CN100419736C

Service vertification system, vertification require terminal, service operating terminal and providing method

Abstract

The invention claims a service providing method for providing service and a server b to the service can be used to perform a authentication request of terminal of the user authentication and the operation of the related service a the certification under the condition of judging whether the user can use server b. When judging to the server b when memory using permission message and to the authentication request terminal sends based on service b the use permit information in response to using permission. And then validates the service usage terminal transmits the using requirement message of according to the use permit response if it is can be used in the state of the service using terminal can be used in the state of server b. By using the related service a the certification result is no necessary to the server b is equipped with a new authentication part so as to make the cost is reduced.

Term

Term ended

Expired 16 October 2023, 2.9 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

20 claims: 4 independent, 16 dependent

  1. 1
    First 第 1. A service verification system, which provides multiple services, is characterized by:an authentication information storage component that stores authentication information for authenticating users who can use the first service;and an authentication information storage component that stores information about the services that can be used by each user Usable service information storage component;when the use of a second service different from the first service is permitted, a use permission message information storage component that stores message information based on a use permission message identifying the use permission;receiving according to the first The first message receiving component of the message of the authentication mode of the service;verify the message received by the first message receiving component according to the authentication information stored in the authentication information storage component, and thereby specify the first services The user and the authentication component that authenticates whether the user can use the first service;receiving other service use requirement receiving components that are sent by the user who is authenticated by the authentication component as being able to use the first service and the use requirements of the second service;When the other service use request receiving component receives the use request, it determines whether the user can use the other service use determination component of the second service according to the information of the usable service information storage component;When the other service use availability determination unit determines that the second service can be used, the use permission message information storage unit enables the use permission based on the use permission message identifying the use permission of the second service. Message information update component;When it is determined by the other service availability determination component that the second service can be used, the L usage permission response sending component of the usage permission response based on the usage permission message is sent to the authentication request terminal;receiving the sending from the service user terminal A second message receiving component based on the use permission response message;1. 一种服务验证系统,提供多种服务,其特征在于:包括: 存储了用于认证能使用第一服务的用户的认证信息的认证信息 存储部件; 存储了有关各用户能使用的服务的信息的可使用服务信息存储 部件; 当许可使用与所述第一服务不同的第二服务时,存储基于识别 该使用许可的使用许可消息的消息信息的使用许可消息信息存储部 件; 接收按照所述第一服务的认证方式的消息的第一消息接收部 件; 根据存储在所述认证信息存储部件中的认证信息来验证由所述 第一消息接收部件接收的消息,据此来特定所述第一服务的用户并且 认证所述用户是否能使用第一服务的认证部件; 接收由被所述认证部件认证为能使用第一服务的用户发送的第 二服务的使用要求的其他服务使用要求接收部件; 当由所述其他服务使用要求接收部件接收了所述使用要求时, 根据所述可使用服务信息存储部件的信息来判定所述用户是否能使用 所述第二服务的其他服务使用可否判定部件; 当由所述其他服务使用可否判定部件判定为能使用所述第二服 务时,在所述使用许可消息信息存储部件中使基于识别第二服务的使 用许可的使用许可消息的消息信息可以使用的使用许可消息信息更新 部件; 当由所述其他服务使用可否判定部件判定为能使用所述第二服 务时,向认证要求终端发送基于所述使用许可消息的使用许可响应的L 使用许可响应发送部件; 接收从服务使用终端发送的、基于所述使用许可响应的消息的 第二消息接收部件; 200310102605.3 The first service provision determination component that determines whether the second service can be provided to the service user terminal based on the message received by the second message receiving component and the message information stored in the use permission message information storage component And when it is determined by the service provision availability determination component that the second service can be provided, the use of the second service is permitted, and the use of the message information stored in the use permission message information storage component is in an unusable state License message status release component. 200310102605.3 第 根据由所述第二消息接收部件接收的消息和存储在所述使用许 可消息信息存储部件中的消息信息,来判定能否向所述服务使用终端 提供第二服务的服务提供可否判定部件;和 当由所述服务提供可否判定部件判定为能提供第二服务时,许 可第二服务的使用,并使存储在所述使用许可消息信息存储部件中的 消息信息处于不能使用的状态的使用许可消息状态解除部件。
  2. 8
    9. An authentication request terminal capable of using a first service provided by a service verification system and performing authentication for using the first service, characterized in that it includes:an authentication information storage unit storing authentication information for using the first service ;According to the authentication information stored in the authentication information storage component, the first message sending component that sends a message according to the authentication method to the service verification system;when the service verification system determines that the first service can be used, send Another service use request sending component required by the use of the second service;and a use permission response receiving component that receives the use permission response based on the use permission message sent by the service verification system. 9. 一种认证要求终端,能使用由服务验证系统提供的第一服 务,并且进行为了使用第一服务的认证,其特征在于:包括: 存储了用于使用第一服务的认证信息的认证信息存储部件; 根据存储在认证信息存储部件中的认证信息,来向所述服务验 证系统发送根据认证方式的消息的第一消息发送部件; 当通过所述服务验证系统判定为能使用第一服务时,发送第二 服务的使用要求的其他服务使用要求发送部件;和 接收由所述服务验证系统发送的、基于使用许可消息的使用许 可响应的使用许可响应接收部件。
  3. 11
    12. A service user terminal accepts the provision of a second service according to a response sent to an authentication request terminal in order to use the second service, characterized in that it includes:sending a message for using the second service to the service verification system The second message sending component;the message is based on the use permission response received by the authentication request terminal from the service verification system. 12. 一种服务使用终端,根据为了使用第二服务而向认证要求 终端发送的响应,来接受第二服务的提供,其特征在于: 包括向所述服务验证系统发送用于使用第二服务的消息的第二 消息发送部件; 所述消息基于所述认证要求终端从所述服务验证系统接收的使 用许可响应。
  4. 13
    14. A service provision method includes a service verification system that provides multiple services, an authentication request terminal that is authenticated by the service verification system and uses the first service provided by the service verification system, and sends a request to the service verification system to use the second service. The authentication requires the terminal to send a response to use the second service provided by the service verification system to use the terminals server to verify the service provided in the network system, and is characterized in that it includes:the authentication requires the terminal to send the authentication according to the authentication information The first message sending step received by the service verification system;verify the message received in the first message sending step according to the authentication information pre-stored in the service verification system, and specify the The authentication step of authenticating the user who requires the terminal and authenticating whether the user can use the first service;when the first service can be used, the authentication requires the terminal to send the use requirement of the second service to other services sent by the service verification system Use request sending step;when the use request is received in the other service use request sending step, the service verification system determines whether the user can use the service according to the information pre-stored in the service verification system The step of determining whether to use other services of the second service;when it is determined that the second service can be used in the step of determining whether to use the other service, store the information based on second The use permission message information update step of the use permission message of the use permission message of the service use permission;when it is determined that the second service can be used in the other service use permission determination step, the service verification system authenticates The terminal is required to send a use permission response based on the use permission message in the use permission response sending step;the service user terminal sends to the service verification system the use permission response based on the authentication request terminal received in the use permission response sending step The second message sending step of the message;according to the message received in the second message receiving step and the message stored in the using 14. 一种服务提供方法,在具有提供多种服务的服务验证系 统、由所述服务验证系统认证并且使用由所述服务验证系统提供的第 一服务的认证要求终端、和为了使用第二服务而向认证要求终端发送 的响应,来使用由所述服务验证系统提供的第二服务的服务使用终端 的服务器验证网络系统中提供服务,其特征在于:包括: 所述认证要求终端根据认证信息发送符合认证方式的消息,来 使所述服务验证系统接收的第一消息发送步骤; 根据预先存储在所述服务验证系统中的认证信息来验证第一消 息发送步骤中接收的消息,据此来特定所述认证要求终端的用户并且 认证所述用户是否能使用第一服务的认证步骤; 当能使用第一服务时,所述认证要求终端把第二服务的使用要 求向所述服务验证系统发送的其他服务使用要求发送步骤; 当在所述其他服务使用要求发送步骤中接收了所述使用要求 时,所述服务验证系统根据预先存储在所述服务验证系统中的信息, 来判定所述用户是否能使用所述第二服务的其他服务使用可否判定步 骤; 当在所述其他服务使用可否判定步骤中判定为能使用所述第二 服务时,在所述使用许可消息信息存储部件中存储基于用来识别第二 服务的使用许可的使用许可消息的消息信息的使用许可消息信息更新 步骤; 当在所述其他服务使用可否判定步骤中判定为能使用所述第二 服务时,所述服务验证系统向所述认证要求终端发送基于使用许可消 息的使用许可响应的使用许可响应发送步骤; 所述服务使用终端向所述服务验证系统发送基于所述认证要求 终端在所述使用许可响应发送步骤中接收的使用许可响应的消息的第 二消息发送步骤; 根据在所述第二消息接收步骤中接收的消息和存储在所述使用 200310102605.3 The message information in the storage component of the permission message status is used to determine whether the second service can be provided to the service user terminal to determine whether the second service can be provided;when it is determined that the second service can be provided through the service provision determination step , The use permission message state release step of permitting the use of the second service, and making the message information stored in the use permission message information storage component in an unusable state. 200310102605.3 第 许可消息状态存储部件中的消息信息,来判定能否向所述服务使用终 端提供第二服务的服务提供可否判定步骤; 当通过所述服务提供可否判定步骤判定为能提供第二服务时, 许可第二服务的使用,使存储在所述使用许可消息信息存储部件中的 消息信息处于不能使用的状态的使用许可消息状态解除步骤。