会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • METHOD FOR THE UNIQUE AUTHENTICATION OF A USER BY SERVICE PROVIDERS
    • 服务提供者对用户进行单一认证的方法
    • WO2008113951A2
    • 2008-09-25
    • PCT/FR2008050306
    • 2008-02-25
    • FRANCE TELECOMCANARD SEBASTIENMALVILLE ERICTRAORE JACQUESGUILLOTEAU STEPHANE
    • CANARD SEBASTIENMALVILLE ERICTRAORE JACQUESGUILLOTEAU STEPHANE
    • H04L29/06H04L9/32H04L12/22
    • H04L63/0421H04L9/3013H04L9/3257H04L63/0815H04L63/0823H04L63/126H04L2209/04
    • The invention relates to a method for the unique authentication of a user (U) by at least one service provider (SP), said method comprising the preliminary phase of federating identities between an identity (user@sp) of the user by said service provider and an identity (user@idp) of the user (U) by an identity provider (IdP). According to the invention, the preliminary identity federation phase comprises the following steps: for the user (U), generating an alias ([alias]) of the user for the service provider (SP) and transmitting to the identity provider (IdP) a masked alias ([alias]masqué) derived from the alias; for the identity provider (IdP), associating said masked alias ([alias]masqué) for this service provider (SP) with the user's identity (user@idp) by the identity provider (IdP), and transmitting elements to the user (U) so that the user can calculate a signature ( s ) of a message {msg) containing the unmasked alias ([alias]); for the user (U), calculating said signature ( s ) and transmitting to the service provider (SP) said message {msg) with said signature ( s ); and for the service provider (SP), checking said signature ( s ), authenticating the user (U) and associating said alias ([alias]) with the user's identity (user@sp) by the service provider (SP).
    • 本发明涉及一种用于由至少一个服务提供商(SP)对用户(U)的唯一认证的方法,所述方法包括由所述服务提供商(SP)在用户的身份(用户@ sp)之间的联合身份的初步阶段 以及身份提供者(IdP)的用户(U)的身份(user @ idp)。 根据本发明,初步身份联合阶段包括以下步骤:对于用户(U),为服务提供商(SP)生成用户的别名([别名))并向身份提供商(IdP)a发送 来自别名的蒙版别名([alias]masqué) 对于身份提供商(IdP),通过身份提供者(IdP)将用于该服务提供商(SP)的所述被屏蔽的别名([alias]masqué)与用户的身份(user @ idp)相关联,并向用户(U ),使得用户可以计算包含未屏蔽的别名([alias])的消息{msg)的签名; 对于用户(U),计算所述签名并且向所述服务提供商(SP)发送具有所述签名的所述消息(msg); 并且对于服务提供商(SP),检查所述签名,认证用户(U)并且将所述别名([别名))与服务提供商(SP)的用户身份(user @ sp)相关联。