EP2000939B1

Person oneself authenticating system and person oneself authenticating method

Abstract

This record has no abstract on file.

EP2000939B1, drawing sheet 1
Sheet 1 of 14

Term

Term ended

Expired 31 May 2026, 0.3 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

1 claim: 1 independent, 0 dependent

  1. 1
    A user authentication method for authenticating, in a transaction system, whether a user who has accessed the transaction system from a terminal device (10) is a registered user, including:an authentication request accepting step of accepting, by the transaction system, an authentication request by the user who has accessed from the terminal device (10);characterized by an authentication data creating step of selecting, by the transaction system, at least one authentication key from an authentication key list of the user whose authentication request is accepted, the authentication key list being stored in an authentication key list memory unit that stores one or more authentication keys, which are selected by the registered user in the authentication key list, and combining at least a part of authentication key data of the authentication key and at least a part of key data of one or two or more keys, which are not included in the authentication key list, thereby creating authentication data which is continuously reproduced;an authentication data transmission step of transmitting, by the transaction system, the authentication data to the terminal device (10);an authentication information reception step of receiving, by the transaction system, authentication information representing a user authenticating action on the terminal device (10) while the authentication data in the terminal device (10) is reproduced, wherein the received authentication information is a string of binary data;and an authentication information collation step of collating, by the transaction system, a first string of binary data of the received authentication information with a second string of binary data specified from reference authentication data, thereby determining whether the user is an authenticated person, wherein each of the authentication key data and the key data, which are used in the authentication data creating step, is sound source data which varies with time at a time period of reproduction, the string of binary data of the received authentication information represents time history data specifying at least one time period during which the user authentication action is continuously performed and at least one time period during which the user authentication action is not performed , and wherein the first string of binary data represents the time period specifying at least one time period during which the authentication action is performed and the second string of binary data represents a time period in which the authentication key should be reproduced, which is specified from the authentication data, wherein the first string of binary data is created by creating a sequence data composed of first bit strings by dividing strings of bits recorded in the authentication information at the position corresponding to the points of time of the change of reproduction of the authentication key or the key creating the first string of binary data by deleting one or more bits from the beginning of each of the first bit strings in the sequence data, wherein the number of bits deleted corresponds to a grace time, wherein the grace time is set for each individual user by a total value of a time that is needed for the user to determine a change of the key, by setting initial values considering the age or skill and subsequently updating the initial values each time the authentication is executed. and a time that is needed for the authentication day