KR102503526B1 - Apparatus and method for providing authentication service - Google Patents
Apparatus and method for providing authentication service Download PDFInfo
- Publication number
- KR102503526B1 KR102503526B1 KR1020150134303A KR20150134303A KR102503526B1 KR 102503526 B1 KR102503526 B1 KR 102503526B1 KR 1020150134303 A KR1020150134303 A KR 1020150134303A KR 20150134303 A KR20150134303 A KR 20150134303A KR 102503526 B1 KR102503526 B1 KR 102503526B1
- Authority
- KR
- South Korea
- Prior art keywords
- user terminal
- interface
- authentication service
- answer
- query
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Images
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/38—Payment protocols; Details thereof
- G06Q20/382—Payment protocols; Details thereof insuring higher security of transaction
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06Q—INFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
- G06Q20/00—Payment architectures, schemes or protocols
- G06Q20/38—Payment protocols; Details thereof
- G06Q20/40—Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
Landscapes
- Engineering & Computer Science (AREA)
- Business, Economics & Management (AREA)
- Computer Security & Cryptography (AREA)
- Accounting & Taxation (AREA)
- Physics & Mathematics (AREA)
- Strategic Management (AREA)
- Finance (AREA)
- General Business, Economics & Management (AREA)
- General Physics & Mathematics (AREA)
- Theoretical Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Telephonic Communication Services (AREA)
Abstract
본 발명은 인증 서비스 제공 장치 및 인증 서비스 제공 방법에 관한 것이다. 본 발명의 제 1 측면에 따르면, 제1사용자단말 및 제2사용자단말 각각과 통신하는 인증 서비스 제공 장치로서, 상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 인터페이스관리부, 상기 제1인터페이스를 통해 질의를 수신하면 상기 질의에 매칭되는 답변을 생성하는 답변생성부, 및 상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 인증처리부를 포함할 수 있다.The present invention relates to an authentication service providing device and an authentication service providing method. According to a first aspect of the present invention, an authentication service providing apparatus communicating with each of a first user terminal and a second user terminal, providing a first interface for receiving a query when an authentication request is received from the first user terminal An interface management unit, an answer generation unit generating an answer matching the query when a query is received through the first interface, and an authentication processing unit authenticating the first user terminal when the answer is received through the second user terminal can include
Description
본 발명은 인증 서비스 제공 장치 및 인증 서비스 제공 방법에 관한 것으로, 보다 상세하게는, 복수 개의 사용자단말을 이용하여 보다 안전하면서도 간편하게 사용자를 인증하는 장치 및 방법에 관한 것이다.The present invention relates to an authentication service providing apparatus and an authentication service providing method, and more particularly, to an apparatus and method for more safely and conveniently authenticating a user using a plurality of user terminals.
최근 들어 전자상거래가 활발해짐에 따라 보다 안전하게 결제하는 방법에 관한 연구가 활발해지고 있다. Recently, as e-commerce has become active, research on more secure payment methods has been actively conducted.
관련하여, 결제 시 이용되는 사용자정보는 외부에 절대 유출되지 않아야 하는 민감한 정보를 포함하고 있는 경우가 대부분이다. 따라서 사용자정보가 사용자 본인에 한해 이용될 수 있도록, 해당 사용자정보를 요청하는 자가 정당한 권원이 있는 자인지를 인증하는 기술의 개발이 필요하게 되었다.In this regard, in most cases, user information used for payment includes sensitive information that should never be leaked to the outside. Therefore, it is necessary to develop a technology for authenticating whether a person requesting the user information is a person with a legitimate right so that the user information can be used only by the user himself/herself.
이러한 일환으로 개발된 종래 기술은, 사용자로 하여금 사용자정보에 접근하기 위한 비밀번호를 설정하도록 하고, 해당 비밀번호를 입력해야지만 사용자정보에 접근할 수 있도록 하였다. 이와 같이 비밀번호를 이용하여 사용자를 인증하는 종래 기술은, 사용자가 실수로 비밀번호를 외부에 노출시키거나, 또는 해킹 등으로 인해 비밀번호가 유출되면, 사용자정보에 접근할 권한이 없는 제3자가 비밀번호를 입력하여 사용자정보에 접근할 수 있는 문제점이 있었다.The prior art developed as part of this allows the user to set a password for accessing user information and allows access to the user information only when the corresponding password is entered. As such, in the prior art of authenticating a user using a password, when the user accidentally exposes the password to the outside or the password is leaked due to hacking, etc., a third party without permission to access user information inputs the password. Thus, there was a problem in accessing user information.
이에 또 다른 종래기술은, 공인 인증서를 기반으로 공인된 인증기관을 통해 고객을 인증하였다. 이와 같은 종래기술에 따른 인증 방법은, 비밀번호를 이용한 인증 방법보다 상대적으로 안전하나, 키 스트로크 수단을 이용한 해킹과 피싱을 통한 공인 인증서 비밀번호의 불법적 획득을 방지할 수 없다는 문제점이 있었으며, 또한 공인 인증서 이용을 위한 프로그램이 사용자단말에 별도로 설치되어 있어야 함에 따라 인증절차가 복잡해지는 문제점이 있었다.Accordingly, in another prior art, a customer is authenticated through an authorized certification authority based on an authorized certificate. Although the authentication method according to the prior art is relatively safer than the authentication method using a password, it has a problem in that it cannot prevent illegal acquisition of a public certificate password through hacking and phishing using a keystroke method, and also uses a public certificate. There was a problem in that the authentication procedure becomes complicated as the program for the authentication should be separately installed in the user terminal.
관련하여 선행기술 문헌인 한국특허공개번호 제10-2011-0042621 호에서는 인증 서비스를 제공하는 방법에 대해 기술하고 있다. 그러나 선행기술 문헌에서는 공인인증서를 이용하여 사용자를 인증하는 복잡한 방식을 제시할 뿐이어서, 여전히 간단하면서도 안전하게 사용자를 인증하기 위한 기술의 개발이 필요하게 되었다.In this regard, Korean Patent Publication No. 10-2011-0042621, which is a prior art document, describes a method of providing an authentication service. However, prior art literature only presents a complicated method of authenticating a user using a public certificate, so it is still necessary to develop a technology for simple and safe user authentication.
한편, 전술한 배경기술은 발명자가 본 발명의 도출을 위해 보유하고 있었거나, 본 발명의 도출 과정에서 습득한 기술 정보로서, 반드시 본 발명의 출원 전에 일반 공중에게 공개된 공지기술이라 할 수는 없다.On the other hand, the above-mentioned background art is technical information that the inventor possessed for derivation of the present invention or acquired in the process of derivation of the present invention, and cannot necessarily be said to be known art disclosed to the general public prior to filing the present invention. .
본 발명의 일실시예는, 인증 서비스 제공 장치 및 인증 서비스 제공 방법을 제시하는 데에 목적이 있다. An object of an embodiment of the present invention is to provide an authentication service providing device and an authentication service providing method.
상술한 기술적 과제를 달성하기 위한 기술적 수단으로서, 본 발명의 제 1 측면에 따르면, 제1사용자단말 및 제2사용자단말 각각과 통신하는 인증 서비스 제공 장치로서, 상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 인터페이스관리부, 상기 제1인터페이스를 통해 질의를 수신하면 상기 질의에 매칭되는 답변을 생성하는 답변생성부, 및 상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 인증처리부를 포함할 수 있다.As a technical means for achieving the above technical problem, according to a first aspect of the present invention, an authentication service providing device communicating with each of a first user terminal and a second user terminal, receiving an authentication request from the first user terminal , an interface management unit providing a first interface for receiving a query, an answer generating unit generating an answer matching the query when receiving a query through the first interface, and receiving the answer through the second user terminal. If so, it may include an authentication processing unit for authenticating the first user terminal.
본 발명의 제 2 측면에 따르면, 제1사용자단말 및 제2사용자단말 각각과 통신하는 인증 서비스 제공 장치가 인증 서비스를 제공하는 방법으로서, 상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 단계, 상기 제1인터페이스를 통해 질의를 수신하면, 상기 질의에 매칭되는 답변을 생성하는 단계, 및 상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 단계를 포함할 수 있다.According to a second aspect of the present invention, a method for providing an authentication service by an authentication service providing apparatus communicating with each of a first user terminal and a second user terminal, wherein upon receiving an authentication request from the first user terminal, a query is received. providing a first interface for a query, generating an answer matching the query when a query is received through the first interface, and when receiving the answer through the second user terminal, the first user terminal It may include a step of authenticating.
본 발명의 제 3 측면에 따르면, 인증 서비스를 제공하는 방법을 수행하는 프로그램이 기록된 컴퓨터 판독가능한 기록매체로서, 상기 인증 서비스 제공 방법은, 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 단계, 상기 제1인터페이스를 통해 질의를 수신하면, 상기 질의에 매칭되는 답변을 생성하는 단계, 및 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 단계를 포함할 수 있다.According to a third aspect of the present invention, a computer-readable recording medium on which a program for performing a method for providing an authentication service is recorded, wherein the method for providing an authentication service, upon receiving an authentication request from a first user terminal, receives a query. Providing a first interface for, generating an answer matching the query when a query is received through the first interface, and receiving the answer through a second user terminal, the first user terminal An authentication step may be included.
본 발명의 제 4 측면에 따르면, 인증 서비스 제공 장치에 의해 수행되며, 인증 서비스를 제공하는 방법을 수행하기 위해 기록매체에 저장된 컴퓨터 프로그램으로서, 상기 인증 서비스 제공 방법은, 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 단계, 상기 제1인터페이스를 통해 질의를 수신하면, 상기 질의에 매칭되는 답변을 생성하는 단계, 및 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 단계를 포함할 수 있다.According to a fourth aspect of the present invention, a computer program performed by an authentication service providing device and stored in a recording medium for performing an authentication service providing method, wherein the authentication service providing method includes an authentication request from a first user terminal. is received, providing a first interface for receiving a query, generating an answer matching the query when receiving a query through the first interface, and receiving the answer through a second user terminal. , may include authenticating the first user terminal.
전술한 본 발명의 과제 해결 수단 중 어느 하나에 의하면, 본 발명의 일실시예는 인증 서비스 제공 장치 및 인증 서비스 제공 방법을 제시할 수 있다. According to any one of the above-described problem solving means of the present invention, an embodiment of the present invention may provide an authentication service providing device and an authentication service providing method.
또한, 본 발명의 과제 해결 수단 중 어느 하나에 의하면, 복수의 사용자단말을 이용하여 인증을 수행하면서 상기 복수의 사용자단말 각각에 입력하는 정보가 상이함에 따라 보안성이 한층 향상된 인증 서비스 제공 장치 및 인증 서비스 제공 방법을 제시할 수 있다. In addition, according to any one of the problem solving means of the present invention, while performing authentication using a plurality of user terminals, as the information input to each of the plurality of user terminals is different, the authentication service providing device and authentication with improved security How to provide service can be suggested.
아울러 본 발명의 과제 해결 수단 중 어느 하나에 의하면, 보다 간편하게 사용자를 인증할 수 있는 장치 및 방법을 제공할 수 있다.In addition, according to any one of the problem solving means of the present invention, it is possible to provide a device and method capable of authenticating a user more conveniently.
본 발명에서 얻을 수 있는 효과는 이상에서 언급한 효과들로 제한되지 않으며, 언급하지 않은 또 다른 효과들은 아래의 기재로부터 본 발명이 속하는 기술분야에서 통상의 지식을 가진 자에게 명확하게 이해될 수 있을 것이다.The effects obtainable in the present invention are not limited to the effects mentioned above, and other effects not mentioned can be clearly understood by those skilled in the art from the description below. will be.
도 1은 본 발명의 일실시예에 따른 인증시스템의 구성도이다.
도 2는 본 발명의 일실시예에 따른 인증 서비스 제공 장치를 도시한 블록도이다.
도 3은 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 순서도이다.
도 4 내지 도 5는 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 예시도이다.1 is a configuration diagram of an authentication system according to an embodiment of the present invention.
2 is a block diagram illustrating an authentication service providing apparatus according to an embodiment of the present invention.
3 is a flow chart illustrating a method for providing an authentication service according to an embodiment of the present invention.
4 and 5 are exemplary diagrams for explaining an authentication service providing method according to an embodiment of the present invention.
아래에서는 첨부한 도면을 참조하여 본 발명이 속하는 기술 분야에서 통상의 지식을 가진 자가 용이하게 실시할 수 있도록 본 발명의 실시예를 상세히 설명한다. 그러나 본 발명은 여러 가지 상이한 형태로 구현될 수 있으며 여기에서 설명하는 실시예에 한정되지 않는다. 그리고 도면에서 본 발명을 명확하게 설명하기 위해서 설명과 관계없는 부분은 생략하였으며, 명세서 전체를 통하여 유사한 부분에 대해서는 유사한 도면 부호를 붙였다.Hereinafter, embodiments of the present invention will be described in detail so that those skilled in the art can easily practice the present invention with reference to the accompanying drawings. However, the present invention may be embodied in many different forms and is not limited to the embodiments described herein. And in order to clearly explain the present invention in the drawings, parts irrelevant to the description are omitted, and similar reference numerals are attached to similar parts throughout the specification.
명세서 전체에서, 어떤 부분이 다른 부분과 "연결"되어 있다고 할 때, 이는 "직접적으로 연결"되어 있는 경우뿐 아니라, 그 중간에 다른 소자를 사이에 두고 "전기적으로 연결"되어 있는 경우도 포함한다. 또한 어떤 부분이 어떤 구성요소를 "포함"한다고 할 때, 이는 특별히 반대되는 기재가 없는 한 다른 구성요소를 제외하는 것이 아니라 다른 구성요소를 더 포함할 수 있는 것을 의미한다.Throughout the specification, when a part is said to be "connected" to another part, this includes not only the case where it is "directly connected" but also the case where it is "electrically connected" with another element interposed therebetween. . In addition, when a certain component is said to "include", this means that it may further include other components without excluding other components unless otherwise stated.
이하 첨부된 도면을 참고하여 본 발명을 상세히 설명하기로 한다.Hereinafter, the present invention will be described in detail with reference to the accompanying drawings.
도 1은 본 발명의 일실시예에 따른 인증시스템의 구성도이다.1 is a configuration diagram of an authentication system according to an embodiment of the present invention.
도 1에서 도시된 바와 같이, 인증시스템(100)은 제1사용자단말(10), 인증 서비스 제공 장치(20) 및 제2사용자단말(30)를 포함한다.As shown in FIG. 1 , the
본 발명의 일실시예에 따른 인증 서비스 제공 장치(20)는 제1사용자단말(10)로부터의 인증 요청에 대해, 제2사용자단말(30)을 이용하여 제1사용자단말(10)의 인증 또는 불인증 처리를 수행할 수 있다. Authentication
또한 인증 서비스 제공 장치(20)는 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 수행하기에 앞서, 제1사용자단말(10)로부터, 제1사용자단말(10)을 통해 인증을 요청하는 사용자의 사용자정보를 수신하여 저장할 수 있다. In addition, the authentication
관련하여 ‘사용자정보’는 사용자에 매칭되는 사용자계정에 저장될 수 있는 각종 정보를 의미한다. 사용자정보는, 예를 들어, 사용자의 연락처, 사용자의 이름 등과 같은 사용자 식별정보가 포함될 수 있다. 또한 사용자정보는, 인증을 통해서만 접근 가능한 정보, 예를 들어, 사용자가 결제하기 위해 등록한 카드 일련정보, 카드 비밀번호 등이 포함될 수 있다. In this regard, 'user information' refers to various information that can be stored in a user account that matches a user. User information may include, for example, user identification information such as a user's contact information and a user's name. In addition, user information may include information that is accessible only through authentication, for example, card serial information registered by the user for payment, card password, and the like.
인증 서비스 제공 장치(20)는 제1사용자단말(10)을 인증하면 상기 인증에 따른 후속 프로세스가 수행될 수 있도록 사용자정보를 송신할 수 있다. 상기 후속 프로세스가 결제 처리 프로세스라면, 인증 서비스 제공 장치(20)는 상기 사용자정보를, 결제 서버(카드사 서버, 은행사 서버 또는 PG사 서버 등)로 송신하여 결제 처리가 수행되도록 할 수 있다.When the authentication
이와 같은 인증 서비스 제공 장치(20)는, 제1사용자단말(10) 및 제2사용자단말(30) 각각으로 웹 서비스를 제공할 수 있는 웹서버로 구현될 수 있으며, 또는 예를 들어, 포털 사이트 서버이거나, 온라인 쇼핑몰 서버 등 다양한 웹 컨텐츠 프로바이더의 서버 시스템으로도 구현될 수 있다. 또한 인증 서비스 제공 장치(20)는 웹서버를 포함하여 로드밸런싱 서버, 데이터베이스 서버 등 일군의 서버 시스템으로 구현될 수 있음은 물론이다.Such an authentication
한편 인증 서비스 제공 장치(20)는 네트워크(N)를 통해 제1사용자단말(10) 및 제2사용자단말(30) 각각과 통신할 수 있다.Meanwhile, the authentication
이때 네트워크(N)는 근거리 통신망(Local Area Network; LAN), 광역 통신망(Wide Area Network; WAN), 부가가치 통신망(Value Added Network; VAN), 개인 근거리 무선통신(Personal Area Network; PAN), 이동 통신망(mobile radio communication network), Wibro(Wireless Broadband Internet), Mobile WiMAX, HSDPA(High Speed Downlink Packet Access) 위성 통신망, LTE(long term evolution) 망 등과 같은 모든 종류의 유/무선 네트워크로 구현될 수 있다.At this time, the network (N) includes a local area network (LAN), a wide area network (WAN), a value-added network (VAN), a personal area network (PAN), and a mobile communication network. (mobile radio communication network), Wibro (Wireless Broadband Internet), Mobile WiMAX, HSDPA (High Speed Downlink Packet Access) satellite communication network, LTE (Long Term Evolution) network, etc. It can be implemented in all types of wired / wireless networks.
상술된 바와 같은 인증 서비스 제공 장치(20)는 도 2를 참조하여 보다 상세히 후술된다.The authentication
한편 제1사용자단말(10) 및 제2사용자단말(30) 각각은 인증 서비스 제공 장치(20)와 통신하기 위한 클라이언트 프로그램이 설치된 전자단말기로 구현될 수 있다.Meanwhile, each of the
이때 전자단말기는, 사용자와의 인터랙션이 가능한 인터페이스를 포함할 수 있는 컴퓨터나 휴대용 단말기, 텔레비전, 웨어러블 디바이스(Wearable Device) 등으로 구현될 수 있다. 여기서, 컴퓨터는 예를 들어, 웹 브라우저(WEB Browser)가 탑재된 노트북, 데스크톱(desktop), 랩톱(laptop)등을 포함하고, 휴대용 단말기는 예를 들어, 휴대성과 이동성이 보장되는 무선 통신 장치로서, PCS(Personal Communication System), PDC(Personal Digital Cellular), PHS(Personal Handyphone System), PDA(Personal Digital Assistant),GSM(Global System for Mobile communications), IMT(International Mobile Telecommunication)-2000, CDMA(Code Division Multiple Access)-2000, W-CDMA(W-Code Division Multiple Access), Wibro(Wireless Broadband Internet), 스마트폰(Smart Phone), 모바일 WiMAX(Mobile Worldwide Interoperability for Microwave Access) 등과 같은 모든 종류의 핸드헬드(Handheld) 기반의 무선 통신 장치를 포함할 수 있다. 또한, 텔레비전은 IPTV(Internet Protocol Television), 인터넷 TV(Internet Television), 지상파 TV, 케이블 TV 등을 포함할 수 있다. 나아가 웨어러블 디바이스는 예를 들어, 시계, 안경, 액세서리, 의복, 신발 등 인체에 직접 착용 가능한 타입의 정보처리장치로서, 직접 또는 다른 정보처리장치를 통해 네트워크를 경유하여 원격지의 서버에 접속하거나 타 단말과 연결될 수 있다. At this time, the electronic terminal may be implemented as a computer, a portable terminal, a television, a wearable device, or the like that may include an interface capable of interacting with a user. Here, the computer includes, for example, a laptop, desktop, or laptop equipped with a web browser, and the portable terminal is, for example, a wireless communication device that ensures portability and mobility. , PCS(Personal Communication System), PDC(Personal Digital Cellular), PHS(Personal Handyphone System), PDA(Personal Digital Assistant), GSM(Global System for Mobile communications), IMT(International Mobile Telecommunication)-2000, CDMA(Code Division Multiple Access)-2000, W-CDMA (W-Code Division Multiple Access), Wibro (Wireless Broadband Internet), Smart Phone, Mobile WiMAX (Mobile Worldwide Interoperability for Microwave Access), etc. (Handheld)-based wireless communication device may be included. In addition, television may include IPTV (Internet Protocol Television), Internet TV (Internet Television), terrestrial TV, cable TV, and the like. Furthermore, a wearable device is a type of information processing device that can be worn directly on the human body, such as, for example, a watch, glasses, accessories, clothes, shoes, etc. can be connected with
이와 같은 전자단말기로 구현되는 제1사용자단말(10) 및 제2사용자단말(30) 각각은, 서로 상이한 2개의 사용자단말을 구분하여 지칭하기 위해 사용되는 것일 뿐, 특정 기능을 갖는 사용자단말을 지칭하는 것은 아니다. Each of the
한편 본 발명의 일실시예에 따른 인증 서비스 제공 장치(20)는, 네트워크(N)를 통해 서드파티장치(미도시)와도 통신할 수 있다.Meanwhile, the authentication
서드파티장치(미도시)는 인증 서비스 제공 장치(20)가 질의를 송신함에 따라 상기 질의에 대한 답변을 인증 서비스 제공 장치(20)로 전달하는 장치일 수 있으며, 또한, 질의가 수학식인 경우 상기 수학식의 연산을 수행하기 위한 리소스(예를 들어 계산기 모듈 등)를 인증 서비스 제공 장치(20)에게 제공할 수 있는 장치일 수 있다. 이와 같은 서드파티장치(미도시)는 웹서버를 포함하여 로드밸런싱 서버, 데이터베이스 서버 등 일군의 서버 시스템으로 구현될 수 있다.The third party device (not shown) may be a device that transmits an answer to the query to the authentication
한편 도 2는 본 발명의 일실시예에 따른 인증 서비스 제공 장치(20)를 도시한 블록도이다.Meanwhile, FIG. 2 is a block diagram showing an authentication
본 발명의 바람직한 일실시예에 따른 인증 서비스 제공 장치(20)는 질의 수신을 위한 제1인터페이스를 제공하는 인터페이스관리부(210)를 포함한다.An authentication
즉, 인터페이스관리부(210)는, 제1사용자단말(10)로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제1사용자단말(10)로 제공할 수 있다.That is, when receiving an authentication request from the
이때 ‘제1인터페이스’는 사용자가 질의입력을 편리하게 할 수 있도록 제1사용자단말의 화면을 구성하는 인터페이스를 의미한다.In this case, the 'first interface' refers to an interface constituting the screen of the first user terminal so that the user can conveniently input a query.
또한 인터페이스관리부(210)는, 답변 수신을 위한 제2인터페이스를 제2사용자단말(30)로 제공할 수 있다. In addition, the
또한 인터페이스관리부(210)는, 제2사용자단말(30)에 설치되고 제2인터페이스를 제공하는 애플리케이션의 실행을 위한 트리거링신호를, 제2사용자단말(30)로 제공할 수 있다.In addition, the
상기와 같은 트리거링신호를 수신한 제2사용자단말(30)은, 제2사용자단말(30) 상에 설치된 애플리케이션을 실행시켜 제2인터페이스를 제공할 수 있으며, 상기 제2인터페이스의 제공이 종료될 때까지 인증 서비스 제공 장치(20)와 통신채널을 형성하여 제2인터페이스로 수신되는 정보를 인증 서비스 제공 장치(20)로 송신할 수 있다.The
관련하여 ‘제2인터페이스’는 사용자가 답변 입력을 편리하게 할 수 있도록 제2사용자단말의 화면을 구성하는 인터페이스를 의미한다.In relation to the 'second interface' means an interface that configures the screen of the second user terminal so that the user can conveniently enter the answer.
예를 들어 제2인터페이스는, 사용자의 클릭, 터치, 탭 등을 감지함에 따라 숫자 또는 문자 등을 입력 받을 수 있는 인터페이스일 수 있으며, 또한, 제2사용자단말(30)가 휴대용 단말기인 경우 ARS의 음성 안내에 따라 지정된 기간 내에 수신되는 일련의 숫자 또는 문자를 답변으로 획득하는 인터페이스일 수 있다.For example, the second interface may be an interface capable of receiving numbers or letters as it detects a user's click, touch, tap, etc. Also, when the
한편 인터페이스관리부(210)는 제2인터페이스 또는 트리거링신호가 제공될 제2사용자단말을 탐색할 수 있다.Meanwhile, the
예를 들어 인터페이스관리부(210)는, 인증 요청을 송신한 제1사용자단말에 대응되는 사용자계정에 등록된 사용자단말 중 적어도 하나인 제2사용자단말을 탐색할 수 있다.For example, the
또한 예를 들어 인터페이스관리부(210)는, 인증 요청을 송신한 제1사용자단말(10)로부터, 제2사용자단말에 매칭되는 단말식별정보(예를 들어, 제2사용자단말(30)이 휴대용 단말기인 경우 전화번호 등)를 수신하여, 제2사용자단말(30)을 탐색할 수 있다.In addition, for example, the
한편 인증 서비스 제공 장치(20)는, 제1인터페이스를 통해 질의를 수신하면 상기 질의에 매칭되는 답변을 생성하는 답변생성부(220)를 더 포함할 수 있다.Meanwhile, the authentication
답변생성부(220)는 예를 들어 질의가 수학식이면, 상기 수학식을 연산하여 연산된 결과값을 답변으로서 생성할 수 있다.For example, if the query is a mathematical expression, the
또한 답변생성부(220)는 질의에 매칭되는 답변을 서드파티장치(미도시)로 요청하여 획득할 수 있다.In addition, the
예를 들어 서드파티장치(미도시)가 계산기 모듈을 포함하면, 수학식 질의를 서드파티장치(미도시)로 송신하여 그 응답으로서 답변을 획득할 수 있다.For example, if the third party device (not shown) includes a calculator module, a mathematical expression query may be transmitted to the third party device (not shown) and an answer may be obtained as a response.
한편 인증 서비스 제공 장치(20)는, 제2사용자단말(20)을 통해 답변을 수신하면, 제1사용자단말(10)을 인증하는 인증처리부(230)를 더 포함할 수 있다.Meanwhile, the authentication
즉 인증처리부(230)는 제2인터페이스를 통해 수신되는 답변이, 제1인터페이스를 통해 수신된 질의와 매칭되는 답변이라면 제1인터페이스가 제공된 제1사용자단말(10)을 인증할 수 있다.That is, the
반면 제2인터페이스를 통해 수신되는 답변이, 제1인터페이스를 통해 수신된 질의와 매칭되지 못한 답변이라면, 인증처리부(230)는 제1사용자단말(10)을 불인증 처리할 수 있다.On the other hand, if the answer received through the second interface does not match the query received through the first interface, the
한편 도 3은 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 순서도이다. Meanwhile, FIG. 3 is a flowchart illustrating a method of providing an authentication service according to an embodiment of the present invention.
도 3에 도시된 실시예에 따른 인증 서비스 제공 방법은 도 2에 도시된 인증 서비스 제공 장치(20)에서 시계열적으로 처리되는 단계들을 포함한다. 따라서, 이하에서 생략된 내용이라고 하더라도 도 2에 도시된 인증 서비스 제공(20)에 관하여 이상에서 기술한 내용은 도 3에 도시된 실시예에 따른 인증 서비스 제공 방법에도 적용될 수 있다. 도 3은, 도 4 및 도 5를 참조하여 이하에서 서술된다. The authentication service providing method according to the embodiment shown in FIG. 3 includes steps processed time-sequentially in the authentication
제1사용자단말(10) 및 제2사용자단말(30) 각각과 통신하는 인증 서비스 제공 장치(20)는 제1사용자단말(10)로부터 인증 요청을 수신할 수 있다 (S310).The authentication
관련하여 이하에서는 설명의 편의상, 제1사용자단말(10)은 컴퓨터임을 가정하며, 제2사용자단말(30)은 휴대용 단말기임을 가정한다.In relation to the following, for convenience of description, it is assumed that the
인증 요청을 수신한 인증 서비스 제공 장치(20)는 질의 수신을 위한 제1인터페이스를 제1사용자단말(10)로 제공할 수 있다 (S320).Upon receiving the authentication request, the authentication
그리고 인증 서비스 제공 장치(20)는 제1인터페이스를 통해 질의를 수신할 수 있다 (S330).Further, the authentication
관련하여 도 4는, 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 예시도로서, 인증 서비스 제공 장치와 통신하는 제1사용자단말(10)의 화면(400)을 통해 나타나는 제1인터페이스의 일례를 도시한 것이다.In relation to FIG. 4, as an exemplary diagram for explaining an authentication service providing method according to an embodiment of the present invention, a first appearing through the
도 4에서 도시된 바와 같이, 인증 서비스 제공 장치(20)는 사용자로부터 질의를 입력 받을 수 있는 제1인터페이스(410, 420)를 제공할 수 있다.As shown in FIG. 4 , the authentication
제1인터페이스는 예를 들어, 제1사용자단말(10)의 화면 일 측에는 각 연산자 또는 숫자 입력을 통해 수학식을 입력할 수 있는 인터페이스(420)를 포함하고, 또한 제1사용자단말(10)의 화면 타측에는 상기 인터페이스(420)를 통해 입력된 수학식을 표시하는 인터페이스(410)를 포함하여 사용자로 하여금 자신이 입력한 수학식을 확인할 수 있도록 한다. The first interface includes, for example, an
한편 인증 서비스 제공 장치(20)는 질의에 매칭되는 답변을 생성할 수 있다 (S340).Meanwhile, the authentication
즉 도 4에 도시된 바와 같이 사용자가 수학식을 입력하면, 상기 수학식을 연산하여, 인증 서비스 제공 장치(20)는 질의에 매칭되는 답변이 ‘55’임을 연산할 수 있다.That is, as shown in FIG. 4 , when a user inputs a mathematical expression, the authentication
그리고 인증 서비스 제공 장치(20)는 제2사용자단말(30)로 제2인터페이스를 제공할 수 있다. Also, the authentication
또한 인증 서비스 제공 장치(20)는 제2사용자단말(30) 상에 설치되고 답변 수신을 위한 제2인터페이스를 제공하는 애플리케이션을 실행시킬 수 있는 트리거링신호를, 제2사용자단말(30)로 제공할 수 있다.In addition, the authentication
이때 인증 서비스 제공 장치(20)는 질의에 매칭되는 답변을 생성하고 난 이후 제2인터페이스(또는 트리거링신호)를 제공할 수 있으며, 또한 질의에 매칭되는 답변을 생성하면서 제2인터페이스(또는 트리거링신호)를 제공할 수 있다.At this time, the authentication
그리고 인증 서비스 제공 장치(20)는 상기 제2인터페이스를 통해 정보를 수신할 수 있다 (S350).Further, the authentication
이때 제2인터페이스는, 제2사용자단말(30)로 ARS 음성 안내를 진행하여 음성 안내에 따라 지정된 기간 내에 수신한 정보를 획득할 수 있다. 또한 제2인터페이스는 제2사용자단말(30)를 통해 사용자의 클릭, 터치, 탭 등을 감지함에 따라 제2사용자단말(30)에 대해 입력되는 정보를 획득할 수 있다.At this time, the second interface may proceed with ARS voice guidance to the
이와 같이 제2인터페이스가 획득된 정보가 답변과 상이한 정보이면, 인증 서비스 제공 장치(20)는 제1사용자단말을 불인증 처리할 수 있으며 (S360), 또한 제2인터페이스가 획득된 정보가 답변과 동일한 정보이면 제1사용자단말을 인증 처리 할 수 있다 (S370).In this way, if the information obtained by the second interface is different from the answer, the authentication
관련하여 도 5는, 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 예시도로서, 인증 서비스 제공 장치(20)와 통신하는 제2사용자단말(30)의 화면(500)을 통해 나타나는 제2인터페이스의 일례를 도시한 것이다.In relation to FIG. 5, as an exemplary diagram for explaining an authentication service providing method according to an embodiment of the present invention, through a
도 5에서 도시된 바와 같이, 인증 서비스 제공 장치(20)는 사용자로부터 답변을 입력 받을 수 있는 제2인터페이스(510)를 제공할 수 있다. 그리고 제2사용자단말(30)은 제2인터페이스(510)를 통해 사용자로부터 정보를 입력 받을 수 있다.As shown in FIG. 5 , the authentication
따라서 인증 서비스 제공 장치(20)는, 도 5에서 도시된 바와 같이 질의에 대한 답변으로서 ‘55’를 제2인터페이스(510)를 통해 수신하면 제1사용자단말(10)을 인증할 수 있으며, 예를 들어, 질의에 대한 답변으로서 정답인 ‘55’와 상이한 ‘56’을 입력 받으면, 제1사용자단말(10)을 불인증할 수 있다.Therefore, the authentication
즉 본 발명의 일실시예에 따른 인증 서비스 제공 방법에 따르면, 제1사용자단말 및 제2사용자단말 각각에 입력하는 정보가 상이함에 따라 사용자 인증 보안성이 한층 향상될 수 있다. 더욱이, 본 발명의 일실시예에 따른 인증 서비스 제공 방법에 따르면, 사용자를 보다 간편하게 인증할 수 있는데, 예를 들어 질의가 수학식인 경우 수학식을 사용자가 직접 입력함에 따라 수학식의 난이도를 사용자가 스스로 설정할 수 있으며, 또한, 수학식의 답변이 숫자임에 따라 사용자는 간단한 숫자 입력 만으로도 인증을 받을 수 있다.That is, according to the authentication service providing method according to an embodiment of the present invention, user authentication security can be further improved as information input to each of the first user terminal and the second user terminal is different. Moreover, according to the authentication service providing method according to an embodiment of the present invention, it is possible to more easily authenticate a user. For example, when a query is a mathematical expression, the user directly inputs the mathematical expression so that the user can determine the degree of difficulty of the mathematical expression. It can be set by itself, and since the answer of the mathematical expression is a number, the user can be authenticated by simply entering a number.
한편 상술된 인증 서비스 제공 방법에 따라 인증 처리된 제1사용자단말(10)이, 예를 들어 결제서버(미도시)에서의 결제 처리를 위해 인증을 요청한 경우, 인증 서비스 제공 장치(20)는, 인증 처리된 제1사용자단말(10)에 대응되는 사용자정보를 결제서버(미도시)로 송신할 수 있다.On the other hand, when the
본 실시예에서 사용되는 '~부'라는 용어는 소프트웨어 또는 FPGA(field programmable gate array) 또는 ASIC 와 같은 하드웨어 구성요소를 의미하며, '~부'는 어떤 역할들을 수행한다. 그렇지만 '~부'는 소프트웨어 또는 하드웨어에 한정되는 의미는 아니다. '~부'는 어드레싱할 수 있는 저장 매체에 있도록 구성될 수도 있고 하나 또는 그 이상의 프로세서들을 재생시키도록 구성될 수도 있다. 따라서, 일 예로서 '~부'는 소프트웨어 구성요소들, 객체지향 소프트웨어 구성요소들, 클래스 구성요소들 및 태스크 구성요소들과 같은 구성요소들과, 프로세스들, 함수들, 속성들, 프로시저들, 서브루틴들, 프로그램특허 코드의 세그먼트들, 드라이버들, 펌웨어, 마이크로코드, 회로, 데이터, 데이터베이스, 데이터 구조들, 테이블들, 어레이들, 및 변수들을 포함한다.The term '~unit' used in this embodiment means software or a hardware component such as a field programmable gate array (FPGA) or ASIC, and '~unit' performs certain roles. However, '~ part' is not limited to software or hardware. '~bu' may be configured to be in an addressable storage medium and may be configured to reproduce one or more processors. Therefore, as an example, '~unit' refers to components such as software components, object-oriented software components, class components, and task components, processes, functions, properties, and procedures. , subroutines, segments of program patent code, drivers, firmware, microcode, circuitry, data, databases, data structures, tables, arrays, and variables.
구성요소들과 '~부'들 안에서 제공되는 기능은 더 작은 수의 구성요소들 및 '~부'들로 결합되거나 추가적인 구성요소들과 '~부'들로부터 분리될 수 있다.Functions provided within components and '~units' may be combined into smaller numbers of components and '~units' or separated from additional components and '~units'.
뿐만 아니라, 구성요소들 및 '~부'들은 디바이스 또는 보안 멀티미디어카드 내의 하나 또는 그 이상의 CPU 들을 재생시키도록 구현될 수도 있다In addition, components and '~units' may be implemented to play one or more CPUs in a device or a secure multimedia card.
도 3을 통해 설명된 실시예에 따른 인증 서비스 제공 방법은 컴퓨터에 의해 실행되는 프로그램 모듈과 같은 컴퓨터에 의해 실행가능한 명령어를 포함하는 기록 매체의 형태로도 구현될 수 있다. 컴퓨터 판독 가능 매체는 컴퓨터에 의해 접근될 수 있는 임의의 가용 매체일 수 있고, 휘발성 및 비휘발성 매체, 분리형 및 비분리형 매체를 모두 포함한다. 또한, 컴퓨터 판독가능 매체는 컴퓨터 저장 매체 및 통신 매체를 모두 포함할 수 있다. 컴퓨터 저장 매체는 컴퓨터 판독가능 명령어, 데이터 구조, 프로그램 모듈 또는 기타 데이터와 같은 정보의 저장을 위한 임의의 방법 또는 기술로 구현된 휘발성 및 비휘발성, 분리형 및 비분리형 매체를 모두 포함한다. 통신 매체는 전형적으로 컴퓨터 판독가능 명령어, 데이터 구조, 프로그램 모듈, 또는 반송파와 같은 변조된 데이터 신호의 기타 데이터, 또는 기타 전송 메커니즘을 포함하며, 임의의 정보 전달 매체를 포함한다. The authentication service providing method according to the embodiment described with reference to FIG. 3 may be implemented in the form of a recording medium including instructions executable by a computer, such as program modules executed by a computer. Computer readable media can be any available media that can be accessed by a computer and includes both volatile and nonvolatile media, removable and non-removable media. Also, computer readable media may include both computer storage media and communication media. Computer storage media includes both volatile and nonvolatile, removable and non-removable media implemented in any method or technology for storage of information such as computer readable instructions, data structures, program modules or other data. Communication media typically includes computer readable instructions, data structures, program modules, or other data in a modulated data signal such as a carrier wave, or other transport mechanism, and includes any information delivery media.
또한 본 발명의 일실시예에 따르는 인증 서비스 제공 방법은 컴퓨터에 의해 실행 가능한 명령어를 포함하는 컴퓨터 프로그램(또는 컴퓨터 프로그램 제품)으로 구현될 수도 있다. 컴퓨터 프로그램은 프로세서에 의해 처리되는 프로그래밍 가능한 기계 명령어를 포함하고, 고레벨 프로그래밍 언어(High-level Programming Language), 객체 지향 프로그래밍 언어(Object-oriented Programming Language), 어셈블리 언어 또는 기계 언어 등으로 구현될 수 있다. 또한 컴퓨터 프로그램은 유형의 컴퓨터 판독가능 기록매체(예를 들어, 메모리, 하드디스크, 자기/광학 매체 또는 SSD(Solid-State Drive) 등)에 기록될 수 있다. In addition, the authentication service providing method according to an embodiment of the present invention may be implemented as a computer program (or computer program product) including instructions executable by a computer. A computer program includes programmable machine instructions processed by a processor and may be implemented in a high-level programming language, object-oriented programming language, assembly language, or machine language. . Also, the computer program may be recorded on a tangible computer-readable recording medium (eg, a memory, a hard disk, a magnetic/optical medium, or a solid-state drive (SSD)).
따라서 본 발명의 일실시예에 따르는 인증 서비스 제공 방법은 상술한 바와 같은 컴퓨터 프로그램이 컴퓨팅 장치에 의해 실행됨으로써 구현될 수 있다. 컴퓨팅 장치는 프로세서와, 메모리와, 저장 장치와, 메모리 및 고속 확장포트에 접속하고 있는 고속 인터페이스와, 저속 버스와 저장 장치에 접속하고 있는 저속 인터페이스 중 적어도 일부를 포함할 수 있다. 이러한 성분들 각각은 다양한 버스를 이용하여 서로 접속되어 있으며, 공통 머더보드에 탑재되거나 다른 적절한 방식으로 장착될 수 있다. Therefore, the authentication service providing method according to an embodiment of the present invention can be implemented by executing the computer program as described above by a computing device. A computing device may include at least some of a processor, a memory, a storage device, a high-speed interface connected to the memory and a high-speed expansion port, and a low-speed interface connected to a low-speed bus and a storage device. Each of these components are connected to each other using various buses and may be mounted on a common motherboard or mounted in any other suitable manner.
여기서 프로세서는 컴퓨팅 장치 내에서 명령어를 처리할 수 있는데, 이런 명령어로는, 예컨대 고속 인터페이스에 접속된 디스플레이처럼 외부 입력, 출력 장치상에 GUI(Graphic User Interface)를 제공하기 위한 그래픽 정보를 표시하기 위해 메모리나 저장 장치에 저장된 명령어를 들 수 있다. 다른 실시예로서, 다수의 프로세서 및(또는) 다수의 버스가 적절히 다수의 메모리 및 메모리 형태와 함께 이용될 수 있다. 또한 프로세서는 독립적인 다수의 아날로그 및(또는) 디지털 프로세서를 포함하는 칩들이 이루는 칩셋으로 구현될 수 있다. Here, the processor may process commands within the computing device, for example, to display graphic information for providing a GUI (Graphic User Interface) on an external input/output device, such as a display connected to a high-speed interface. Examples include instructions stored in memory or storage devices. As another example, multiple processors and/or multiple buses may be used along with multiple memories and memory types as appropriate. Also, the processor may be implemented as a chipset comprising chips including a plurality of independent analog and/or digital processors.
또한 메모리는 컴퓨팅 장치 내에서 정보를 저장한다. 일례로, 메모리는 휘발성 메모리 유닛 또는 그들의 집합으로 구성될 수 있다. 다른 예로, 메모리는 비휘발성 메모리 유닛 또는 그들의 집합으로 구성될 수 있다. 또한 메모리는 예컨대, 자기 혹은 광 디스크와 같이 다른 형태의 컴퓨터 판독 가능한 매체일 수도 있다. Memory also stores information within the computing device. In one example, the memory may consist of a volatile memory unit or a collection thereof. As another example, the memory may be composed of a non-volatile memory unit or a collection thereof. Memory may also be another form of computer readable medium, such as, for example, a magnetic or optical disk.
그리고 저장장치는 컴퓨팅 장치에게 대용량의 저장공간을 제공할 수 있다. 저장 장치는 컴퓨터 판독 가능한 매체이거나 이런 매체를 포함하는 구성일 수 있으며, 예를 들어 SAN(Storage Area Network) 내의 장치들이나 다른 구성도 포함할 수 있고, 플로피 디스크 장치, 하드 디스크 장치, 광 디스크 장치, 혹은 테이프 장치, 플래시 메모리, 그와 유사한 다른 반도체 메모리 장치 혹은 장치 어레이일 수 있다. Also, the storage device may provide a large amount of storage space to the computing device. A storage device may be a computer-readable medium or a component that includes such a medium, and may include, for example, devices in a storage area network (SAN) or other components, such as a floppy disk device, a hard disk device, an optical disk device, or a tape device, flash memory, or other semiconductor memory device or device array of the like.
전술한 본 발명의 설명은 예시를 위한 것이며, 본 발명이 속하는 기술분야의 통상의 지식을 가진 자는 본 발명의 기술적 사상이나 필수적인 특징을 변경하지 않고서 다른 구체적인 형태로 쉽게 변형이 가능하다는 것을 이해할 수 있을 것이다. 그러므로 이상에서 기술한 실시예들은 모든 면에서 예시적인 것이며 한정적이 아닌 것으로 이해해야만 한다. 예를 들어, 단일형으로 설명되어 있는 각 구성 요소는 분산되어 실시될 수도 있으며, 마찬가지로 분산된 것으로 설명되어 있는 구성 요소들도 결합된 형태로 실시될 수 있다.The above description of the present invention is for illustrative purposes, and those skilled in the art can understand that it can be easily modified into other specific forms without changing the technical spirit or essential features of the present invention. will be. Therefore, the embodiments described above should be understood as illustrative in all respects and not limiting. For example, each component described as a single type may be implemented in a distributed manner, and similarly, components described as distributed may be implemented in a combined form.
본 발명의 범위는 상기 상세한 설명보다는 후술하는 특허청구범위에 의하여 나타내어지며, 특허청구범위의 의미 및 범위 그리고 그 균등 개념으로부터 도출되는 모든 변경 또는 변형된 형태가 본 발명의 범위에 포함되는 것으로 해석되어야 한다.The scope of the present invention is indicated by the following claims rather than the detailed description above, and all changes or modifications derived from the meaning and scope of the claims and equivalent concepts should be construed as being included in the scope of the present invention. do.
10: 제1사용자단말 20: 인증 서비스 제공 장치
30: 사용자단말
210: 인터페이스관리부 220: 답변생성부
230: 인증처리부10: first user terminal 20: authentication service providing device
30: user terminal
210: Interface management unit 220: Answer generation unit
230: authentication processing unit
Claims (11)
상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를, 상기 제1사용자단말을 통해 제공하는 인터페이스관리부;
상기 제1인터페이스를 통해 질의를 수신하면 상기 질의에 매칭되는 답변을 생성하는 답변생성부; 및
상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 인증처리부를 포함하고,
상기 인터페이스관리부는 추가적으로,
상기 제1인터페이스를 통해 질의를 수신하면, 상기 제2사용자단말 상에 설치되고 상기 답변 수신을 위한 제2인터페이스를 제공하는 애플리케이션의 실행을 위한 트리거링신호를, 상기 제2사용자단말로 제공하는, 인증 서비스 제공 장치.An authentication service providing device communicating with each of a first user terminal and a second user terminal,
an interface manager for providing a first interface for receiving a query through the first user terminal when an authentication request is received from the first user terminal;
an answer generator configured to generate an answer matching the query when a query is received through the first interface; and
When receiving the answer through the second user terminal, including an authentication processing unit for authenticating the first user terminal,
The interface management unit additionally,
When a query is received through the first interface, a triggering signal for execution of an application installed on the second user terminal and providing a second interface for receiving the answer is provided to the second user terminal, authentication Service Provisioning Device.
상기 인터페이스관리부는 추가적으로,
상기 제1인터페이스를 통해 질의를 수신하면, 상기 제2사용자단말로 상기 답변 수신을 위한 제2인터페이스를 제공하는, 인증 서비스 제공 장치.According to claim 1
The interface management unit additionally,
When a query is received through the first interface, providing a second interface for receiving the answer to the second user terminal, authentication service providing apparatus.
상기 제1인터페이스는 수학식 입력이 가능하도록 구성되며,
상기 질의에 대한 답변은 상기 수학식의 연산 결과값인, 인증 서비스 제공 장치.According to claim 1,
The first interface is configured to allow mathematical expression input,
An answer to the query is an operation result value of the mathematical expression, the authentication service providing device.
상기 인증 서비스 제공 장치는 네트워크를 통해 서드파티장치와 통신하며,
상기 답변생성부는 추가적으로,
상기 질의에 매칭되는 답변을 상기 서드파티장치로부터 획득하는, 인증 서비스 제공 장치. According to claim 1,
The authentication service providing device communicates with a third party device through a network,
The answer generation unit additionally,
An authentication service providing device that obtains an answer matching the query from the third party device.
상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를, 상기 제1사용자단말을 통해 제공하는 단계;
상기 제1인터페이스를 통해 질의를 수신하면, 상기 질의에 매칭되는 답변을 생성하되, 상기 제2사용자단말로, 상기 제2사용자단말 상에 설치되고 상기 답변 수신을 위한 제2인터페이스를 제공하는 애플리케이션의 실행을 위한 트리거링신호를 제공하는 단계; 및
상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 단계를 포함하는, 인증 서비스 제공 방법.A method in which an authentication service providing device communicating with each of a first user terminal and a second user terminal provides an authentication service,
providing a first interface for receiving a query through the first user terminal when receiving an authentication request from the first user terminal;
When a query is received through the first interface, an answer matching the query is generated, but as the second user terminal, the application installed on the second user terminal and providing a second interface for receiving the answer providing a triggering signal for execution; and
When receiving the answer through the second user terminal, comprising the step of authenticating the first user terminal, authentication service providing method.
상기 제2사용자단말로, 상기 답변 수신을 위한 제2인터페이스를 제공하는 단계를 더 포함하는, 인증 서비스 제공 방법.According to claim 6,
To the second user terminal, further comprising providing a second interface for receiving the answer, authentication service providing method.
상기 제1인터페이스는 수학식 입력이 가능하도록 구성되며,
상기 질의에 대한 답변은 상기 수학식의 연산 결과값인, 인증 서비스 제공 방법.According to claim 6,
The first interface is configured to allow mathematical expression input,
The method of providing authentication service, wherein the answer to the query is an operation result value of the mathematical expression.
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| KR1020150134303A KR102503526B1 (en) | 2015-09-23 | 2015-09-23 | Apparatus and method for providing authentication service |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| KR1020150134303A KR102503526B1 (en) | 2015-09-23 | 2015-09-23 | Apparatus and method for providing authentication service |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| KR20170035460A KR20170035460A (en) | 2017-03-31 |
| KR102503526B1 true KR102503526B1 (en) | 2023-02-23 |
Family
ID=58500815
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| KR1020150134303A Active KR102503526B1 (en) | 2015-09-23 | 2015-09-23 | Apparatus and method for providing authentication service |
Country Status (1)
| Country | Link |
|---|---|
| KR (1) | KR102503526B1 (en) |
Families Citing this family (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR101991313B1 (en) * | 2017-10-18 | 2019-06-20 | 주식회사 넥슨코리아 | Apparatus, method and computer program for user uthentification |
| KR102006333B1 (en) * | 2018-12-28 | 2019-10-01 | 정경채 | Method and apparatus for computational authentication |
| KR101998650B1 (en) * | 2019-02-12 | 2019-07-10 | 한방유비스 주식회사 | Collecting information management system of report of disaster |
Citations (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR100735445B1 (en) * | 2004-10-06 | 2007-07-04 | 삼성전자주식회사 | Personal authentication information management method of subscriber authentication module card inserted in mobile terminal |
| JP2007179212A (en) * | 2005-12-27 | 2007-07-12 | Kosugi Masami | Log-in authentication system |
Family Cites Families (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR100986926B1 (en) * | 2008-05-30 | 2010-10-08 | 주식회사 네오플 | Password input method and device through calculation |
| KR101280034B1 (en) * | 2011-08-26 | 2013-07-01 | 경북대학교 산학협력단 | Location―based bi―directional q&a and real―time audience response acquisition and alerting system |
-
2015
- 2015-09-23 KR KR1020150134303A patent/KR102503526B1/en active Active
Patent Citations (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR100735445B1 (en) * | 2004-10-06 | 2007-07-04 | 삼성전자주식회사 | Personal authentication information management method of subscriber authentication module card inserted in mobile terminal |
| JP2007179212A (en) * | 2005-12-27 | 2007-07-12 | Kosugi Masami | Log-in authentication system |
Also Published As
| Publication number | Publication date |
|---|---|
| KR20170035460A (en) | 2017-03-31 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US11055385B2 (en) | Multi-factor user authentication framework using asymmetric key | |
| US10904234B2 (en) | Systems and methods of device based customer authentication and authorization | |
| US10348715B2 (en) | Computer-implemented systems and methods of device based, internet-centric, authentication | |
| US10038690B2 (en) | Multifactor authentication processing using two or more devices | |
| US20150180869A1 (en) | Cloud-based scalable authentication for electronic devices | |
| US20180254904A1 (en) | Integrated authentication system for authentication using single-use random numbers | |
| US9374360B2 (en) | System and method for single-sign-on in virtual desktop infrastructure environment | |
| US10127317B2 (en) | Private cloud API | |
| CN113079134A (en) | Mobile terminal access method, mobile terminal access device, computer equipment and medium | |
| US20170357799A1 (en) | Tracking and managing multiple time-based one-time password (TOTP) accounts | |
| US11895111B2 (en) | Systems and methods of application single sign on | |
| US9191386B1 (en) | Authentication using one-time passcode and predefined swipe pattern | |
| US10083282B2 (en) | Operating system based authentication | |
| US9235696B1 (en) | User authentication using a portable mobile device | |
| US9621546B2 (en) | Method of generating one-time password and apparatus for performing the same | |
| KR102503526B1 (en) | Apparatus and method for providing authentication service | |
| US10461932B2 (en) | Method and system for digital signature-based adjustable one-time passwords | |
| KR20140023085A (en) | A method for user authentication, a authentication server and a user authentication system | |
| EP3163490B1 (en) | Providing security assurance information | |
| KR102445583B1 (en) | Authentication device and method | |
| KR101875257B1 (en) | Mobile authentication and/or moile payment method using near wireless communication with host computer | |
| KR101594315B1 (en) | Service providing method and server using third party's authentication |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| PA0109 | Patent application |
St.27 status event code: A-0-1-A10-A12-nap-PA0109 |
|
| PG1501 | Laying open of application |
St.27 status event code: A-1-1-Q10-Q12-nap-PG1501 |
|
| P22-X000 | Classification modified |
St.27 status event code: A-2-2-P10-P22-nap-X000 |
|
| PA0201 | Request for examination |
St.27 status event code: A-1-2-D10-D11-exm-PA0201 |
|
| D13-X000 | Search requested |
St.27 status event code: A-1-2-D10-D13-srh-X000 |
|
| D14-X000 | Search report completed |
St.27 status event code: A-1-2-D10-D14-srh-X000 |
|
| E902 | Notification of reason for refusal | ||
| PE0902 | Notice of grounds for rejection |
St.27 status event code: A-1-2-D10-D21-exm-PE0902 |
|
| T11-X000 | Administrative time limit extension requested |
St.27 status event code: U-3-3-T10-T11-oth-X000 |
|
| AMND | Amendment | ||
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| E601 | Decision to refuse application | ||
| PE0601 | Decision on rejection of patent |
St.27 status event code: N-2-6-B10-B15-exm-PE0601 |
|
| X091 | Application refused [patent] | ||
| AMND | Amendment | ||
| E13-X000 | Pre-grant limitation requested |
St.27 status event code: A-2-3-E10-E13-lim-X000 |
|
| P11-X000 | Amendment of application requested |
St.27 status event code: A-2-2-P10-P11-nap-X000 |
|
| P13-X000 | Application amended |
St.27 status event code: A-2-2-P10-P13-nap-X000 |
|
| PX0901 | Re-examination |
St.27 status event code: A-2-3-E10-E12-rex-PX0901 |
|
| PX0701 | Decision of registration after re-examination |
St.27 status event code: A-3-4-F10-F13-rex-PX0701 |
|
| X701 | Decision to grant (after re-examination) | ||
| GRNT | Written decision to grant | ||
| PR0701 | Registration of establishment |
St.27 status event code: A-2-4-F10-F11-exm-PR0701 |
|
| PR1002 | Payment of registration fee |
St.27 status event code: A-2-2-U10-U11-oth-PR1002 Fee payment year number: 1 |
|
| PG1601 | Publication of registration |
St.27 status event code: A-4-4-Q10-Q13-nap-PG1601 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 4 |
|
| U11 | Full renewal or maintenance fee paid |
Free format text: ST27 STATUS EVENT CODE: A-4-4-U10-U11-OTH-PR1001 (AS PROVIDED BY THE NATIONAL OFFICE) Year of fee payment: 4 |