发明名称 Access control system and access control method thereof
摘要 An access control system and an access control method thereof are provided. The access control system comprises a handheld device, an access control server and a terminal recording device. The handheld device has a user identification. The access control server is configured to store a user identification set, connect to the handheld device within a first time interval, determine that the user identification is included in the user identification set, generate a one-time password (OTP) seed set, and transmit the OTP seed set to the handheld device. The terminal recording device connects to the handhold device within a second time interval, and performs a two-way identification certification with the handheld device according to the OTP seed set so that the handheld device performs a data access to the terminal recording device after achieving the two-way identification certification.
申请公布号 US8909937(B2) 申请公布日期 2014.12.09
申请号 US201113324090 申请日期 2011.12.13
申请人 Institute for Information Industry 发明人 Ruan He-Ming;Lei Chin-Laung;Liu Yung-Chih
分类号 H04L9/32;H04L9/30;G06F21/34;H04L29/06;G01D4/00;H04L9/08;G01R22/06 主分类号 H04L9/32
代理机构 Greer, Burns & Crain, Ltd. 代理人 Greer, Burns & Crain, Ltd.
主权项 1. An access control system, comprising: a handheld device is configured for storing a user identification; an access control server, is configured for: storing a user identification set,connecting to the handheld device within a first time interval,determining that the user identification of the handheld device is included in the user identification set,generating a one-time password (OTP) seed set, and transmitting the OTP seed set to the handheld device; and a terminal recording device is configured for: connecting to the handheld device within a second time interval, andperforming a two-way identification certification with the handheld device according to the OTP seed set, enabling the handheld device for performing a data access to the terminal recording device after achieving the two-way identification certification, wherein the handheld device is further configured for: storing a first public key and a first private key, wherein the access control server is further configured for: storing a second public key and a second private key, wherein the terminal recording device is further configured for: storing a terminal key, and the OTP seed set comprises a first OTP seed set and a second OTP seed set; wherein the access control server and the terminal recording device are further configured for: storing a random numeric value and a separate time numeric value, said values are synchronized through a predefined remote connection between the access control server and the terminal recording device; and wherein the access control server is further configured for: storing the terminal key, determining that the user identification of the handheld device is included in the user identification set according to the first public key and the second private key,generating an environmental parameter according to the random value and the time numeric value,performing a one-way calculation on the environmental parameter and the user identification to generate the first OTP seed set,performing a one-way calculation on the environmental parameter and the terminal key to generate the second OTP seed set, andtransmitting the first OTP seed set and the second OTP seed set to the handheld device.
地址 Taipei TW
您可能感兴趣的专利