KR20170035460A - Apparatus and method for providing authentication service - Google Patents

Apparatus and method for providing authentication service Download PDF

Info

Publication number
KR20170035460A
KR20170035460A KR1020150134303A KR20150134303A KR20170035460A KR 20170035460 A KR20170035460 A KR 20170035460A KR 1020150134303 A KR1020150134303 A KR 1020150134303A KR 20150134303 A KR20150134303 A KR 20150134303A KR 20170035460 A KR20170035460 A KR 20170035460A
Authority
KR
South Korea
Prior art keywords
user terminal
interface
answer
authentication service
receiving
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
KR1020150134303A
Other languages
Korean (ko)
Other versions
KR102503526B1 (en
Inventor
김도연
Original Assignee
주식회사 넥슨코리아
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 주식회사 넥슨코리아 filed Critical 주식회사 넥슨코리아
Priority to KR1020150134303A priority Critical patent/KR102503526B1/en
Publication of KR20170035460A publication Critical patent/KR20170035460A/en
Application granted granted Critical
Publication of KR102503526B1 publication Critical patent/KR102503526B1/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/382Payment protocols; Details thereof insuring higher security of transaction
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials

Landscapes

  • Engineering & Computer Science (AREA)
  • Business, Economics & Management (AREA)
  • Computer Security & Cryptography (AREA)
  • Accounting & Taxation (AREA)
  • Physics & Mathematics (AREA)
  • Strategic Management (AREA)
  • Finance (AREA)
  • General Business, Economics & Management (AREA)
  • General Physics & Mathematics (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Telephonic Communication Services (AREA)

Abstract

본 발명은 인증 서비스 제공 장치 및 인증 서비스 제공 방법에 관한 것이다. 본 발명의 제 1 측면에 따르면, 제1사용자단말 및 제2사용자단말 각각과 통신하는 인증 서비스 제공 장치로서, 상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 인터페이스관리부, 상기 제1인터페이스를 통해 질의를 수신하면 상기 질의에 매칭되는 답변을 생성하는 답변생성부, 및 상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 인증처리부를 포함할 수 있다.The present invention relates to an authentication service providing apparatus and a method of providing an authentication service. According to a first aspect of the present invention, there is provided an apparatus for providing an authentication service communicating with a first user terminal and a second user terminal, the apparatus comprising: a first interface for receiving a query when receiving an authentication request from the first user terminal An interface management unit configured to receive an inquiry through the first interface and generate an answer matched with the inquiry when the inquiry is received through the first interface; . ≪ / RTI >

Description

인증 서비스 제공 장치 및 인증 서비스 제공 방법{APPARATUS AND METHOD FOR PROVIDING AUTHENTICATION SERVICE}[0001] APPARATUS AND METHOD FOR PROVIDING AUTHENTICATION SERVICE [0002]

본 발명은 인증 서비스 제공 장치 및 인증 서비스 제공 방법에 관한 것으로, 보다 상세하게는, 복수 개의 사용자단말을 이용하여 보다 안전하면서도 간편하게 사용자를 인증하는 장치 및 방법에 관한 것이다.The present invention relates to an authentication service providing apparatus and an authentication service providing method, and more particularly, to an apparatus and a method for more securely and easily authenticating a user by using a plurality of user terminals.

최근 들어 전자상거래가 활발해짐에 따라 보다 안전하게 결제하는 방법에 관한 연구가 활발해지고 있다. Recently, as e-commerce becomes more active, studies on safer settlement methods have become active.

관련하여, 결제 시 이용되는 사용자정보는 외부에 절대 유출되지 않아야 하는 민감한 정보를 포함하고 있는 경우가 대부분이다. 따라서 사용자정보가 사용자 본인에 한해 이용될 수 있도록, 해당 사용자정보를 요청하는 자가 정당한 권원이 있는 자인지를 인증하는 기술의 개발이 필요하게 되었다.In this regard, most of the user information used at the time of payment includes sensitive information that should never be leaked to the outside. Therefore, it has become necessary to develop a technique for certifying that the user who requests the user information has a legitimate authority so that the user information can be used only by the user.

이러한 일환으로 개발된 종래 기술은, 사용자로 하여금 사용자정보에 접근하기 위한 비밀번호를 설정하도록 하고, 해당 비밀번호를 입력해야지만 사용자정보에 접근할 수 있도록 하였다. 이와 같이 비밀번호를 이용하여 사용자를 인증하는 종래 기술은, 사용자가 실수로 비밀번호를 외부에 노출시키거나, 또는 해킹 등으로 인해 비밀번호가 유출되면, 사용자정보에 접근할 권한이 없는 제3자가 비밀번호를 입력하여 사용자정보에 접근할 수 있는 문제점이 있었다.The conventional technology developed in this way allows the user to set a password for accessing user information and access the user information only by inputting the corresponding password. In the conventional technology for authenticating a user using a password, when a user accidentally exposes a password to the outside or a password is leaked due to hacking or the like, a third party who is not authorized to access the user information inputs a password So that the user information can be accessed.

이에 또 다른 종래기술은, 공인 인증서를 기반으로 공인된 인증기관을 통해 고객을 인증하였다. 이와 같은 종래기술에 따른 인증 방법은, 비밀번호를 이용한 인증 방법보다 상대적으로 안전하나, 키 스트로크 수단을 이용한 해킹과 피싱을 통한 공인 인증서 비밀번호의 불법적 획득을 방지할 수 없다는 문제점이 있었으며, 또한 공인 인증서 이용을 위한 프로그램이 사용자단말에 별도로 설치되어 있어야 함에 따라 인증절차가 복잡해지는 문제점이 있었다.Another conventional technology has authenticated a customer through an authorized certification authority based on an authorized certificate. Such an authentication method according to the related art is relatively more secure than an authentication method using a password, but there is a problem in that illegal acquisition of an authorized certificate password through hacking and phishing using the keystroke means can not be prevented. Also, There is a problem that the authentication procedure becomes complicated due to the fact that a program for the authentication is installed separately in the user terminal.

관련하여 선행기술 문헌인 한국특허공개번호 제10-2011-0042621 호에서는 인증 서비스를 제공하는 방법에 대해 기술하고 있다. 그러나 선행기술 문헌에서는 공인인증서를 이용하여 사용자를 인증하는 복잡한 방식을 제시할 뿐이어서, 여전히 간단하면서도 안전하게 사용자를 인증하기 위한 기술의 개발이 필요하게 되었다.Korean Patent Laid-Open No. 10-2011-0042621, which is related to the prior art, describes a method for providing an authentication service. However, the prior art document merely suggests a complicated method of authenticating a user using a public certificate, so that it is still necessary to develop a technique for authenticating a user simply and safely.

한편, 전술한 배경기술은 발명자가 본 발명의 도출을 위해 보유하고 있었거나, 본 발명의 도출 과정에서 습득한 기술 정보로서, 반드시 본 발명의 출원 전에 일반 공중에게 공개된 공지기술이라 할 수는 없다.On the other hand, the background art described above is technical information acquired by the inventor for the derivation of the present invention or obtained in the derivation process of the present invention, and can not necessarily be a known technology disclosed to the general public before the application of the present invention .

본 발명의 일실시예는, 인증 서비스 제공 장치 및 인증 서비스 제공 방법을 제시하는 데에 목적이 있다. An embodiment of the present invention is directed to an authentication service providing apparatus and a method of providing an authentication service.

상술한 기술적 과제를 달성하기 위한 기술적 수단으로서, 본 발명의 제 1 측면에 따르면, 제1사용자단말 및 제2사용자단말 각각과 통신하는 인증 서비스 제공 장치로서, 상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 인터페이스관리부, 상기 제1인터페이스를 통해 질의를 수신하면 상기 질의에 매칭되는 답변을 생성하는 답변생성부, 및 상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 인증처리부를 포함할 수 있다.According to a first aspect of the present invention, there is provided an authentication service providing apparatus for communicating with a first user terminal and a second user terminal, the authentication service providing apparatus comprising: An interface management unit for providing a first interface for receiving a query, an answer generator for generating an answer matched with the query upon receiving a query through the first interface, And an authentication processing unit for authenticating the first user terminal.

본 발명의 제 2 측면에 따르면, 제1사용자단말 및 제2사용자단말 각각과 통신하는 인증 서비스 제공 장치가 인증 서비스를 제공하는 방법으로서, 상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 단계, 상기 제1인터페이스를 통해 질의를 수신하면, 상기 질의에 매칭되는 답변을 생성하는 단계, 및 상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 단계를 포함할 수 있다.According to a second aspect of the present invention, there is provided a method of providing an authentication service by an authentication service providing apparatus communicating with a first user terminal and a second user terminal, the method comprising: receiving an authentication request from the first user terminal; The method comprising: providing a first interface for the first user terminal, receiving an inquiry through the first interface, generating an answer matched to the query, and upon receiving the answer via the second user terminal, Lt; / RTI >

본 발명의 제 3 측면에 따르면, 인증 서비스를 제공하는 방법을 수행하는 프로그램이 기록된 컴퓨터 판독가능한 기록매체로서, 상기 인증 서비스 제공 방법은, 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 단계, 상기 제1인터페이스를 통해 질의를 수신하면, 상기 질의에 매칭되는 답변을 생성하는 단계, 및 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 단계를 포함할 수 있다.According to a third aspect of the present invention, there is provided a computer-readable recording medium having recorded thereon a program for performing a method of providing an authentication service, the method comprising: receiving an authentication request from a first user terminal; Receiving an inquiry through the first interface, generating an answer matched to the query, and upon receiving the answer via the second user terminal, And authenticating.

본 발명의 제 4 측면에 따르면, 인증 서비스 제공 장치에 의해 수행되며, 인증 서비스를 제공하는 방법을 수행하기 위해 기록매체에 저장된 컴퓨터 프로그램으로서, 상기 인증 서비스 제공 방법은, 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 단계, 상기 제1인터페이스를 통해 질의를 수신하면, 상기 질의에 매칭되는 답변을 생성하는 단계, 및 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 단계를 포함할 수 있다.According to a fourth aspect of the present invention, there is provided a computer program stored in a recording medium for performing a method of providing an authentication service, the authentication program being provided by an authentication service providing apparatus, Providing a first interface for receiving a query, receiving an inquiry through the first interface, generating an answer matched to the query, and receiving the answer via the second user terminal , And authenticating the first user terminal.

전술한 본 발명의 과제 해결 수단 중 어느 하나에 의하면, 본 발명의 일실시예는 인증 서비스 제공 장치 및 인증 서비스 제공 방법을 제시할 수 있다. According to any one of the above-described objects of the present invention, an embodiment of the present invention can provide an authentication service providing apparatus and a method of providing an authentication service.

또한, 본 발명의 과제 해결 수단 중 어느 하나에 의하면, 복수의 사용자단말을 이용하여 인증을 수행하면서 상기 복수의 사용자단말 각각에 입력하는 정보가 상이함에 따라 보안성이 한층 향상된 인증 서비스 제공 장치 및 인증 서비스 제공 방법을 제시할 수 있다. Further, according to any one of the tasks of the present invention, since information to be input to each of the plurality of user terminals is different while performing authentication using a plurality of user terminals, the authentication service providing apparatus and authentication A service providing method can be suggested.

아울러 본 발명의 과제 해결 수단 중 어느 하나에 의하면, 보다 간편하게 사용자를 인증할 수 있는 장치 및 방법을 제공할 수 있다.Further, according to any one of the means for solving the problems of the present invention, it is possible to provide an apparatus and a method that can more easily authenticate a user.

본 발명에서 얻을 수 있는 효과는 이상에서 언급한 효과들로 제한되지 않으며, 언급하지 않은 또 다른 효과들은 아래의 기재로부터 본 발명이 속하는 기술분야에서 통상의 지식을 가진 자에게 명확하게 이해될 수 있을 것이다.The effects obtained by the present invention are not limited to the above-mentioned effects, and other effects not mentioned can be clearly understood by those skilled in the art from the following description will be.

도 1은 본 발명의 일실시예에 따른 인증시스템의 구성도이다.
도 2는 본 발명의 일실시예에 따른 인증 서비스 제공 장치를 도시한 블록도이다.
도 3은 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 순서도이다.
도 4 내지 도 5는 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 예시도이다.
1 is a configuration diagram of an authentication system according to an embodiment of the present invention.
2 is a block diagram illustrating an apparatus for providing an authentication service according to an embodiment of the present invention.
3 is a flowchart illustrating an authentication service providing method according to an embodiment of the present invention.
4 to 5 are exemplary diagrams for explaining a method of providing an authentication service according to an embodiment of the present invention.

아래에서는 첨부한 도면을 참조하여 본 발명이 속하는 기술 분야에서 통상의 지식을 가진 자가 용이하게 실시할 수 있도록 본 발명의 실시예를 상세히 설명한다. 그러나 본 발명은 여러 가지 상이한 형태로 구현될 수 있으며 여기에서 설명하는 실시예에 한정되지 않는다. 그리고 도면에서 본 발명을 명확하게 설명하기 위해서 설명과 관계없는 부분은 생략하였으며, 명세서 전체를 통하여 유사한 부분에 대해서는 유사한 도면 부호를 붙였다.Hereinafter, embodiments of the present invention will be described in detail with reference to the accompanying drawings, which will be readily apparent to those skilled in the art. The present invention may, however, be embodied in many different forms and should not be construed as limited to the embodiments set forth herein. In order to clearly illustrate the present invention, parts not related to the description are omitted, and similar parts are denoted by like reference characters throughout the specification.

명세서 전체에서, 어떤 부분이 다른 부분과 "연결"되어 있다고 할 때, 이는 "직접적으로 연결"되어 있는 경우뿐 아니라, 그 중간에 다른 소자를 사이에 두고 "전기적으로 연결"되어 있는 경우도 포함한다. 또한 어떤 부분이 어떤 구성요소를 "포함"한다고 할 때, 이는 특별히 반대되는 기재가 없는 한 다른 구성요소를 제외하는 것이 아니라 다른 구성요소를 더 포함할 수 있는 것을 의미한다.Throughout the specification, when a part is referred to as being "connected" to another part, it includes not only "directly connected" but also "electrically connected" with another part in between . Also, when an element is referred to as "comprising ", it means that it can include other elements as well, without departing from the other elements unless specifically stated otherwise.

이하 첨부된 도면을 참고하여 본 발명을 상세히 설명하기로 한다.DETAILED DESCRIPTION OF THE PREFERRED EMBODIMENTS Hereinafter, the present invention will be described in detail with reference to the accompanying drawings.

도 1은 본 발명의 일실시예에 따른 인증시스템의 구성도이다.1 is a configuration diagram of an authentication system according to an embodiment of the present invention.

도 1에서 도시된 바와 같이, 인증시스템(100)은 제1사용자단말(10), 인증 서비스 제공 장치(20) 및 제2사용자단말(30)를 포함한다.As shown in FIG. 1, the authentication system 100 includes a first user terminal 10, an authentication service providing apparatus 20, and a second user terminal 30.

본 발명의 일실시예에 따른 인증 서비스 제공 장치(20)는 제1사용자단말(10)로부터의 인증 요청에 대해, 제2사용자단말(30)을 이용하여 제1사용자단말(10)의 인증 또는 불인증 처리를 수행할 수 있다. The authentication service providing apparatus 20 according to an embodiment of the present invention can perform authentication or authentication of the first user terminal 10 by using the second user terminal 30 for the authentication request from the first user terminal 10, The non-authentication processing can be performed.

또한 인증 서비스 제공 장치(20)는 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 수행하기에 앞서, 제1사용자단말(10)로부터, 제1사용자단말(10)을 통해 인증을 요청하는 사용자의 사용자정보를 수신하여 저장할 수 있다. Also, the authentication service providing apparatus 20 may be configured to allow the authentication service providing apparatus 20 to authenticate a user who requests authentication from the first user terminal 10 through the first user terminal 10, prior to performing the authentication service providing method according to an embodiment of the present invention. Lt; RTI ID = 0.0 > user information < / RTI >

관련하여 ‘사용자정보’는 사용자에 매칭되는 사용자계정에 저장될 수 있는 각종 정보를 의미한다. 사용자정보는, 예를 들어, 사용자의 연락처, 사용자의 이름 등과 같은 사용자 식별정보가 포함될 수 있다. 또한 사용자정보는, 인증을 통해서만 접근 가능한 정보, 예를 들어, 사용자가 결제하기 위해 등록한 카드 일련정보, 카드 비밀번호 등이 포함될 수 있다. In this regard, 'user information' refers to various information that can be stored in a user account matching a user. The user information may include user identification information such as, for example, the user's contact, the name of the user, and the like. Also, the user information may include information that is accessible only through authentication, for example, card serial information registered by the user for payment, card password, and the like.

인증 서비스 제공 장치(20)는 제1사용자단말(10)을 인증하면 상기 인증에 따른 후속 프로세스가 수행될 수 있도록 사용자정보를 송신할 수 있다. 상기 후속 프로세스가 결제 처리 프로세스라면, 인증 서비스 제공 장치(20)는 상기 사용자정보를, 결제 서버(카드사 서버, 은행사 서버 또는 PG사 서버 등)로 송신하여 결제 처리가 수행되도록 할 수 있다.The authentication service providing apparatus 20 can transmit the user information so that the subsequent process according to the authentication can be performed when the first user terminal 10 is authenticated. If the subsequent process is a payment processing process, the authentication service providing apparatus 20 may transmit the user information to a payment server (such as a card company server, a bank company server, a PG company server, or the like) to perform payment processing.

이와 같은 인증 서비스 제공 장치(20)는, 제1사용자단말(10) 및 제2사용자단말(30) 각각으로 웹 서비스를 제공할 수 있는 웹서버로 구현될 수 있으며, 또는 예를 들어, 포털 사이트 서버이거나, 온라인 쇼핑몰 서버 등 다양한 웹 컨텐츠 프로바이더의 서버 시스템으로도 구현될 수 있다. 또한 인증 서비스 제공 장치(20)는 웹서버를 포함하여 로드밸런싱 서버, 데이터베이스 서버 등 일군의 서버 시스템으로 구현될 수 있음은 물론이다.The authentication service providing apparatus 20 may be implemented as a web server capable of providing a web service to each of the first user terminal 10 and the second user terminal 30, Server or a server system of various web content providers such as an online shopping mall server. In addition, the authentication service providing apparatus 20 may be implemented as a group of server systems including a web server, a load balancing server, and a database server.

한편 인증 서비스 제공 장치(20)는 네트워크(N)를 통해 제1사용자단말(10) 및 제2사용자단말(30) 각각과 통신할 수 있다.Meanwhile, the authentication service providing apparatus 20 can communicate with the first user terminal 10 and the second user terminal 30 via the network N, respectively.

이때 네트워크(N)는 근거리 통신망(Local Area Network; LAN), 광역 통신망(Wide Area Network; WAN), 부가가치 통신망(Value Added Network; VAN), 개인 근거리 무선통신(Personal Area Network; PAN), 이동 통신망(mobile radio communication network), Wibro(Wireless Broadband Internet), Mobile WiMAX, HSDPA(High Speed Downlink Packet Access) 위성 통신망, LTE(long term evolution) 망 등과 같은 모든 종류의 유/무선 네트워크로 구현될 수 있다.The network N may be a local area network (LAN), a wide area network (WAN), a value added network (VAN), a personal area network (PAN) wireless networks such as mobile radio communication network, Wibro (Wireless Broadband Internet), Mobile WiMAX, HSDPA (High Speed Downlink Packet Access) satellite communication network and LTE (Long Term Evolution) network.

상술된 바와 같은 인증 서비스 제공 장치(20)는 도 2를 참조하여 보다 상세히 후술된다.The authentication service providing apparatus 20 as described above will be described in more detail below with reference to Fig.

한편 제1사용자단말(10) 및 제2사용자단말(30) 각각은 인증 서비스 제공 장치(20)와 통신하기 위한 클라이언트 프로그램이 설치된 전자단말기로 구현될 수 있다.Each of the first user terminal 10 and the second user terminal 30 may be implemented as an electronic terminal equipped with a client program for communicating with the authentication service providing apparatus 20. [

이때 전자단말기는, 사용자와의 인터랙션이 가능한 인터페이스를 포함할 수 있는 컴퓨터나 휴대용 단말기, 텔레비전, 웨어러블 디바이스(Wearable Device) 등으로 구현될 수 있다. 여기서, 컴퓨터는 예를 들어, 웹 브라우저(WEB Browser)가 탑재된 노트북, 데스크톱(desktop), 랩톱(laptop)등을 포함하고, 휴대용 단말기는 예를 들어, 휴대성과 이동성이 보장되는 무선 통신 장치로서, PCS(Personal Communication System), PDC(Personal Digital Cellular), PHS(Personal Handyphone System), PDA(Personal Digital Assistant),GSM(Global System for Mobile communications), IMT(International Mobile Telecommunication)-2000, CDMA(Code Division Multiple Access)-2000, W-CDMA(W-Code Division Multiple Access), Wibro(Wireless Broadband Internet), 스마트폰(Smart Phone), 모바일 WiMAX(Mobile Worldwide Interoperability for Microwave Access) 등과 같은 모든 종류의 핸드헬드(Handheld) 기반의 무선 통신 장치를 포함할 수 있다. 또한, 텔레비전은 IPTV(Internet Protocol Television), 인터넷 TV(Internet Television), 지상파 TV, 케이블 TV 등을 포함할 수 있다. 나아가 웨어러블 디바이스는 예를 들어, 시계, 안경, 액세서리, 의복, 신발 등 인체에 직접 착용 가능한 타입의 정보처리장치로서, 직접 또는 다른 정보처리장치를 통해 네트워크를 경유하여 원격지의 서버에 접속하거나 타 단말과 연결될 수 있다. At this time, the electronic terminal may be implemented as a computer, a portable terminal, a television, a wearable device, or the like, which may include an interface capable of interacting with a user. Here, the computer includes, for example, a notebook computer, a desktop computer, a laptop computer, and the like, each of which is equipped with a web browser (WEB Browser), and the portable terminal may be a wireless communication device , Personal Communication System (PCS), Personal Digital Cellular (PDC), Personal Handyphone System (PHS), Personal Digital Assistant (PDA), Global System for Mobile communications (GSM), International Mobile Telecommunication (IMT) (W-CDMA), Wibro (Wireless Broadband Internet), Smart Phone, Mobile WiMAX (Mobile Worldwide Interoperability for Microwave Access) (Handheld) based wireless communication device. In addition, the television may include an Internet Protocol Television (IPTV), an Internet television (TV), a terrestrial TV, a cable TV, and the like. Further, the wearable device is an information processing device of a type that can be directly worn on a human body, for example, a watch, a glasses, an accessory, a garment, shoes, or the like, and can be connected to a remote server via a network, Lt; / RTI >

이와 같은 전자단말기로 구현되는 제1사용자단말(10) 및 제2사용자단말(30) 각각은, 서로 상이한 2개의 사용자단말을 구분하여 지칭하기 위해 사용되는 것일 뿐, 특정 기능을 갖는 사용자단말을 지칭하는 것은 아니다. Each of the first user terminal 10 and the second user terminal 30 implemented by such an electronic terminal is used for distinguishing two different user terminals from each other and is referred to as a user terminal having a specific function It does not.

한편 본 발명의 일실시예에 따른 인증 서비스 제공 장치(20)는, 네트워크(N)를 통해 서드파티장치(미도시)와도 통신할 수 있다.Meanwhile, the authentication service providing apparatus 20 according to an embodiment of the present invention can communicate with a third party apparatus (not shown) via the network N. [

서드파티장치(미도시)는 인증 서비스 제공 장치(20)가 질의를 송신함에 따라 상기 질의에 대한 답변을 인증 서비스 제공 장치(20)로 전달하는 장치일 수 있으며, 또한, 질의가 수학식인 경우 상기 수학식의 연산을 수행하기 위한 리소스(예를 들어 계산기 모듈 등)를 인증 서비스 제공 장치(20)에게 제공할 수 있는 장치일 수 있다. 이와 같은 서드파티장치(미도시)는 웹서버를 포함하여 로드밸런싱 서버, 데이터베이스 서버 등 일군의 서버 시스템으로 구현될 수 있다.The third party device (not shown) may be a device that transmits an answer to the inquiry to the authentication service providing device 20 as the authentication service providing device 20 transmits the query, and when the query is a mathematical expression, (For example, a calculator module) for performing an operation of the mathematical expression. Such a third party device (not shown) may be implemented as a group of server systems including a web server, a load balancing server, and a database server.

한편 도 2는 본 발명의 일실시예에 따른 인증 서비스 제공 장치(20)를 도시한 블록도이다.2 is a block diagram illustrating an authentication service providing apparatus 20 according to an embodiment of the present invention.

본 발명의 바람직한 일실시예에 따른 인증 서비스 제공 장치(20)는 질의 수신을 위한 제1인터페이스를 제공하는 인터페이스관리부(210)를 포함한다.The authentication service providing apparatus 20 according to the preferred embodiment of the present invention includes an interface management unit 210 that provides a first interface for receiving a query.

즉, 인터페이스관리부(210)는, 제1사용자단말(10)로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제1사용자단말(10)로 제공할 수 있다.That is, when receiving the authentication request from the first user terminal 10, the interface management unit 210 may provide the first interface for receiving the query to the first user terminal 10.

이때 ‘제1인터페이스’는 사용자가 질의입력을 편리하게 할 수 있도록 제1사용자단말의 화면을 구성하는 인터페이스를 의미한다.Here, the 'first interface' means an interface constituting a screen of the first user terminal so that the user can easily input a query.

또한 인터페이스관리부(210)는, 답변 수신을 위한 제2인터페이스를 제2사용자단말(30)로 제공할 수 있다. Also, the interface management unit 210 may provide a second interface for receiving an answer to the second user terminal 30.

또한 인터페이스관리부(210)는, 제2사용자단말(30)에 설치되고 제2인터페이스를 제공하는 애플리케이션의 실행을 위한 트리거링신호를, 제2사용자단말(30)로 제공할 수 있다.The interface management unit 210 may also provide a triggering signal to the second user terminal 30 for execution of an application installed in the second user terminal 30 and providing a second interface.

상기와 같은 트리거링신호를 수신한 제2사용자단말(30)은, 제2사용자단말(30) 상에 설치된 애플리케이션을 실행시켜 제2인터페이스를 제공할 수 있으며, 상기 제2인터페이스의 제공이 종료될 때까지 인증 서비스 제공 장치(20)와 통신채널을 형성하여 제2인터페이스로 수신되는 정보를 인증 서비스 제공 장치(20)로 송신할 수 있다.The second user terminal 30 receiving the triggering signal may provide a second interface by executing an application installed on the second user terminal 30. When the provision of the second interface ends To the authentication service providing apparatus 20 by forming a communication channel with the authentication service providing apparatus 20 through the second interface.

관련하여 ‘제2인터페이스’는 사용자가 답변 입력을 편리하게 할 수 있도록 제2사용자단말의 화면을 구성하는 인터페이스를 의미한다.The 'second interface' refers to an interface that forms a screen of the second user terminal so that the user can easily input an answer.

예를 들어 제2인터페이스는, 사용자의 클릭, 터치, 탭 등을 감지함에 따라 숫자 또는 문자 등을 입력 받을 수 있는 인터페이스일 수 있으며, 또한, 제2사용자단말(30)가 휴대용 단말기인 경우 ARS의 음성 안내에 따라 지정된 기간 내에 수신되는 일련의 숫자 또는 문자를 답변으로 획득하는 인터페이스일 수 있다.For example, if the second user terminal 30 is a portable terminal, the second interface may be an interface capable of receiving numbers or characters as the user senses a click, a touch, a tap, And may be an interface that acquires a series of numbers or characters received within a specified period in response to a voice prompt.

한편 인터페이스관리부(210)는 제2인터페이스 또는 트리거링신호가 제공될 제2사용자단말을 탐색할 수 있다.Meanwhile, the interface management unit 210 may search for a second user terminal to which a second interface or a triggering signal is to be provided.

예를 들어 인터페이스관리부(210)는, 인증 요청을 송신한 제1사용자단말에 대응되는 사용자계정에 등록된 사용자단말 중 적어도 하나인 제2사용자단말을 탐색할 수 있다.For example, the interface management unit 210 may search for a second user terminal that is at least one of the user terminals registered in the user account corresponding to the first user terminal that transmitted the authentication request.

또한 예를 들어 인터페이스관리부(210)는, 인증 요청을 송신한 제1사용자단말(10)로부터, 제2사용자단말에 매칭되는 단말식별정보(예를 들어, 제2사용자단말(30)이 휴대용 단말기인 경우 전화번호 등)를 수신하여, 제2사용자단말(30)을 탐색할 수 있다.For example, the interface management unit 210 may acquire, from the first user terminal 10 that has transmitted the authentication request, terminal identification information matching the second user terminal (for example, A telephone number or the like in the case of the second user terminal 30).

한편 인증 서비스 제공 장치(20)는, 제1인터페이스를 통해 질의를 수신하면 상기 질의에 매칭되는 답변을 생성하는 답변생성부(220)를 더 포함할 수 있다.Meanwhile, the authentication service providing apparatus 20 may further include an answer generating unit 220 that generates an answer matching the inquiry when receiving the inquiry through the first interface.

답변생성부(220)는 예를 들어 질의가 수학식이면, 상기 수학식을 연산하여 연산된 결과값을 답변으로서 생성할 수 있다.For example, if the query is a mathematical expression, the answer generating unit 220 may calculate the result of the mathematical expression and generate the calculated result as a response.

또한 답변생성부(220)는 질의에 매칭되는 답변을 서드파티장치(미도시)로 요청하여 획득할 수 있다.In addition, the answer generator 220 may request and obtain an answer matched to the query by a third party device (not shown).

예를 들어 서드파티장치(미도시)가 계산기 모듈을 포함하면, 수학식 질의를 서드파티장치(미도시)로 송신하여 그 응답으로서 답변을 획득할 수 있다.For example, if the third party device (not shown) includes a calculator module, it can send a mathematical query to a third party device (not shown) and obtain the answer as its response.

한편 인증 서비스 제공 장치(20)는, 제2사용자단말(20)을 통해 답변을 수신하면, 제1사용자단말(10)을 인증하는 인증처리부(230)를 더 포함할 수 있다.The authentication service providing apparatus 20 may further include an authentication processing unit 230 for authenticating the first user terminal 10 upon receiving an answer via the second user terminal 20. [

즉 인증처리부(230)는 제2인터페이스를 통해 수신되는 답변이, 제1인터페이스를 통해 수신된 질의와 매칭되는 답변이라면 제1인터페이스가 제공된 제1사용자단말(10)을 인증할 수 있다.That is, the authentication processing unit 230 can authenticate the first user terminal 10 provided with the first interface if the answer received through the second interface is an answer matching the query received through the first interface.

반면 제2인터페이스를 통해 수신되는 답변이, 제1인터페이스를 통해 수신된 질의와 매칭되지 못한 답변이라면, 인증처리부(230)는 제1사용자단말(10)을 불인증 처리할 수 있다.On the other hand, if the answer received through the second interface is an answer that is not matched with the query received via the first interface, the authentication processing unit 230 can disqualify the first user terminal 10.

한편 도 3은 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 순서도이다. 3 is a flowchart illustrating an authentication service providing method according to an embodiment of the present invention.

도 3에 도시된 실시예에 따른 인증 서비스 제공 방법은 도 2에 도시된 인증 서비스 제공 장치(20)에서 시계열적으로 처리되는 단계들을 포함한다. 따라서, 이하에서 생략된 내용이라고 하더라도 도 2에 도시된 인증 서비스 제공(20)에 관하여 이상에서 기술한 내용은 도 3에 도시된 실시예에 따른 인증 서비스 제공 방법에도 적용될 수 있다. 도 3은, 도 4 및 도 5를 참조하여 이하에서 서술된다. The authentication service providing method according to the embodiment shown in FIG. 3 includes steps that are performed in a time-series manner in the authentication service providing apparatus 20 shown in FIG. Therefore, the contents described above with respect to the authentication service provision 20 shown in FIG. 2 may be applied to the authentication service provision method according to the embodiment shown in FIG. Fig. 3 is described below with reference to Figs. 4 and 5. Fig.

제1사용자단말(10) 및 제2사용자단말(30) 각각과 통신하는 인증 서비스 제공 장치(20)는 제1사용자단말(10)로부터 인증 요청을 수신할 수 있다 (S310).The authentication service providing apparatus 20 communicating with the first user terminal 10 and the second user terminal 30 may receive the authentication request from the first user terminal 10 at step S310.

관련하여 이하에서는 설명의 편의상, 제1사용자단말(10)은 컴퓨터임을 가정하며, 제2사용자단말(30)은 휴대용 단말기임을 가정한다.In the following description, it is assumed that the first user terminal 10 is a computer and the second user terminal 30 is a portable terminal.

인증 요청을 수신한 인증 서비스 제공 장치(20)는 질의 수신을 위한 제1인터페이스를 제1사용자단말(10)로 제공할 수 있다 (S320).Upon receiving the authentication request, the authentication service providing apparatus 20 may provide the first interface for receiving the query to the first user terminal 10 (S320).

그리고 인증 서비스 제공 장치(20)는 제1인터페이스를 통해 질의를 수신할 수 있다 (S330).The authentication service providing apparatus 20 can receive the query through the first interface (S330).

관련하여 도 4는, 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 예시도로서, 인증 서비스 제공 장치와 통신하는 제1사용자단말(10)의 화면(400)을 통해 나타나는 제1인터페이스의 일례를 도시한 것이다.4 is a diagram illustrating an authentication service providing method according to an embodiment of the present invention. Referring to FIG. 4, the authentication service providing method according to an embodiment of the present invention includes a first Lt; / RTI >

도 4에서 도시된 바와 같이, 인증 서비스 제공 장치(20)는 사용자로부터 질의를 입력 받을 수 있는 제1인터페이스(410, 420)를 제공할 수 있다.As shown in FIG. 4, the authentication service providing apparatus 20 may provide a first interface 410, 420 that can receive a query from a user.

제1인터페이스는 예를 들어, 제1사용자단말(10)의 화면 일 측에는 각 연산자 또는 숫자 입력을 통해 수학식을 입력할 수 있는 인터페이스(420)를 포함하고, 또한 제1사용자단말(10)의 화면 타측에는 상기 인터페이스(420)를 통해 입력된 수학식을 표시하는 인터페이스(410)를 포함하여 사용자로 하여금 자신이 입력한 수학식을 확인할 수 있도록 한다. The first interface includes, for example, an interface 420 on one side of the screen of the first user terminal 10 for inputting an expression through each operator or number input, The other side of the screen includes an interface 410 for displaying the mathematical expression input through the interface 420 so that the user can check the mathematical expression inputted by the user.

한편 인증 서비스 제공 장치(20)는 질의에 매칭되는 답변을 생성할 수 있다 (S340).Meanwhile, the authentication service providing apparatus 20 may generate an answer matching the query (S340).

즉 도 4에 도시된 바와 같이 사용자가 수학식을 입력하면, 상기 수학식을 연산하여, 인증 서비스 제공 장치(20)는 질의에 매칭되는 답변이 ‘55’임을 연산할 수 있다.That is, as shown in FIG. 4, when the user inputs the mathematical expression, the authentication service providing apparatus 20 calculates the formula to calculate that the answer matched with the query is '55'.

그리고 인증 서비스 제공 장치(20)는 제2사용자단말(30)로 제2인터페이스를 제공할 수 있다. The authentication service providing apparatus 20 may provide a second interface to the second user terminal 30. [

또한 인증 서비스 제공 장치(20)는 제2사용자단말(30) 상에 설치되고 답변 수신을 위한 제2인터페이스를 제공하는 애플리케이션을 실행시킬 수 있는 트리거링신호를, 제2사용자단말(30)로 제공할 수 있다.The authentication service provision apparatus 20 also provides a triggering signal to the second user terminal 30, which is capable of executing an application installed on the second user terminal 30 and providing a second interface for receiving answers .

이때 인증 서비스 제공 장치(20)는 질의에 매칭되는 답변을 생성하고 난 이후 제2인터페이스(또는 트리거링신호)를 제공할 수 있으며, 또한 질의에 매칭되는 답변을 생성하면서 제2인터페이스(또는 트리거링신호)를 제공할 수 있다.At this time, the authentication service providing apparatus 20 may provide a second interface (or a triggering signal) after generating an answer matched with the query, and may also generate a second interface (or triggering signal) Can be provided.

그리고 인증 서비스 제공 장치(20)는 상기 제2인터페이스를 통해 정보를 수신할 수 있다 (S350).The authentication service providing apparatus 20 can receive the information through the second interface (S350).

이때 제2인터페이스는, 제2사용자단말(30)로 ARS 음성 안내를 진행하여 음성 안내에 따라 지정된 기간 내에 수신한 정보를 획득할 수 있다. 또한 제2인터페이스는 제2사용자단말(30)를 통해 사용자의 클릭, 터치, 탭 등을 감지함에 따라 제2사용자단말(30)에 대해 입력되는 정보를 획득할 수 있다.At this time, the second interface can perform the ARS voice guidance to the second user terminal 30 to acquire the received information within a designated period according to the voice guidance. Also, the second interface can acquire information input to the second user terminal 30 by sensing a user's click, touch, tap, etc. through the second user terminal 30. [

이와 같이 제2인터페이스가 획득된 정보가 답변과 상이한 정보이면, 인증 서비스 제공 장치(20)는 제1사용자단말을 불인증 처리할 수 있으며 (S360), 또한 제2인터페이스가 획득된 정보가 답변과 동일한 정보이면 제1사용자단말을 인증 처리 할 수 있다 (S370).If the information obtained by the second interface is different from the answer, the authentication service providing apparatus 20 can perform the unauthentication process on the first user terminal (S360) If it is the same information, the first user terminal can be authenticated (S370).

관련하여 도 5는, 본 발명의 일실시예에 따른 인증 서비스 제공 방법을 설명하기 위한 예시도로서, 인증 서비스 제공 장치(20)와 통신하는 제2사용자단말(30)의 화면(500)을 통해 나타나는 제2인터페이스의 일례를 도시한 것이다.FIG. 5 is a diagram illustrating an authentication service providing method according to an embodiment of the present invention. Referring to FIG. 5, a screen 500 of a second user terminal 30 communicating with an authentication service providing apparatus 20 And shows an example of a second interface that appears.

도 5에서 도시된 바와 같이, 인증 서비스 제공 장치(20)는 사용자로부터 답변을 입력 받을 수 있는 제2인터페이스(510)를 제공할 수 있다. 그리고 제2사용자단말(30)은 제2인터페이스(510)를 통해 사용자로부터 정보를 입력 받을 수 있다.As shown in FIG. 5, the authentication service providing apparatus 20 may provide a second interface 510 for receiving an answer from a user. The second user terminal 30 can receive information from the user through the second interface 510. [

따라서 인증 서비스 제공 장치(20)는, 도 5에서 도시된 바와 같이 질의에 대한 답변으로서 ‘55’를 제2인터페이스(510)를 통해 수신하면 제1사용자단말(10)을 인증할 수 있으며, 예를 들어, 질의에 대한 답변으로서 정답인 ‘55’와 상이한 ‘56’을 입력 받으면, 제1사용자단말(10)을 불인증할 수 있다.Accordingly, the authentication service providing apparatus 20 can authenticate the first user terminal 10 by receiving '55' as an answer to the query through the second interface 510 as shown in FIG. 5, The second user terminal 10 may be unauthorized by receiving a different answer 56 from the correct answer 55 as an answer to the inquiry.

즉 본 발명의 일실시예에 따른 인증 서비스 제공 방법에 따르면, 제1사용자단말 및 제2사용자단말 각각에 입력하는 정보가 상이함에 따라 사용자 인증 보안성이 한층 향상될 수 있다. 더욱이, 본 발명의 일실시예에 따른 인증 서비스 제공 방법에 따르면, 사용자를 보다 간편하게 인증할 수 있는데, 예를 들어 질의가 수학식인 경우 수학식을 사용자가 직접 입력함에 따라 수학식의 난이도를 사용자가 스스로 설정할 수 있으며, 또한, 수학식의 답변이 숫자임에 따라 사용자는 간단한 숫자 입력 만으로도 인증을 받을 수 있다.That is, according to the authentication service providing method according to the embodiment of the present invention, user authentication security can be further improved by inputting different information to each of the first user terminal and the second user terminal. Further, according to the authentication service providing method according to an embodiment of the present invention, the user can be more easily authenticated. For example, when the query is a mathematical expression, a user directly inputs a mathematical expression, In addition, since the answer of the mathematical expression is a number, the user can be authenticated with a simple numeric input.

한편 상술된 인증 서비스 제공 방법에 따라 인증 처리된 제1사용자단말(10)이, 예를 들어 결제서버(미도시)에서의 결제 처리를 위해 인증을 요청한 경우, 인증 서비스 제공 장치(20)는, 인증 처리된 제1사용자단말(10)에 대응되는 사용자정보를 결제서버(미도시)로 송신할 수 있다.On the other hand, when the first user terminal 10 authenticated according to the authentication service providing method described above requests authentication for payment processing in a payment server (not shown), for example, the authentication service providing apparatus 20, The user information corresponding to the first user terminal 10 subjected to the authentication processing can be transmitted to the payment server (not shown).

본 실시예에서 사용되는 '~부'라는 용어는 소프트웨어 또는 FPGA(field programmable gate array) 또는 ASIC 와 같은 하드웨어 구성요소를 의미하며, '~부'는 어떤 역할들을 수행한다. 그렇지만 '~부'는 소프트웨어 또는 하드웨어에 한정되는 의미는 아니다. '~부'는 어드레싱할 수 있는 저장 매체에 있도록 구성될 수도 있고 하나 또는 그 이상의 프로세서들을 재생시키도록 구성될 수도 있다. 따라서, 일 예로서 '~부'는 소프트웨어 구성요소들, 객체지향 소프트웨어 구성요소들, 클래스 구성요소들 및 태스크 구성요소들과 같은 구성요소들과, 프로세스들, 함수들, 속성들, 프로시저들, 서브루틴들, 프로그램특허 코드의 세그먼트들, 드라이버들, 펌웨어, 마이크로코드, 회로, 데이터, 데이터베이스, 데이터 구조들, 테이블들, 어레이들, 및 변수들을 포함한다.The term " part " used in the present embodiment means a hardware component such as software or a field programmable gate array (FPGA) or an ASIC, and 'part' performs certain roles. However, 'part' is not meant to be limited to software or hardware. &Quot; to " may be configured to reside on an addressable storage medium and may be configured to play one or more processors. Thus, by way of example, 'parts' may refer to components such as software components, object-oriented software components, class components and task components, and processes, functions, , Subroutines, segments of program patent code, drivers, firmware, microcode, circuitry, data, databases, data structures, tables, arrays, and variables.

구성요소들과 '~부'들 안에서 제공되는 기능은 더 작은 수의 구성요소들 및 '~부'들로 결합되거나 추가적인 구성요소들과 '~부'들로부터 분리될 수 있다.The functions provided within the components and components may be combined with a smaller number of components and components or separated from additional components and components.

뿐만 아니라, 구성요소들 및 '~부'들은 디바이스 또는 보안 멀티미디어카드 내의 하나 또는 그 이상의 CPU 들을 재생시키도록 구현될 수도 있다In addition, the components and components may be implemented to play back one or more CPUs in a device or a secure multimedia card

도 3을 통해 설명된 실시예에 따른 인증 서비스 제공 방법은 컴퓨터에 의해 실행되는 프로그램 모듈과 같은 컴퓨터에 의해 실행가능한 명령어를 포함하는 기록 매체의 형태로도 구현될 수 있다. 컴퓨터 판독 가능 매체는 컴퓨터에 의해 접근될 수 있는 임의의 가용 매체일 수 있고, 휘발성 및 비휘발성 매체, 분리형 및 비분리형 매체를 모두 포함한다. 또한, 컴퓨터 판독가능 매체는 컴퓨터 저장 매체 및 통신 매체를 모두 포함할 수 있다. 컴퓨터 저장 매체는 컴퓨터 판독가능 명령어, 데이터 구조, 프로그램 모듈 또는 기타 데이터와 같은 정보의 저장을 위한 임의의 방법 또는 기술로 구현된 휘발성 및 비휘발성, 분리형 및 비분리형 매체를 모두 포함한다. 통신 매체는 전형적으로 컴퓨터 판독가능 명령어, 데이터 구조, 프로그램 모듈, 또는 반송파와 같은 변조된 데이터 신호의 기타 데이터, 또는 기타 전송 메커니즘을 포함하며, 임의의 정보 전달 매체를 포함한다. The authentication service providing method according to the embodiment described with reference to FIG. 3 may also be implemented in the form of a recording medium including instructions executable by a computer such as a program module executed by a computer. Computer readable media can be any available media that can be accessed by a computer and includes both volatile and nonvolatile media, removable and non-removable media. In addition, the computer-readable medium may include both computer storage media and communication media. Computer storage media includes both volatile and nonvolatile, removable and non-removable media implemented in any method or technology for storage of information such as computer readable instructions, data structures, program modules or other data. Communication media typically includes any information delivery media, including computer readable instructions, data structures, program modules, or other data in a modulated data signal such as a carrier wave, or other transport mechanism.

또한 본 발명의 일실시예에 따르는 인증 서비스 제공 방법은 컴퓨터에 의해 실행 가능한 명령어를 포함하는 컴퓨터 프로그램(또는 컴퓨터 프로그램 제품)으로 구현될 수도 있다. 컴퓨터 프로그램은 프로세서에 의해 처리되는 프로그래밍 가능한 기계 명령어를 포함하고, 고레벨 프로그래밍 언어(High-level Programming Language), 객체 지향 프로그래밍 언어(Object-oriented Programming Language), 어셈블리 언어 또는 기계 언어 등으로 구현될 수 있다. 또한 컴퓨터 프로그램은 유형의 컴퓨터 판독가능 기록매체(예를 들어, 메모리, 하드디스크, 자기/광학 매체 또는 SSD(Solid-State Drive) 등)에 기록될 수 있다. Furthermore, the authentication service providing method according to an embodiment of the present invention may be implemented as a computer program (or a computer program product) including instructions executable by a computer. A computer program includes programmable machine instructions that are processed by a processor and can be implemented in a high-level programming language, an object-oriented programming language, an assembly language, or a machine language . The computer program may also be recorded on a computer readable recording medium of a type (e.g., memory, hard disk, magnetic / optical medium or solid-state drive).

따라서 본 발명의 일실시예에 따르는 인증 서비스 제공 방법은 상술한 바와 같은 컴퓨터 프로그램이 컴퓨팅 장치에 의해 실행됨으로써 구현될 수 있다. 컴퓨팅 장치는 프로세서와, 메모리와, 저장 장치와, 메모리 및 고속 확장포트에 접속하고 있는 고속 인터페이스와, 저속 버스와 저장 장치에 접속하고 있는 저속 인터페이스 중 적어도 일부를 포함할 수 있다. 이러한 성분들 각각은 다양한 버스를 이용하여 서로 접속되어 있으며, 공통 머더보드에 탑재되거나 다른 적절한 방식으로 장착될 수 있다. Therefore, the authentication service providing method according to the embodiment of the present invention can be realized by the computer program as described above being executed by the computing device. The computing device may include a processor, a memory, a storage device, a high-speed interface connected to the memory and a high-speed expansion port, and a low-speed interface connected to the low-speed bus and the storage device. Each of these components is connected to each other using a variety of buses and can be mounted on a common motherboard or mounted in any other suitable manner.

여기서 프로세서는 컴퓨팅 장치 내에서 명령어를 처리할 수 있는데, 이런 명령어로는, 예컨대 고속 인터페이스에 접속된 디스플레이처럼 외부 입력, 출력 장치상에 GUI(Graphic User Interface)를 제공하기 위한 그래픽 정보를 표시하기 위해 메모리나 저장 장치에 저장된 명령어를 들 수 있다. 다른 실시예로서, 다수의 프로세서 및(또는) 다수의 버스가 적절히 다수의 메모리 및 메모리 형태와 함께 이용될 수 있다. 또한 프로세서는 독립적인 다수의 아날로그 및(또는) 디지털 프로세서를 포함하는 칩들이 이루는 칩셋으로 구현될 수 있다. Where the processor may process instructions within the computing device, such as to display graphical information to provide a graphical user interface (GUI) on an external input, output device, such as a display connected to a high speed interface And commands stored in memory or storage devices. As another example, multiple processors and / or multiple busses may be used with multiple memory and memory types as appropriate. The processor may also be implemented as a chipset comprised of chips comprising multiple independent analog and / or digital processors.

또한 메모리는 컴퓨팅 장치 내에서 정보를 저장한다. 일례로, 메모리는 휘발성 메모리 유닛 또는 그들의 집합으로 구성될 수 있다. 다른 예로, 메모리는 비휘발성 메모리 유닛 또는 그들의 집합으로 구성될 수 있다. 또한 메모리는 예컨대, 자기 혹은 광 디스크와 같이 다른 형태의 컴퓨터 판독 가능한 매체일 수도 있다. The memory also stores information within the computing device. In one example, the memory may comprise volatile memory units or a collection thereof. In another example, the memory may be comprised of non-volatile memory units or a collection thereof. The memory may also be another type of computer readable medium such as, for example, a magnetic or optical disk.

그리고 저장장치는 컴퓨팅 장치에게 대용량의 저장공간을 제공할 수 있다. 저장 장치는 컴퓨터 판독 가능한 매체이거나 이런 매체를 포함하는 구성일 수 있으며, 예를 들어 SAN(Storage Area Network) 내의 장치들이나 다른 구성도 포함할 수 있고, 플로피 디스크 장치, 하드 디스크 장치, 광 디스크 장치, 혹은 테이프 장치, 플래시 메모리, 그와 유사한 다른 반도체 메모리 장치 혹은 장치 어레이일 수 있다. And the storage device can provide a large amount of storage space to the computing device. The storage device may be a computer readable medium or a configuration including such a medium and may include, for example, devices in a SAN (Storage Area Network) or other configurations, and may be a floppy disk device, a hard disk device, Or a tape device, flash memory, or other similar semiconductor memory device or device array.

전술한 본 발명의 설명은 예시를 위한 것이며, 본 발명이 속하는 기술분야의 통상의 지식을 가진 자는 본 발명의 기술적 사상이나 필수적인 특징을 변경하지 않고서 다른 구체적인 형태로 쉽게 변형이 가능하다는 것을 이해할 수 있을 것이다. 그러므로 이상에서 기술한 실시예들은 모든 면에서 예시적인 것이며 한정적이 아닌 것으로 이해해야만 한다. 예를 들어, 단일형으로 설명되어 있는 각 구성 요소는 분산되어 실시될 수도 있으며, 마찬가지로 분산된 것으로 설명되어 있는 구성 요소들도 결합된 형태로 실시될 수 있다.It will be understood by those skilled in the art that the foregoing description of the present invention is for illustrative purposes only and that those of ordinary skill in the art can readily understand that various changes and modifications may be made without departing from the spirit or essential characteristics of the present invention. will be. It is therefore to be understood that the above-described embodiments are illustrative in all aspects and not restrictive. For example, each component described as a single entity may be distributed and implemented, and components described as being distributed may also be implemented in a combined form.

본 발명의 범위는 상기 상세한 설명보다는 후술하는 특허청구범위에 의하여 나타내어지며, 특허청구범위의 의미 및 범위 그리고 그 균등 개념으로부터 도출되는 모든 변경 또는 변형된 형태가 본 발명의 범위에 포함되는 것으로 해석되어야 한다.The scope of the present invention is defined by the appended claims rather than the detailed description and all changes or modifications derived from the meaning and scope of the claims and their equivalents are to be construed as being included within the scope of the present invention do.

10: 제1사용자단말 20: 인증 서비스 제공 장치
30: 사용자단말
210: 인터페이스관리부 220: 답변생성부
230: 인증처리부
10: first user terminal 20: authentication service providing device
30: User terminal
210: interface management unit 220:
230: authentication processing unit

Claims (11)

제1사용자단말 및 제2사용자단말 각각과 통신하는 인증 서비스 제공 장치로서,
상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 인터페이스관리부;
상기 제1인터페이스를 통해 질의를 수신하면 상기 질의에 매칭되는 답변을 생성하는 답변생성부; 및
상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 인증처리부를 포함하는, 인증 서비스 제공 장치.
An authentication service providing apparatus for communicating with a first user terminal and a second user terminal,
An interface management unit for providing a first interface for receiving a query upon receiving an authentication request from the first user terminal;
An answer generator for generating an answer that matches the query when the query is received through the first interface; And
And an authentication processing unit for authenticating the first user terminal when the response is received through the second user terminal.
제 1 항에 있어서
상기 인터페이스관리부는 추가적으로,
상기 제1인터페이스를 통해 질의를 수신하면, 상기 제2사용자단말로 상기 답변 수신을 위한 제2인터페이스를 제공하는, 인증 서비스 제공 장치.
The method of claim 1, wherein
In addition,
And upon receiving a query through the first interface, provides a second interface for receiving the answer to the second user terminal.
제 1 항에 있어서,
상기 인터페이스관리부는 추가적으로,
상기 제1인터페이스를 통해 질의를 수신하면, 상기 제2사용자단말 상에 설치되고 상기 답변 수신을 위한 제2인터페이스를 제공하는 애플리케이션의 실행을 위한 트리거링신호를, 상기 제2사용자단말로 제공하는, 인증 서비스 제공 장치.
The method according to claim 1,
In addition,
And providing a triggering signal to the second user terminal for execution of an application installed on the second user terminal and providing a second interface for receiving the answer upon receipt of the query via the first interface, Service provider.
제 1 항에 있어서,
상기 제1인터페이스는 수학식 입력이 가능하도록 구성되며,
상기 질의에 대한 답변은 상기 수학식의 연산 결과값인, 인증 서비스 제공 장치.
The method according to claim 1,
Wherein the first interface is configured to enable input of a formula,
Wherein the answer to the query is an operation result value of the equation.
제 1 항에 있어서,
상기 인증 서비스 제공 장치는 네트워크를 통해 서드파티장치와 통신하며,
상기 답변생성부는 추가적으로,
상기 질의에 매칭되는 답변을 상기 서드파티장치로부터 획득하는, 인증 서비스 제공 장치.
The method according to claim 1,
The authentication service providing apparatus communicates with a third party apparatus via a network,
In addition,
And obtains an answer that matches the query from the third party device.
제1사용자단말 및 제2사용자단말 각각과 통신하는 인증 서비스 제공 장치가 인증 서비스를 제공하는 방법으로서,
상기 제1사용자단말로부터 인증 요청을 수신하면, 질의 수신을 위한 제1인터페이스를 제공하는 단계;
상기 제1인터페이스를 통해 질의를 수신하면, 상기 질의에 매칭되는 답변을 생성하는 단계; 및
상기 제2사용자단말을 통해 상기 답변을 수신하면, 상기 제1사용자단말을 인증하는 단계를 포함하는, 인증 서비스 제공 방법.
A method for providing an authentication service by an authentication service providing apparatus communicating with a first user terminal and a second user terminal,
Receiving a request for authentication from the first user terminal, providing a first interface for receiving a query;
Receiving an inquiry through the first interface, generating an answer that matches the query; And
And authenticating the first user terminal upon receiving the answer via the second user terminal.
제 6 항에 있어서,
상기 제2사용자단말로, 상기 답변 수신을 위한 제2인터페이스를 제공하는 단계를 더 포함하는, 인증 서비스 제공 방법.
The method according to claim 6,
Further comprising: providing a second interface for receiving the answer to the second user terminal.
제 6 항에 있어서,
상기 제2사용자단말로, 상기 제2사용자단말 상에 설치되고 상기 답변 수신을 위한 제2인터페이스를 제공하는 애플리케이션의 실행을 위한 트리거링신호를 제공하는 단계를 더 포함하는, 인증 서비스 제공 방법.
The method according to claim 6,
Further comprising providing a triggering signal to the second user terminal for execution of an application installed on the second user terminal and providing a second interface for receiving the answer.
제 6 항에 있어서,
상기 제1인터페이스는 수학식 입력이 가능하도록 구성되며,
상기 질의에 대한 답변은 상기 수학식의 연산 결과값인, 인증 서비스 제공 방법.
The method according to claim 6,
Wherein the first interface is configured to enable input of a formula,
Wherein an answer to the query is an operation result value of the equation.
제 6 항에 기재된 방법을 수행하는 프로그램이 기록된 컴퓨터 판독가능한 기록매체.A computer-readable recording medium on which a program for carrying out the method according to claim 6 is recorded. 인증 서비스 제공 장치에 의해 수행되며, 제 6 항에 기재된 방법을 수행하기 위해 기록매체에 저장된 컴퓨터 프로그램.A computer program executed by an authentication service providing apparatus and stored in a recording medium for performing the method of claim 6.
KR1020150134303A 2015-09-23 2015-09-23 Apparatus and method for providing authentication service Active KR102503526B1 (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
KR1020150134303A KR102503526B1 (en) 2015-09-23 2015-09-23 Apparatus and method for providing authentication service

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
KR1020150134303A KR102503526B1 (en) 2015-09-23 2015-09-23 Apparatus and method for providing authentication service

Publications (2)

Publication Number Publication Date
KR20170035460A true KR20170035460A (en) 2017-03-31
KR102503526B1 KR102503526B1 (en) 2023-02-23

Family

ID=58500815

Family Applications (1)

Application Number Title Priority Date Filing Date
KR1020150134303A Active KR102503526B1 (en) 2015-09-23 2015-09-23 Apparatus and method for providing authentication service

Country Status (1)

Country Link
KR (1) KR102503526B1 (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR20190043330A (en) * 2017-10-18 2019-04-26 주식회사 넥슨코리아 Apparatus, method and computer program for user uthentification
KR101998650B1 (en) * 2019-02-12 2019-07-10 한방유비스 주식회사 Collecting information management system of report of disaster
KR102006333B1 (en) * 2018-12-28 2019-10-01 정경채 Method and apparatus for computational authentication

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR100735445B1 (en) * 2004-10-06 2007-07-04 삼성전자주식회사 Personal authentication information management method of subscriber authentication module card inserted in mobile terminal
JP2007179212A (en) * 2005-12-27 2007-07-12 Kosugi Masami Log-in authentication system
KR20080055774A (en) * 2008-05-30 2008-06-19 주식회사 네오플 Password input method and device through calculation
KR20130022975A (en) * 2011-08-26 2013-03-07 경북대학교 산학협력단 Location-based bi-directional q&a and real-time audience response acquisition and alerting system

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR100735445B1 (en) * 2004-10-06 2007-07-04 삼성전자주식회사 Personal authentication information management method of subscriber authentication module card inserted in mobile terminal
JP2007179212A (en) * 2005-12-27 2007-07-12 Kosugi Masami Log-in authentication system
KR20080055774A (en) * 2008-05-30 2008-06-19 주식회사 네오플 Password input method and device through calculation
KR20130022975A (en) * 2011-08-26 2013-03-07 경북대학교 산학협력단 Location-based bi-directional q&a and real-time audience response acquisition and alerting system

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR20190043330A (en) * 2017-10-18 2019-04-26 주식회사 넥슨코리아 Apparatus, method and computer program for user uthentification
KR102006333B1 (en) * 2018-12-28 2019-10-01 정경채 Method and apparatus for computational authentication
KR101998650B1 (en) * 2019-02-12 2019-07-10 한방유비스 주식회사 Collecting information management system of report of disaster

Also Published As

Publication number Publication date
KR102503526B1 (en) 2023-02-23

Similar Documents

Publication Publication Date Title
US12443692B2 (en) Verification of access to secured electronic resources
US20220094678A1 (en) Systems and methods for user authentication based on multiple devices
US9741033B2 (en) System and method for point of sale payment data credentials management using out-of-band authentication
US10621326B2 (en) Identity authentication method, server, and storage medium
US9405889B2 (en) Device, method, and system for augmented reality security
US10038690B2 (en) Multifactor authentication processing using two or more devices
US9491155B1 (en) Account generation based on external credentials
US20140351126A1 (en) Secure synchronization of payment accounts to third-party applications or websites
US20180254904A1 (en) Integrated authentication system for authentication using single-use random numbers
US20140344910A1 (en) System and method for single-sign-on in virtual desktop infrastructure environment
US9413744B2 (en) Method and system for authenticating service
EP3777070B1 (en) Deep link authentication
US20170048257A1 (en) Methods and systems for blocking malware attacks
US20180262471A1 (en) Identity verification and authentication method and system
US9621546B2 (en) Method of generating one-time password and apparatus for performing the same
KR102503526B1 (en) Apparatus and method for providing authentication service
US10461932B2 (en) Method and system for digital signature-based adjustable one-time passwords
KR101814036B1 (en) System and method for managing password
KR101594315B1 (en) Service providing method and server using third party's authentication
KR101875257B1 (en) Mobile authentication and/or moile payment method using near wireless communication with host computer
KR102445583B1 (en) Authentication device and method
KR20160043633A (en) Method and system for user certification
KR20140134406A (en) Virtual Keyboard and risk management structure

Legal Events

Date Code Title Description
PA0109 Patent application

St.27 status event code: A-0-1-A10-A12-nap-PA0109

PG1501 Laying open of application

St.27 status event code: A-1-1-Q10-Q12-nap-PG1501

P22-X000 Classification modified

St.27 status event code: A-2-2-P10-P22-nap-X000

PA0201 Request for examination

St.27 status event code: A-1-2-D10-D11-exm-PA0201

D13-X000 Search requested

St.27 status event code: A-1-2-D10-D13-srh-X000

D14-X000 Search report completed

St.27 status event code: A-1-2-D10-D14-srh-X000

E902 Notification of reason for refusal
PE0902 Notice of grounds for rejection

St.27 status event code: A-1-2-D10-D21-exm-PE0902

T11-X000 Administrative time limit extension requested

St.27 status event code: U-3-3-T10-T11-oth-X000

AMND Amendment
P11-X000 Amendment of application requested

St.27 status event code: A-2-2-P10-P11-nap-X000

P13-X000 Application amended

St.27 status event code: A-2-2-P10-P13-nap-X000

E601 Decision to refuse application
PE0601 Decision on rejection of patent

St.27 status event code: N-2-6-B10-B15-exm-PE0601

X091 Application refused [patent]
AMND Amendment
E13-X000 Pre-grant limitation requested

St.27 status event code: A-2-3-E10-E13-lim-X000

P11-X000 Amendment of application requested

St.27 status event code: A-2-2-P10-P11-nap-X000

P13-X000 Application amended

St.27 status event code: A-2-2-P10-P13-nap-X000

PX0901 Re-examination

St.27 status event code: A-2-3-E10-E12-rex-PX0901

PX0701 Decision of registration after re-examination

St.27 status event code: A-3-4-F10-F13-rex-PX0701

X701 Decision to grant (after re-examination)
GRNT Written decision to grant
PR0701 Registration of establishment

St.27 status event code: A-2-4-F10-F11-exm-PR0701

PR1002 Payment of registration fee

St.27 status event code: A-2-2-U10-U11-oth-PR1002

Fee payment year number: 1

PG1601 Publication of registration

St.27 status event code: A-4-4-Q10-Q13-nap-PG1601

PR1001 Payment of annual fee

St.27 status event code: A-4-4-U10-U11-oth-PR1001

Fee payment year number: 4

U11 Full renewal or maintenance fee paid

Free format text: ST27 STATUS EVENT CODE: A-4-4-U10-U11-OTH-PR1001 (AS PROVIDED BY THE NATIONAL OFFICE)

Year of fee payment: 4