登入任一网络平台,所述网络平台以超文件传送协议常驻程序导向私有云端,所述私有云端并对网页浏览器显示一时效性的作业参数让用户输入,当使用者于预设时效内输入个人参数,所述私有云端随即产生一通行密钥;When the user logs in to any network platform with different types of web browsers in the future, the network platform will use the hyperfile transfer protocol resident program to lead to the private cloud, and the private cloud will display a time-sensitive operating parameter to the web browser. User input, when the user enters personal parameters within the preset time limit, the private cloud will generate a pass key;
由私有云端所产生的通行密钥,再与使用者注册时于私有云端生成的通行锁进行身分辨识后,并将比对验证结果讯息传递至网络平台,使所述通行锁与通行密钥帮助网络平台验证用户身分的真实性。The pass key generated by the private cloud is identified with the pass lock generated in the private cloud when the user registers, and the comparison verification result message is sent to the network platform, so that the pass lock and the pass key can help The network platform verifies the authenticity of the user's identity.
附图说明Description of drawings
图1为本发明复数网络平台的密钥管理方法的方框图。Fig. 1 is a block diagram of the key management method of the multiple network platform of the present invention.
图2为所述复数网络平台的密钥注册流程图。Fig. 2 is a flow chart of key registration for the multiple network platforms.
图3为使用者以网页浏览器登入任一网络平台,其私有云端比对流程图。FIG. 3 is a flow chart of private cloud comparison between a user logging in to any network platform with a web browser.
附图标记说明Explanation of reference signs
1 网页浏览器1 web browser
2 私有云端2 private cloud
3 网络平台3 Network platform
4 服务器4 servers
具体实施方式Detailed ways
请参阅图1与图2,本发明所提供的复数网络平台3的密钥管理方法,为使用者先按以下步骤注册:Please refer to Fig. 1 and Fig. 2, the key management method of the plurality of
用户以网页浏览器1进入网络平台3;The user enters the
私有云端2链接复数网络平台3,并接受使用者以不同类型的网页浏览器1经由任一网络平台3链接;The
使用者于网页浏览器1输入个人参数(个人参数能为单一参数、或复数参数、或为个人标识号(personal data)与个人标识号)注册;The user enters personal parameters in the web browser 1 (personal parameters can be a single parameter, or multiple parameters, or personal identification number (personal data) and personal identification number) to register;
私有云端2以个人参数使用密钥算法(secret key algorithm)生成一通行锁,且所述私有云端2进一步运作以使用一所选的加密协议来与通行锁协作,以便加密通行锁。The
如图3所示,所述通行锁供日后使用者以不同类型的网页浏览器1链接任一网络平台3,让私有云端2验证使用者身分用,所述管理包括下列步骤:As shown in Figure 3, the access lock will be used by users to link any
当使用者日后以不同类型的网页浏览器1登入任一网络平台3,所述网络平台3以超文件传送协议常驻程序(HTTP)做为网络应用程序协议导向私有云端2,所述私有云端2并对网页浏览器1显示一时效性(timeliness)的作业参数(operational parameter)让使用者输入,当使用者于预设时效内输入个人参数,所述私有云端2随即产生一通行密钥;When the user logs in to any
由私有云端2所产生的通行密钥,在与使用者注册时于私有云端2生成的通行锁进行身分辨识后,并将比对验证结果讯息传递至网络平台3,使所述通行锁与通行密钥帮助网络平台3验证用户身分的真实性。The pass key generated by the
所述网页浏览器1其可经用户运作以透过通信接口(communication interface)来与一个或多个合作的网络平台3(network platform)进行沟通,并且其中所述网页浏览器1可运作成处理网络服务;所述不同类型的网页浏览器1能以通信网路运作成使用网络服务来传达通行密钥及应用程序编程接口(applicationprogramming interface,API),其中,所述网页浏览器1为具有网络联机或以行动数据联机的行动网页浏览器1。The
其中所述通行密钥依登入的不同类型的网页浏览器1会产生不同的通行密钥,当使用者由不同类型的网页浏览器1登入,其各网页浏览器1皆会将所产生的通行密钥送传送至私有云端2,由私有云端2将通行密钥与登入时通行锁进行比对,以验证使用者身分。Wherein the pass key will generate different pass keys according to the different types of
所述私有云端2(Private Cloud)连接网页浏览器1与网络平台3,其可运作以执行一项或多项网页浏览器1管理或请求服务功能。使用者于注册时,私有云端2以个人参数使用密钥算法生成一通行锁;使用者于登入时,当网页浏览器1请求与网络平台3链接时,能接收使用者于预设时效内输入个人参数,使所述私有云端2随即产生一通行密钥;The private cloud 2 (Private Cloud) connects the
所述网络平台3提供网页浏览器1的使用者登入,所述网络平台3以超文件传送协议常驻程序(HTTP)做为网络应用程序协议导向私有云端2;The
所述服务器4为连接网络平台3,当所述网页浏览器1传送一通行密钥至私有云端2,所述私有云端2并鉴认和确认传送的通行密钥与使用者注册私有云端2产生的通行锁是否相符;其可运作以产生、处理、储存及加密于所述网页浏览器1的私有云端2的网络服务。The
本发明的私有云端2能连接不同类型的网页浏览器1,借由使用者单一通行密钥,能通行于任一与私有云端2合作不同类型的网页浏览器1,所述网页浏览器1不允许在没有获取私有云端2的通行锁的情况下使用所述启动网络平台3。因此服务器4具有将启动网络平台3绑定到所述网页浏览器1上的功能。而且,所述网页浏览器1不能在没有通行密钥的情况下到达与私有云端2合作的网络平台3,只有使用者绑定的网页浏览器1启动通行密钥至私有云端2时。带有正确通行密钥的网页浏览器1可以自由地连接私有云端2,并启动私有云端2内使用者的内容。于是,启动任一网页浏览器1的通行锁将由私有云端2控管,以提供使用者于私有云端2产生的通行密钥能启动任一网页浏览器1的所有内容。The
所述服务器4可经由通信网路(可能是固线或无线局部局域网络、广域网(WAN)、内部网络、外部网络、对等式网络、因特网或其他通信网路)而互连于数个客户端的网页浏览器1,例如,平板计算机、移动电话、电话、个人计算机及个人数字助理。The
在运作过程中,使用者(图中未绘示)可互动于网页浏览器1环境上执行私有云端2的应用程序编程接口,借此获得所要的通行密钥及/或应用程序编程接口。通行密钥及/或应用程序编程接口可储存在私有云端2计算机环境上,并且透过通信网路传达至网页浏览器1环境;During the operation, the user (not shown in the figure) can interact with the
网页浏览器1会使用网络服务交易来要求存取私有云端2上完整或部分装载的特定通行密钥及应用程序。应用程序编程接口可在网页浏览器1环境和私有云端2与服务器4计算机环境之间传达这些网络服务交易,以进行处理及储存。私有云端2可装载应用程序编程接口、进程(process)及程序项(applet),用以产生、鉴认及传达网络服务,并且可与其他服务器4计算机环境、第三方服务提供商、网络附接式储存网页浏览器1(network attached storage;NAS)和储存局域网络(storage area network;SAN)协作,以便实现彼等网络服务交易。The
以上所述的实施例仅为本发明的技术思想及特点,其目的在使所属领域技术人员能够了解本发明的内容并据以实施,但不能以此限定本发明的专利保护范围,即凡依发明所揭示的精神所作的均等变化或修饰,都应属于本发明专利保护范围。The above-described embodiments are only the technical ideas and characteristics of the present invention, and its purpose is to enable those skilled in the art to understand the content of the present invention and implement it accordingly, but it cannot limit the scope of patent protection of the present invention. All equivalent changes or modifications made to the disclosed spirit of the invention shall fall within the protection scope of the patent of the present invention.
Claims (6)
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN2013101529272A CN103281173A (en) | 2013-04-27 | 2013-04-27 | Key management method for plural network platforms |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN2013101529272A CN103281173A (en) | 2013-04-27 | 2013-04-27 | Key management method for plural network platforms |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| CN103281173A true CN103281173A (en) | 2013-09-04 |
Family
ID=49063633
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN2013101529272A Pending CN103281173A (en) | 2013-04-27 | 2013-04-27 | Key management method for plural network platforms |
Country Status (1)
| Country | Link |
|---|---|
| CN (1) | CN103281173A (en) |
Cited By (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN112016926A (en) * | 2019-05-30 | 2020-12-01 | 网银国际股份有限公司 | User authentication method for secure transaction environment |
| CN119520004A (en) * | 2023-08-25 | 2025-02-25 | Oppo广东移动通信有限公司 | Website login method, terminal device and storage medium |
Citations (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20070162605A1 (en) * | 2006-01-07 | 2007-07-12 | Chalasani Nanchariah R | Distributed instant messaging |
| CN101042699A (en) * | 2007-04-28 | 2007-09-26 | 华中科技大学 | Safety search engine system based on accessing control |
| CN102457493A (en) * | 2010-10-26 | 2012-05-16 | 中兴通讯股份有限公司 | Authentication routing system, method and authentication router for cloud computing service |
| CN102457507A (en) * | 2010-10-29 | 2012-05-16 | 中兴通讯股份有限公司 | Cloud computing resource security sharing method, device and system |
| CN102664885A (en) * | 2012-04-18 | 2012-09-12 | 南京邮电大学 | Identity authentication method based on biological feature encryption and homomorphic algorithm |
| CN103067371A (en) * | 2012-12-24 | 2013-04-24 | 广州杰赛科技股份有限公司 | Cloud terminal identity authentication method and system |
-
2013
- 2013-04-27 CN CN2013101529272A patent/CN103281173A/en active Pending
Patent Citations (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20070162605A1 (en) * | 2006-01-07 | 2007-07-12 | Chalasani Nanchariah R | Distributed instant messaging |
| CN101042699A (en) * | 2007-04-28 | 2007-09-26 | 华中科技大学 | Safety search engine system based on accessing control |
| CN102457493A (en) * | 2010-10-26 | 2012-05-16 | 中兴通讯股份有限公司 | Authentication routing system, method and authentication router for cloud computing service |
| CN102457507A (en) * | 2010-10-29 | 2012-05-16 | 中兴通讯股份有限公司 | Cloud computing resource security sharing method, device and system |
| CN102664885A (en) * | 2012-04-18 | 2012-09-12 | 南京邮电大学 | Identity authentication method based on biological feature encryption and homomorphic algorithm |
| CN103067371A (en) * | 2012-12-24 | 2013-04-24 | 广州杰赛科技股份有限公司 | Cloud terminal identity authentication method and system |
Cited By (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN112016926A (en) * | 2019-05-30 | 2020-12-01 | 网银国际股份有限公司 | User authentication method for secure transaction environment |
| CN119520004A (en) * | 2023-08-25 | 2025-02-25 | Oppo广东移动通信有限公司 | Website login method, terminal device and storage medium |
| CN119520004B (en) * | 2023-08-25 | 2025-11-04 | Oppo广东移动通信有限公司 | Website login methods, terminal devices and storage media |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US10515232B2 (en) | Techniques for facilitating secure, credential-free user access to resources | |
| US20240370923A1 (en) | Identity proofing offering for customers and non-customers | |
| JP5933827B2 (en) | Communication session transfer between devices | |
| US9369286B2 (en) | System and methods for facilitating authentication of an electronic device accessing plurality of mobile applications | |
| CN101316424A (en) | A method, system and device for information transmission | |
| JP2023518824A (en) | System architecture for accessing secure data from mobile devices communicating with remote servers | |
| WO2018177124A1 (en) | Service processing method and device, data sharing system and storage medium | |
| CN102694782B (en) | Security information exchange device based on internet and method | |
| JP6918576B2 (en) | Systems, information processing equipment, methods and programs | |
| CN104283961B (en) | Community management integrates cloud service platform and method | |
| CN102469080A (en) | Method for pass user to realize safety login application client and system thereof | |
| CN108200040A (en) | Mobile client exempts from method, system, browser and the mobile terminal of close login | |
| WO2016161888A1 (en) | Method, device and system for remotely accessing cloud application | |
| CN102694781A (en) | Internet-based system and method for security information interaction | |
| US20080306875A1 (en) | Method and system for secure network connection | |
| CN101222335A (en) | Cascade authentication method and device between application systems | |
| WO2014086125A1 (en) | Login method and login system of mobile terminal | |
| WO2021042815A1 (en) | Http redirect status code capture method and apparatus, and computer device | |
| CN103563338B (en) | Method and device for authentication representing user to access applications of a communication system | |
| CN118316688A (en) | Gateway authentication method, device and system | |
| CN104375999A (en) | System and method for communicating different social networks | |
| EP2800330A1 (en) | Secret key management method for multi-network platform | |
| CN103281173A (en) | Key management method for plural network platforms | |
| US20140325219A1 (en) | Secret key management method for multi-network platform | |
| CN102752265B (en) | Security information interaction system and method based on Internet |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| C06 | Publication | ||
| PB01 | Publication | ||
| C10 | Entry into substantive examination | ||
| SE01 | Entry into force of request for substantive examination | ||
| REG | Reference to a national code |
Ref country code: HK Ref legal event code: DE Ref document number: 1184292 Country of ref document: HK |
|
| C02 | Deemed withdrawal of patent application after publication (patent law 2001) | ||
| WD01 | Invention patent application deemed withdrawn after publication |
Application publication date: 20130904 |
|
| REG | Reference to a national code |
Ref country code: HK Ref legal event code: WD Ref document number: 1184292 Country of ref document: HK |