IP Library Granted Patent US 11,240,666
Granted Patent B2
US 11,240,666 · App. 16/598,472 · Granted Feb 1, 2022

Authentication method for accessing network, authentication device, and user device

Inventor: Ruobin Zheng (Shenzhen, CN)
Assignee: HUAWEI TECHNOLOGIES CO., LTD.
H04W12/069G06K9/00892H04L63/0861H04L63/102H04W12/08H04W12/63H04W12/68
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,240,666
App. No.
16/598,472
Granted
Feb 1, 2022
Kind
B2
Abstract

This application discloses an authentication method for accessing a network, an authentication device, and a user device. The method includes: an authentication device receives an authentication response message sent by user device, where the authentication response message includes first data, and the first data is data obtained by the user device based on biometric feature data of a target user. The authentication device obtains second data from a server, where the second data is data obtained by the server based on biometric feature data of a user, and generates indication information when the first data is the same as the second data, where the indication information is used to indicate that the user device is authenticated. The authentication device sends the indication information to the user device.

Claims (80)

1. An authentication method for accessing a network, applied to an authentication device, wherein the method comprises:

receiving an authentication response message sent by a user device, wherein the authentication response message comprises a first data, and the first data is data obtained by the user device based on a biometric feature data of a target user;

obtaining a second data from a server, wherein the second data is data obtained by the server based on a biometric feature data of a user;

generating an indication information when the first data is the same as the second data, wherein the indication information is used to indicate that the user device is authenticated; and

sending the indication information to the user device,

wherein the authentication response message further comprises index information, the index information being configured to identify the user device or the target user,

wherein the obtaining second data from the server comprises:

sending a retrieval request message to the server, wherein the retrieval request message comprises the index information;

receiving third data sent by the server, wherein the third data is a stored biometric feature data of the user that is obtained by the server based on the index information; and

converting the third data into the second data, and

wherein before the receiving the authentication response message sent by the user device, the method further comprises:

receiving an authentication request message sent by the user device, wherein the authentication request message is used to request the authentication device to send a random data;

obtaining the random data; and

sending the random data to the user device; and

the converting the third data into the second data comprises:

calculating the third data and the random data by using a hash function, to obtain the second data.

2. The method according to claim 1 , wherein the first data is a first feature vector, the second data is the third data, the third data is a second feature vector, the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user, and the second feature vector is a feature vector obtained by the server based on the biometric feature data of the user; or

the first data is a first feature code, the second data is the third data, the third data is a second feature code, the first feature code is a feature code obtained after the user device converts a first feature vector, the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user, the second feature code is a feature code obtained after the server converts a second feature vector, and the second feature vector is a feature vector obtained by the server based on the biometric feature data of the user.

3. The method according to claim 1 , wherein the first data is a second feature vector, the second data is a third feature vector, the third data is a fourth feature vector, the random data is a random vector, the second feature vector is a feature vector obtained by calculating a first feature vector and the random vector by using a hash function, the third feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user, and the fourth feature vector is a feature vector obtained by the server based on the biometric feature data of the user; or

the first data is a second feature code, the second data is a third feature code, the third data is a fourth feature code, the random data is a random code, the second feature code is a feature code obtained by calculating a first feature code and the random code by using a hash function, the third feature code is a feature code obtained after the user device converts a first feature vector, the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user, the fourth feature code is a feature code obtained after the server converts a second feature vector, and the second feature vector is a feature vector obtained by the server based on the biometric feature data of the user.

4. An authentication method for accessing a network, applied to a user device, wherein the method comprises:

obtaining first data based on biometric feature data of a target user, wherein the first data is data obtained by the user device based on the data obtained by preprocessing a biometric feature of the target user;

sending an authentication response message to an authentication device, wherein the authentication response message comprises the first data; and

receiving indication information sent by the authentication device, wherein the indication information is used to indicate that the user device is authenticated,

wherein the authentication response message further comprises index information, the index information being configured to identify the user device or the target user,

wherein the obtaining the first data based on the biometric feature data of the target user comprises:

collecting the biometric feature data of the target user;

obtaining target data based on the biometric feature data of the target user, wherein the target data is the data obtained by preprocessing the biometric feature of the target user; and

converting the target data into the first data, and

wherein before the converting the target data into the first data, the method further comprises:

sending an authentication request message to the authentication device, wherein the authentication request message is used to request the authentication device to send a random data; and

receiving the random data sent by the authentication device; and

the converting the target data into the first data comprises:

calculating the target data and the random data by using a hash function, to obtain the first data.

5. The method according to claim 4 , wherein the first data is the target data, the target data is a first feature vector, and the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user; or

the first data is the target data, the target data is a first feature code, the first feature code is a feature code obtained after the user device converts a first feature vector, and the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user.

6. The method according to claim 4 , wherein the first data is a second feature vector, the target data is a first feature vector, the random data is a random vector, and the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user; or

the first data is a second feature code, the target data is a first feature code, the first feature code is a feature code obtained after the user device converts a first feature vector, and the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user.

7. An authentication device, wherein the authentication device comprises:

a processor; and

a non-transitory computer-readable storage medium coupled to the processor and storing programming instructions for execution by the processor, the programming instructions instruct the processor to:

receive an authentication response message sent by a user device, wherein the authentication response message comprises first data, and the first data is data obtained by the user device based on biometric feature data of a target user;

obtain second data from a server, wherein the second data is data obtained by the server based on biometric feature data of a user;

generate indication information when the first data is the same as the second data, wherein the indication information is used to indicate that the user device is authenticated; and

send the indication information to the user device,

wherein the authentication response message further comprises index information, the index information being configured to identify the user device or the target user,

wherein the programming instructions instruct the processor to:

send a retrieval request message to the server, wherein the retrieval request message comprises the index information;

receive third data sent by the server, wherein the third data is stored biometric feature data of the user that is obtained by the server based on the index information; and

convert the third data into the second data, and

wherein the programming instructions further instruct the processor to:

receive an authentication request message sent by the user device, wherein the authentication request message is used to request the authentication device to send a random data;

obtain the random data; and

send the random data to the user device; and

wherein the programming instructions instruct the processor to:

calculate the third data and the random data by using a hash function, to obtain the second data.

8. The authentication device according to claim 7 , wherein the first data is a first feature vector, the second data is the third data, the third data is a second feature vector, the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user, and the second feature vector is a feature vector obtained by the server based on the biometric feature data of the user; or

the first data is a first feature code, the second data is the third data, the third data is a second feature code, the first feature code is a feature code obtained after the user device converts a first feature vector, the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user, the second feature code is a feature code obtained after the server converts a second feature vector, and the second feature vector is a feature vector obtained by the server based on the biometric feature data of the user.

9. The authentication device according to claim 7 , wherein the first data is a second feature vector, the second data is a third feature vector, the third data is a fourth feature vector, the random data is a random vector, the second feature vector is a feature vector obtained by calculating a first feature vector and the random vector by using a hash function, the third feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user, and the fourth feature vector is a feature vector obtained by the server based on the biometric feature data of the user; or

the first data is a second feature code, the second data is a third feature code, the third data is a fourth feature code, the random data is a random code, the second feature code is a feature code obtained by calculating a first feature code and the random code by using a hash function, the third feature code is a feature code obtained after the user device converts a first feature vector, the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user, the fourth feature code is a feature code obtained after the server converts a second feature vector, and the second feature vector is a feature vector obtained by the server based on the biometric feature data of the user.

10. A user device, wherein the user device comprises:

a processor; and

a non-transitory computer-readable storage medium coupled to the processor and storing programming instructions for execution by the processor, the programming instructions instruct the processor to:

obtain first data based on biometric feature data of a target user, wherein the first data is data obtained by the user device based on the data obtained by preprocessing a biometric feature of the target user;

send an authentication response message to an authentication device, wherein the authentication response message comprises the first data; and

receive indication information sent by the authentication device, wherein the indication information is used to indicate that the user device is authenticated,

wherein the authentication response message further comprises index information, the index information being configured to identify the user device or the target user,

wherein the programming instructions instruct the processor to:

collect the biometric feature data of the target user;

obtain target data based on the biometric feature data of the target user, wherein the target data is the data obtained by preprocessing the biometric feature of the target user; and

convert the target data into the first data, and

wherein the programming instructions further instruct the processor to:

send an authentication request message to the authentication device, wherein the authentication request message is used to request the authentication device to send a random data; and

receive the random data sent by the authentication device; and

wherein the programming instructions instruct the processor to:

calculate the target data and the random data by using a hash function, to obtain the first data.

11. The user device according to claim 10 , wherein the first data is the target data, the target data is a first feature vector, and the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user; or

the first data is the target data, the target data is a first feature code, the first feature code is a feature code obtained after the user device converts a first feature vector, and the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user.

12. The user device according to claim 10 , wherein the first data is a second feature vector, the target data is a first feature vector, the random data is a random vector, and the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user; or

the first data is a second feature code, the target data is a first feature code, the first feature code is a feature code obtained after the user device converts a first feature vector, and the first feature vector is a feature vector obtained by the user device based on the biometric feature data of the target user.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 29, 2020
From: ZHENG, RUOBIN
To: HUAWEI TECHNOLOGIES CO., LTD.
Reel/Frame 053338/0586 →
Priority Claims (1)
CN 201710289715.7 · Apr 27, 2017 · national
Continuity (2)
Continuation PCTCN2018084789 · Apr 27, 2018
Related Publication 20200045045A1 · Feb 6, 2020