CN103631672A - Mobile device with functions of data backup and data recovery and method for performing data backup and data recovery on mobile device - Google Patents

Mobile device with functions of data backup and data recovery and method for performing data backup and data recovery on mobile device Download PDF

Info

Publication number
CN103631672A
CN103631672A CN201210296022.8A CN201210296022A CN103631672A CN 103631672 A CN103631672 A CN 103631672A CN 201210296022 A CN201210296022 A CN 201210296022A CN 103631672 A CN103631672 A CN 103631672A
Authority
CN
China
Prior art keywords
mobile device
cryptographic hash
data
key
private key
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201210296022.8A
Other languages
Chinese (zh)
Inventor
王晓勇
吕启明
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Ambit Microsystems Shanghai Ltd
Hon Hai Precision Industry Co Ltd
Original Assignee
Ambit Microsystems Shanghai Ltd
Hon Hai Precision Industry Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Ambit Microsystems Shanghai Ltd, Hon Hai Precision Industry Co Ltd filed Critical Ambit Microsystems Shanghai Ltd
Priority to CN201210296022.8A priority Critical patent/CN103631672A/en
Publication of CN103631672A publication Critical patent/CN103631672A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Mobile Radio Communication Systems (AREA)
  • Storage Device Security (AREA)

Abstract

The invention relates to a mobile device with functions of data backup and data recovery. A backup data decrypting unit generates a fusion secret key according to a main secret key input by a user, an encrypted public key and an encrypted private key in a backup data package are decrypted, the decrypted private key is used for decrypting an encrypted Hash value in the backup data package to obtain a first Hash value. A Hash value calculation unit calculates out a second Hash value of encrypted user data, the public key and the private key in the backup data package. When a Hash value comparison unit determines that the first Hash value is equal to the second Hash value, the backup data decrypting unit decrypts the user data with the obtained private key after decryption. A processing unit is used for executing the corresponding mobile device updating program. The invention further provides a method for performing data backup and data recovery on the mobile device. By means of the mobile device with the functions of data backup and data recovery and the method for performing data backup and data recovery on the mobile device, the main secret key input by the user is used for generating the fusion secret key to decrypt the public key, the private key and the user data in the backup data package in order to update the system. The safety problem in storage of backup files in the prior art is solved.

Description

Mobile device and the method with data backup and data recovery function
Technical field
The present invention relates to redundancy technique field, relate in particular to a kind of mobile device and data backup and data reconstruction method with data backup and data recovery function.
Background technology
Development along with mobile technology, portable mobile device, as smart mobile phone, panel computer etc., is being related to that the ruuning situation of mobile device and the system file of safety case have vital role, therefore, the backup of system file, reducibility and security are more and more important.In the prior art, mobile device has corresponding mobile memory medium conventionally, as CD, for the backup file of storage system file.Yet the data of mobile memory medium are easily lost and data security, while making mobile device that backup file is installed, there is certain risk.
Summary of the invention
In view of this, be necessary to provide a kind of mobile device and method with data backup and data recovery function, to solve the preservation of backup file of mobile device of the prior art and the technical matters that tool for mounting diminishes the security risk of becoming estranged.
The invention provides a kind of mobile device with data backup and data recovery function, this mobile device is connected with a server communication by network, this mobile device comprises processing unit and communication unit, and this processing unit is controlled this communication unit from this server download one corresponding backup data package for responding the operation of this mobile device renewal.This mobile device also comprises:
Backup Data decryption unit, for generating corresponding melting key according to the master key of user's input, obtain the encrypted PKI and the private key that in this backup data package, comprise, utilize this this PKI of melting secret key decryption and private key, so that the PKI obtaining after deciphering and private key are stored in to the safety zone that this processing unit arranges.The encrypted cryptographic hash also comprising for reading this backup data package, utilizes the private key obtaining after deciphering to decipher this cryptographic hash to obtain the first cryptographic hash.
Cryptographic hash computing unit, for reading the encrypted user data of this backup data package and encrypted PKI and private key to calculate and to obtain corresponding the second cryptographic hash.
Cryptographic hash comparing unit, for relatively and judge whether this first cryptographic hash equates with this second cryptographic hash, and when this first cryptographic hash of judgement equates with this second cryptographic hash, trigger this Backup Data decryption unit and utilize the private key of storing in this safety zone to decipher this user data.And
User data storage unit, for storing by the user data obtaining after this Backup Data decryption unit deciphering, carries out corresponding mobile device refresh routine by this processing unit according to the user data obtaining after this deciphering.
The present invention also provides a kind of mobile device with data backup and data recovery function, and this mobile device is connected with a server communication by network, and this mobile device comprises processing unit and communication unit, and this mobile device also comprises:
Key generation unit, for generating a corresponding melting key according to the master key of user's input, and is stored in the safety zone of this processing unit.Also for generating corresponding PKI and private key according to this melting key, and be stored in this safety zone.
User data storage unit, for storing user data.
Backup Data ciphering unit, for obtaining user data from this user data storage unit, utilizes and is stored in this user data obtaining of public key encryption in this safety zone, utilizes this melting key to encrypt respectively this PKI and the private key of storing in this safety zone.
Cryptographic hash computing unit, for this encrypted user data of whole joint account and encrypted PKI and the cryptographic hash of private key, utilizes this cryptographic hash calculating of this public key encryption of storing in this safety zone to trigger this Backup Data ciphering unit.And
Backup Data generation unit, for merging this encrypted user data and encrypted PKI and private key, generate corresponding backup data package, and by this processing unit, control this communication unit this backup data package be uploaded in this server and stored, for other mobile device download decryption with renewal system.
The present invention also provides a kind of data backup and data reconstruction method of mobile device, and wherein, this mobile device comprises a processing unit, and this processing unit arranges a safety zone, and the method comprises:
Connect this mobile device to one server, this server stores has at least one backup data package, this backup data package is uploaded to this server by another mobile device, and this installation kit comprises encrypted user data and the PKI of being encrypted respectively, private key and cryptographic hash.
This mobile device upgrades according to this mobile device of user's operation judges or recovers.
When definite this mobile device upgrades, this mobile device obtains this backup data package from this server by network.
According to the master key of user's input, generate corresponding melting key.
Utilize the PKI of being encrypted respectively and the private key that in this this backup data package of melting secret key decryption, comprise.
This PKI obtaining after store decrypted and private key are to the safety zone that this mobile device processing unit arranges.
The encrypted cryptographic hash of utilizing this private key obtaining after deciphering to decipher to comprise in this backup data package is to obtain the first cryptographic hash.
Calculate user data encrypted in this backup data package and the PKI of being encrypted respectively and private key to obtain the second cryptographic hash.
Relatively and judge whether this first cryptographic hash equates with the second cryptographic hash.
When definite this first cryptographic hash equates with the second cryptographic hash, utilize the private key of storing in this safety zone to decipher user data encrypted in this backup data package.And
Store the user data obtaining after this deciphering, and carry out the renewal that corresponding program is carried out this mobile device.
The present invention also provides a kind of data backup and data reconstruction method of mobile device, and wherein, this mobile device comprises a processing unit, and this processing unit arranges a safety zone, and the method comprises:
Connect this mobile device to one server.
According to the master key of user's input, generate a corresponding melting key, and the melting key storage of this generation is to this safety zone.
According to this melting key, generate corresponding PKI and private key, and this PKI and private key are stored in this safety zone.
The user data that obtains this mobile device storage, utilizes this user data of this public key encryption.
Utilize this melting key to encrypt respectively this PKI and private key.
Calculate the cryptographic hash of this encrypted user data and the PKI of being encrypted respectively and private key.
Utilize this cryptographic hash of public key encryption of this safety zone storage, these encrypted data and the PKI of being encrypted respectively and private key are merged to generate corresponding backup data package, and this backup data package is uploaded to this server, for other mobile devices, download and upgrade.
These other mobile devices upgrade according to user's operation judges or recover.
When definite these other mobile devices upgrade, this backup data package is downloaded to these other mobile devices from this server.
According to the master key of user's input, generate corresponding melting key.
Utilize the PKI of being encrypted respectively and the private key that in this this backup data package of melting secret key decryption, comprise.
This PKI obtaining after store decrypted and private key are to the safety zone that these other mobile device processing units arrange.
The encrypted cryptographic hash of utilizing this private key obtaining after deciphering to decipher to comprise in this backup data package is to obtain the first cryptographic hash.
Calculate user data encrypted in this backup data package and the PKI of being encrypted respectively and private key to obtain the second cryptographic hash.
Relatively and judge whether this first cryptographic hash equates with the second cryptographic hash.
When definite this first cryptographic hash equates with the second cryptographic hash, utilize the private key of storing in the safety zone of these other mobile devices to decipher user data encrypted in this backup data package.And
Store the user data obtaining after this deciphering, and carry out the renewal that corresponding program is carried out these other mobile devices.
With respect to prior art, mobile device and data backup and the data reconstruction method with data backup and data recovery function provided by the invention, mobile device generates corresponding PKI and private key according to the master key of user's input, and user data is encrypted, to generate the backup data package of the PKI, private key and the user data that comprise encryption, upload onto the server for other mobile device down loading updatings.When other mobile devices need to upgrade system, download corresponding backup data package, and utilize PKI, private key and the user data in the melting secret key decryption backup data package that master key that user inputs generates, and move corresponding program and carry out system update, thereby the preservation of backup file of mobile device of the prior art and the technical matters that tool for mounting diminishes the security risk of becoming estranged have been solved.
Accompanying drawing explanation
Fig. 1 is the hardware structure figure of the system with data backup and data recovery function in embodiment of the present invention.
Fig. 2 is the high-level schematic functional block diagram of the mobile device with data backup and data recovery function in embodiment of the present invention.
Fig. 3 is the process flow diagram of the backup of data of mobile device in embodiment of the present invention and data reconstruction method.
Fig. 4 is the encryption method process flow diagram of the data of mobile device backup in embodiment of the present invention.
Main element symbol description
System 10
Mobile device 20
The first mobile device 20a
The second mobile device 20b
Key generation unit 21
Processing unit 22
User data storage unit 23
Backup Data ciphering unit 24
Cryptographic hash computing unit 25
Backup Data generation unit 26
Communication unit 27
Backup Data decryption unit 28
Cryptographic hash comparing unit 29
Server 30
Following embodiment further illustrates the present invention in connection with above-mentioned accompanying drawing.
Embodiment
Below in conjunction with accompanying drawing, the present invention is described in further detail.
Refer to Fig. 1, for thering is the hardware structure figure of the system of data backup and data recovery function in embodiment of the present invention, wherein, this system 10 comprises a plurality of mobile devices 20 and a server 30, and the plurality of mobile device 20 is communicated and is connected with server 30 by network.In the present embodiment, this server 30 is a cloud server.This mobile device 20 can be the portable mobile devices such as mobile phone, panel computer.
Refer to Fig. 2, this mobile device 20 comprises key generation unit 21, processing unit 22, user data storage unit 23, Backup Data ciphering unit 24, cryptographic hash computing unit 25 and Backup Data generation unit 26.This mobile device 20 response users carry out the instruction of user data backup and transplanting and carry out security information establishment, particularly, key generation unit 21 generates a corresponding melting key (fused key) according to a master key of user's input, and the melting key of this generation is burned onto to the safety zone arranging in processing unit 22.This key generation unit 21 also generates corresponding PKI and private key according to the melting key of this generation, and the PKI of this generation and private key are stored in the safety zone arranging in processing unit 22 simultaneously.Wherein, the safety zone arranging in this processing unit 22 is merely able to authorized user's access.
When security information has created, 20 of this mobile devices user data to required backup and transplanting is encrypted, and particularly, this user data storage unit 23 is for preserving user data, and this user data can comprise that system arranges data, internal storage data etc.This Backup Data ciphering unit 24 obtains stored user data from user data storage unit 23, reads the PKI being stored in the safety zone arranging in processing unit 22 simultaneously, and the user data that utilizes public key encryption to obtain.This Backup Data ciphering unit 24 also reads melting key and the private key being stored in the safety zone arranging in processing unit 22, and utilizes melting key to encrypt respectively this PKI and private key.The user data that the whole joint account of this cryptographic hash computing unit 25 is encrypted and the cryptographic hash of the PKI of being encrypted respectively and private key.Further, the cryptographic hash that this Backup Data ciphering unit 24 also utilizes from processing unit 22 public key encryption that obtains in the safety zone arranging to be calculated by cryptographic hash computing unit 25, and merge this encrypted user data and the PKI of being encrypted respectively and private key by Backup Data generation unit 26, to generate corresponding backup data package.
This mobile device 20 also comprises communication unit 27.When this mobile device 20 generates backup data package, processing unit 22 is controlled this communication unit 27 this backup data package is uploaded onto the server to 30 by network, and by these server 30 storages.
This mobile device 20 also comprises Backup Data decryption unit 28 and cryptographic hash comparing unit 29.When another mobile device 20 is downloaded required backup data package by network from server 30, this another mobile device 20 is decrypted by the backup data package to this download, to obtain corresponding user data, to upgrade further the system of this another mobile device 20.The present invention will be take this system 10 and be comprised that the first mobile device 20a and the second mobile device 20b are illustrated as example, wherein, this first mobile device 20a uploads onto the server 30 by networking by backup data package, this second mobile device 20b downloads this backup data package by network from server 30 when needs upgrade system, and decipher this backup data package by this second mobile device 20b, to obtain corresponding user data.
Particularly, whether the processing unit 22 of this second mobile device 20b carries out mobile device renewal or recovery according to user's operation judges, and the renewal of this mobile device or revert to is upgraded or the system of recovering this mobile device arranges data, internal storage data etc.
When definite this second mobile device 20b need to carry out system update, the backup data package that this second mobile device 20b storage is downloaded from server 30, this processing unit 22 merges a master key of being inputted by user, and this key generation unit 21 generates a corresponding melting key according to the fusion of the master key of 22 pairs of this user inputs of processing unit.Backup Data decryption unit 28 reads the PKI of being encrypted respectively and the private key comprising in the backup data package of this download, utilize melting secret key decryption this PKI reading and private key of this generation, and the PKI and the private key that when successful decryption, this process deciphering are obtained are stored in the safety zone arranging in processing unit 22.This Backup Data decryption unit 28 also reads the encrypted cryptographic hash comprising in this backup data package, and utilizes this private key obtaining after deciphering to be decrypted this cryptographic hash, to obtain the cryptographic hash (calling the first cryptographic hash in the following text) after a corresponding deciphering.This cryptographic hash computing unit 25 reads user data encrypted in this backup data package and the PKI of being encrypted respectively and private key, carries out cryptographic hash calculating, to obtain a corresponding cryptographic hash (calling the second cryptographic hash in the following text).This cryptographic hash comparing unit 29 compares the first cryptographic hash and the second cryptographic hash, to determine whether the first cryptographic hash equates with the second cryptographic hash.When definite the first cryptographic hash equates with the second cryptographic hash, this Backup Data decryption unit 28 is obtained the private key of storing in the safety zone arranging in the processing unit 22 of user data encrypted in this backup data package and this second mobile device 20b, utilize this private key to decipher this user data, and the storage of subscriber data obtaining after this being deciphered when successful decryption is in user data storage unit 23.Further, this processing unit 22 is carried out the refresh routine of corresponding mobile device according to the user data obtaining.
In addition, when definite this second mobile device 20b only needs recovery system data, now, in this second mobile device 20b, stored backup data package, this second mobile device 20b only need be decrypted to carry out the recovery of system to this backup data package.Particularly, in the safety zone that this Backup Data decryption unit 28 arranges from the processing unit 22 of this second mobile device 20b, read the melting key of having stored, Backup Data decryption unit 28 reads the PKI of being encrypted respectively and the private key comprising in backup data package, this PKI of melting secret key decryption and the private key that utilize this to read, and when successful decryption, by this Backup Data decryption unit 28, read the encrypted cryptographic hash that this Backup Data comprises in comprising, and utilize this private key obtaining after deciphering to be decrypted this cryptographic hash, to obtain the first cryptographic hash, then, as previously mentioned, decipher this user data, and when successful decryption, this processing unit 22 is carried out the recovery routine of corresponding mobile device according to the user data obtaining.
Referring to Fig. 3, is the process flow diagram of data of mobile device backup of the present invention and data reconstruction method, and the method comprises:
Step S300, whether the processing unit 22 of this second mobile device 20b carries out recovery or the renewal of this mobile device according to user's operation judges, and wherein, the system setting, internal memory of mobile device etc. upgraded in the recovery of this mobile device or be updated to.If so, enter step S301, otherwise, step S310 entered.
Step S301, the processing unit 22 of this second mobile device 20b is controlled communication unit 27 and is downloaded corresponding backup data package from server 30, and stores this backup data package.Wherein, this backup data package is generated and is uploaded onto the server 30 by network by the first mobile device 20a.
Step S302, the processing unit 22 of this second mobile device 20b merges a master key of being inputted by user, and according to the fusion of the master key of 22 pairs of this user inputs of processing unit, generates a corresponding melting key by key generation unit 21.
Step S303, this Backup Data decryption unit 28 reads the PKI of being encrypted respectively and the private key comprising in this backup data package, utilizes melting secret key decryption this PKI reading and private key of this generation.
Step S304, when successful decryption, PKI and private key that this Backup Data decryption unit 28 obtains this process deciphering are stored in the safety zone arranging in processing unit 22.
Step S305, this Backup Data decryption unit 28 reads the encrypted cryptographic hash that Backup Data comprises in comprising, and utilize this private key obtaining after deciphering to be decrypted this cryptographic hash, to obtain the cryptographic hash (calling the first cryptographic hash in the following text) after a corresponding deciphering.
Step S306, this cryptographic hash computing unit 25 reads user data encrypted in backup data package and the PKI of being encrypted respectively and private key and carries out cryptographic hash calculating, to obtain a corresponding cryptographic hash (calling the second cryptographic hash in the following text).
Step S307, this cryptographic hash comparing unit 29 compares the first cryptographic hash and the second cryptographic hash, to determine whether the first cryptographic hash equates with the second cryptographic hash.If so, enter step S308, otherwise, finish.
Step S308, when definite the first cryptographic hash equates with the second cryptographic hash, this Backup Data decryption unit 28 is obtained the private key of storing in the safety zone arranging in the processing unit 22 of user data encrypted in backup data package and this second mobile device 20b, utilizes this private key to decipher this user data.
Step S309, when successful decryption, this Backup Data decryption unit 28 is by the storage of subscriber data obtaining after this deciphering in user data storage unit 23, and further, this processing unit 22 is carried out recovery or the refresh routine of corresponding mobile device according to the user data obtaining.
Step S310, when definite this second mobile device 20 recovers, reads the melting key of having stored in the safety zone that this Backup Data decryption unit 28 arranges from the processing unit 22 of this second mobile device 20b.
Step S311, Backup Data decryption unit 28 reads the PKI of being encrypted respectively and the private key comprising in backup data package, utilizes this this PKI of melting secret key decryption and private key, and returns to step S305.
Referring to Fig. 4, is the method flow diagram that mobile device Backup Data of the present invention is encrypted, and the method comprises:
Step S40, this mobile device 20 response users carry out the instruction of user data backup and transplanting and carry out security information establishment, and input a master key by user.
Step S41, key generation unit 21 generates a corresponding melting key according to the master key of user's input, and the melting key of this generation is burned onto to the safety zone arranging in processing unit 22.
Step S42, this key generation unit 21 also generates corresponding PKI and private key according to the melting key of this generation, and the PKI of this generation and private key are stored to the safety zone arranging in processing unit 22 simultaneously.Wherein, the safety zone arranging in this processing unit 22 is merely able to authorized user's access.
Step S43, this Backup Data ciphering unit 24 obtains stored user data from user data storage unit 23, reads the PKI being stored in the safety zone arranging in processing unit 22 simultaneously, and the user data that utilizes public key encryption to obtain.Wherein, this user data storage unit 23 is for preserving user data, and this user data can comprise that system arranges data, internal storage data etc.
Step S44, this Backup Data ciphering unit 24 also reads melting key and the private key being stored in the safety zone arranging in processing unit 22, and utilizes melting key to encrypt respectively this PKI and private key.
Step S45, this cryptographic hash computing unit 25 is according to encrypted user data and the PKI of being encrypted respectively and private key calculating cryptographic hash.
Step S46, the cryptographic hash that this Backup Data ciphering unit 24 also utilizes the public key encryption that reads to calculate, and by Backup Data generation unit 26, encrypted user data and the PKI of being encrypted respectively and private key are merged to generate corresponding backup data package, and by network 30 storages that upload onto the server.
Use above-mentioned mobile device and data backup and the data reconstruction method with data backup and data recovery function, mobile device generates corresponding PKI and private key according to the master key of user's input, and user data is encrypted, to generate the backup data package of the PKI, private key and the user data that comprise encryption, upload onto the server for other mobile device down loading updatings.When other mobile devices need to upgrade system, download corresponding backup data package, and utilize PKI, private key and the user data in the melting secret key decryption backup data package that master key that user inputs generates, and move corresponding program and carry out system update, thereby the preservation of backup file of mobile device of the prior art and the technical matters that tool for mounting diminishes the security risk of becoming estranged have been solved.
Be understandable that, for the person of ordinary skill of the art, can make other various corresponding changes and distortion by technical conceive according to the present invention, and all these change and distortion all should belong to the protection domain of the claims in the present invention.

Claims (10)

1. a mobile device with data backup and data recovery function, described mobile device is connected with a server communication by network, described mobile device comprises processing unit and communication unit, it is characterized in that, described processing unit is controlled described communication unit from described server download one corresponding backup data package for responding the operation of described mobile device renewal; Described mobile device also comprises:
Backup Data decryption unit, for generating corresponding melting key according to the master key of user's input, obtain the encrypted PKI and the private key that in described backup data package, comprise, utilize PKI and private key described in described melting secret key decryption, the PKI obtaining after deciphering and private key are stored in to the safety zone of described processing unit setting; The encrypted cryptographic hash also comprising for reading described backup data package, utilizes the private key obtaining after deciphering to decipher described cryptographic hash to obtain the first cryptographic hash;
Cryptographic hash computing unit, for reading the encrypted user data of described backup data package and encrypted PKI and private key to calculate and to obtain corresponding the second cryptographic hash;
Cryptographic hash comparing unit, for relatively and judge whether described the first cryptographic hash equates with described the second cryptographic hash, and when described the first cryptographic hash of judgement equates with described the second cryptographic hash, trigger described Backup Data decryption unit and utilize the private key of storing in described safety zone to decipher described user data; And
User data storage unit, for storing the user data obtaining by after described Backup Data decryption unit deciphering, the user data being obtained afterwards according to described deciphering by described processing unit is carried out corresponding mobile device refresh routine.
2. the mobile device with data backup and data recovery function as claimed in claim 1, it is characterized in that, described mobile device is stored a backup data package, pre-stored one corresponding melting key in described safety zone, the operation that described processing unit also more recovers for responding described mobile device, trigger described Backup Data decryption unit and read encrypted PKI and the private key comprising in the backup data package of described mobile device storage, utilize PKI and private key described in described melting secret key decryption, and utilize the private key obtaining after deciphering to decipher the encrypted cryptographic hash comprising in the backup data package of described mobile device storage, to obtain described the first cryptographic hash.
3. the mobile device with data backup and data recovery function as claimed in claim 2, is characterized in that, also comprises:
Key generation unit, for generating according to the master key of user's input the melting key of storing described safety zone; Also for generating corresponding PKI and private key according to described melting key, and be stored in described safety zone; And
Backup Data ciphering unit, for obtaining user data from described user data storage unit, and utilizes described melting key to encrypt respectively described PKI and the private key of storing in described safety zone.
4. the mobile device with data backup and data recovery function as claimed in claim 3, it is characterized in that, also comprise Backup Data generation unit, described cryptographic hash computing unit is also for the cryptographic hash of the encrypted user data of whole joint account and the PKI of being encrypted respectively and private key, described Backup Data ciphering unit is the cryptographic hash for utilizing the public key encryption that stores described safety zone to be calculated by described cryptographic hash computing unit also, described Backup Data generation unit is for merging described encrypted user data and the PKI of being encrypted respectively and private key, to generate corresponding described backup data package.
5. a mobile device with data backup and data recovery function, described mobile device is connected with a server communication by network, and described mobile device comprises processing unit and communication unit, it is characterized in that, and described mobile device also comprises:
Key generation unit, for generating a corresponding melting key according to the master key of user's input, and is stored in the safety zone of described processing unit; Also for generating corresponding PKI and private key according to described melting key, and be stored in described safety zone;
User data storage unit, for storing user data;
Backup Data ciphering unit, for obtaining user data from described user data storage unit, utilization is stored in the user data obtaining described in the public key encryption in described safety zone, utilizes described melting key to encrypt respectively described PKI and the private key of storing in described safety zone;
Cryptographic hash computing unit, for user data encrypted described in whole joint account and encrypted PKI and the cryptographic hash of private key, to trigger described Backup Data ciphering unit, utilize the cryptographic hash calculating described in the described public key encryption of storing in described safety zone; And
Backup Data generation unit, for merging described encrypted user data and encrypted PKI and private key, generate corresponding backup data package, and by described processing unit, control described communication unit described backup data package be uploaded in described server and stored, for other mobile device download decryption with renewal system.
6. the mobile device with data backup and data recovery function as claimed in claim 5, it is characterized in that, also comprise and reply data decryption unit and cryptographic hash comparing unit, the operation that described processing unit also recovers for responding described mobile device, trigger described Backup Data decryption unit and generate corresponding melting key according to the master key of user's input, obtain the encrypted PKI and the private key that in described backup data package, comprise, utilize PKI and private key described in described melting secret key decryption, so that the PKI obtaining after deciphering and private key are stored in to the safety zone that described processing unit arranges, read the encrypted cryptographic hash comprising in described backup data package, utilize the private key obtaining after deciphering to decipher described cryptographic hash to obtain the first cryptographic hash, described cryptographic hash computing unit reads user data encrypted in described backup data package and encrypted PKI and private key to calculate and to obtain corresponding the second cryptographic hash, described cryptographic hash comparing unit relatively and judge whether described the first cryptographic hash equates with described the second cryptographic hash, and when described the first cryptographic hash of judgement equates with described the second cryptographic hash, triggering described Backup Data decryption unit utilizes the private key of storing in described safety zone to decipher described user data, and store by described user data storage unit the user data that described deciphering obtains afterwards, the user data that described processing unit obtains afterwards according to described deciphering is carried out corresponding mobile device recovery routine.
7. data of mobile device backs up and a data reconstruction method, and wherein, described mobile device comprises a processing unit, and described processing unit arranges a safety zone, and described method comprises:
Connect described mobile device to server, described server stores has at least one backup data package, described backup data package is uploaded to described server by another mobile device, and described installation kit comprises encrypted user data and the PKI of being encrypted respectively, private key and cryptographic hash;
Described mobile device upgrades according to mobile device described in user's operation judges or recovers;
When definite described mobile device upgrades, described mobile device obtains described backup data package from described server by network;
According to the master key of user's input, generate corresponding melting key;
Utilize the PKI of being encrypted respectively and the private key that in backup data package, comprise described in described melting secret key decryption;
The described PKI obtaining after store decrypted and private key are to the safety zone that described mobile device processing unit arranges;
The encrypted cryptographic hash of utilizing the described private key obtaining after deciphering to decipher to comprise in described backup data package is to obtain the first cryptographic hash;
Calculate user data encrypted in described backup data package and the PKI of being encrypted respectively and private key to obtain the second cryptographic hash;
Relatively and judge whether described the first cryptographic hash equates with the second cryptographic hash;
When definite described the first cryptographic hash equates with the second cryptographic hash, utilize the private key of storing in described safety zone to decipher user data encrypted in described backup data package; And
Store the user data that described deciphering obtains afterwards, and carry out the renewal that corresponding program is carried out described mobile device.
8. data of mobile device backup as claimed in claim 7 and data reconstruction method, is characterized in that, when definite described mobile device recovers, described method also comprises:
The melting key of reading pre-stored from described safety zone;
Utilize the PKI of being encrypted respectively and the private key that in the backup data package of mobile device storage described in described melting secret key decryption, comprise, carry out the described private key obtaining after described utilization deciphering and decipher the encrypted cryptographic hash that comprises in described backup data package to obtain the step of the first cryptographic hash.
9. data of mobile device backs up and a data reconstruction method, and wherein, described mobile device comprises a processing unit, and described processing unit arranges a safety zone, and described method comprises:
Connect described mobile device to server;
According to the master key of user's input, generate a corresponding melting key, and the melting key storage of described generation is to described safety zone;
According to described melting key, generate corresponding PKI and private key, and described PKI and private key are stored in described safety zone;
Obtain the user data of described mobile device storage, utilize user data described in described public key encryption;
Utilize described melting key to encrypt respectively described PKI and private key;
Calculate the cryptographic hash of described encrypted user data and the PKI of being encrypted respectively and private key;
Utilize cryptographic hash described in the public key encryption of described safety zone storage, described encrypted data and the PKI of being encrypted respectively and private key are merged to generate corresponding backup data package, and described backup data package is uploaded to described server, for other mobile devices, download and upgrade;
Described other mobile devices upgrade according to user's operation judges or recover;
When determining that described other mobile devices upgrade, described backup data package is downloaded to described other mobile devices from described server;
According to the master key of user's input, generate corresponding melting key;
Utilize the PKI of being encrypted respectively and the private key that in backup data package, comprise described in described melting secret key decryption;
The described PKI obtaining after store decrypted and private key are to the safety zone that described other mobile device processing units arrange;
The encrypted cryptographic hash of utilizing the described private key obtaining after deciphering to decipher to comprise in described backup data package is to obtain the first cryptographic hash;
Calculate user data encrypted in described backup data package and the PKI of being encrypted respectively and private key to obtain the second cryptographic hash;
Relatively and judge whether described the first cryptographic hash equates with the second cryptographic hash;
When definite described the first cryptographic hash equates with the second cryptographic hash, utilize the private key of storing in the safety zone of described other mobile devices to decipher user data encrypted in described backup data package; And
Store the user data that described deciphering obtains afterwards, and carry out the renewal that corresponding program is carried out described other mobile devices.
10. data of mobile device backup as claimed in claim 9 and data reconstruction method, is characterized in that, when determining that described other mobile devices recover, described method also comprises:
The melting key of reading pre-stored from the safety zone of described other mobile devices;
Utilize the PKI of being encrypted respectively and the private key that in the backup data package of other mobile devices storages described in described melting secret key decryption, comprise, carry out the described private key obtaining after described utilization deciphering and decipher the encrypted cryptographic hash that comprises in described backup data package to obtain the step of the first cryptographic hash.
CN201210296022.8A 2012-08-20 2012-08-20 Mobile device with functions of data backup and data recovery and method for performing data backup and data recovery on mobile device Pending CN103631672A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210296022.8A CN103631672A (en) 2012-08-20 2012-08-20 Mobile device with functions of data backup and data recovery and method for performing data backup and data recovery on mobile device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210296022.8A CN103631672A (en) 2012-08-20 2012-08-20 Mobile device with functions of data backup and data recovery and method for performing data backup and data recovery on mobile device

Publications (1)

Publication Number Publication Date
CN103631672A true CN103631672A (en) 2014-03-12

Family

ID=50212761

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210296022.8A Pending CN103631672A (en) 2012-08-20 2012-08-20 Mobile device with functions of data backup and data recovery and method for performing data backup and data recovery on mobile device

Country Status (1)

Country Link
CN (1) CN103631672A (en)

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105119888A (en) * 2015-07-10 2015-12-02 小米科技有限责任公司 Plug-in installation package uploading method, plug-in installation package installing method and plug-in installation package uploading device
CN108777691A (en) * 2018-06-12 2018-11-09 山东智慧云链网络科技有限公司 Network safety protection method and device
CN109190378A (en) * 2018-09-19 2019-01-11 郑州云海信息技术有限公司 A kind of kernel restoration methods and device
CN109450777A (en) * 2018-12-28 2019-03-08 苏州开心盒子软件有限公司 Session information extracting method, device, equipment and medium
CN110351363A (en) * 2019-07-12 2019-10-18 全链通有限公司 Data back up method, equipment and computer readable storage medium
CN110431557A (en) * 2017-01-09 2019-11-08 交互数字Ce专利控股公司 Method and apparatus for executing carrying out safety backup and recovery
CN111008094A (en) * 2018-10-08 2020-04-14 阿里巴巴集团控股有限公司 Data recovery method, equipment and system
CN112328435A (en) * 2020-12-07 2021-02-05 武汉绿色网络信息服务有限责任公司 Method, device, equipment and storage medium for backing up and recovering target data
CN112488685A (en) * 2020-12-23 2021-03-12 杨宁波 User private key protection method for block chain
CN114499891A (en) * 2022-03-21 2022-05-13 宁夏凯信特信息科技有限公司 Signature server system and signature verification method
CN114499891B (en) * 2022-03-21 2024-05-31 宁夏凯信特信息科技有限公司 Signature server system and signature verification method

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101006428A (en) * 2004-06-21 2007-07-25 摩托罗拉公司 Secure data backup and recovery
CN101403985A (en) * 2008-05-04 2009-04-08 北京深思洛克软件技术股份有限公司 Software permission backup method for software protection apparatus
CN101676925A (en) * 2008-09-16 2010-03-24 联想(北京)有限公司 Computer system and method of setting authentication information in security chip

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101006428A (en) * 2004-06-21 2007-07-25 摩托罗拉公司 Secure data backup and recovery
CN101403985A (en) * 2008-05-04 2009-04-08 北京深思洛克软件技术股份有限公司 Software permission backup method for software protection apparatus
CN101676925A (en) * 2008-09-16 2010-03-24 联想(北京)有限公司 Computer system and method of setting authentication information in security chip

Cited By (16)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105119888A (en) * 2015-07-10 2015-12-02 小米科技有限责任公司 Plug-in installation package uploading method, plug-in installation package installing method and plug-in installation package uploading device
CN110431557A (en) * 2017-01-09 2019-11-08 交互数字Ce专利控股公司 Method and apparatus for executing carrying out safety backup and recovery
CN110431557B (en) * 2017-01-09 2023-09-26 交互数字麦迪逊专利控股公司 Method and apparatus for performing secure backup and restore
CN108777691A (en) * 2018-06-12 2018-11-09 山东智慧云链网络科技有限公司 Network safety protection method and device
CN108777691B (en) * 2018-06-12 2022-04-15 山东智慧云链网络科技有限公司 Network security protection method and device
CN109190378A (en) * 2018-09-19 2019-01-11 郑州云海信息技术有限公司 A kind of kernel restoration methods and device
CN111008094B (en) * 2018-10-08 2023-05-05 阿里巴巴集团控股有限公司 Data recovery method, device and system
CN111008094A (en) * 2018-10-08 2020-04-14 阿里巴巴集团控股有限公司 Data recovery method, equipment and system
CN109450777A (en) * 2018-12-28 2019-03-08 苏州开心盒子软件有限公司 Session information extracting method, device, equipment and medium
CN110351363A (en) * 2019-07-12 2019-10-18 全链通有限公司 Data back up method, equipment and computer readable storage medium
CN112328435B (en) * 2020-12-07 2023-09-12 武汉绿色网络信息服务有限责任公司 Method, device, equipment and storage medium for backing up and recovering target data
CN112328435A (en) * 2020-12-07 2021-02-05 武汉绿色网络信息服务有限责任公司 Method, device, equipment and storage medium for backing up and recovering target data
CN112488685A (en) * 2020-12-23 2021-03-12 杨宁波 User private key protection method for block chain
CN112488685B (en) * 2020-12-23 2023-12-12 杨宁波 User private key protection method for blockchain
CN114499891A (en) * 2022-03-21 2022-05-13 宁夏凯信特信息科技有限公司 Signature server system and signature verification method
CN114499891B (en) * 2022-03-21 2024-05-31 宁夏凯信特信息科技有限公司 Signature server system and signature verification method

Similar Documents

Publication Publication Date Title
CN103631672A (en) Mobile device with functions of data backup and data recovery and method for performing data backup and data recovery on mobile device
CN105260668B (en) A kind of file encrypting method and electronic equipment
CN107209983A (en) Wireless key for certification is managed
CN104584509A (en) An access control method, a device and a system for shared data
CN108848064B (en) Authorization management method and system
CN105245328A (en) User and file key generation and management method based on third party
CN102073826A (en) System and method for digital copyright management using lightweight digital watermark adding component
CN111385084A (en) Key management method and device for digital assets and computer readable storage medium
CN103946858A (en) Decryption and encryption of application data
CN111242611B (en) Method and system for recovering digital wallet key
US20150071442A1 (en) Data-encrypting method and decrypting method for a mobile phone
CN101588377A (en) Obtaining method, system and device of session key
CN113344222A (en) Safe and credible federal learning mechanism based on block chain
CN107066346A (en) A kind of data back up method, data reconstruction method and device
CN101815292A (en) Device and method for protecting data of mobile terminal
JP2012065123A (en) Ic card system, communication terminal therefor and portable terminal therefor
US20110107109A1 (en) Storage system and method for managing data security thereof
CN103634789A (en) Mobile terminal and method
JP2001103045A (en) Storage device for backing up cryptographic key
CN105574441A (en) Embedded firmware protection method and device
CN111008400A (en) Data processing method, device and system
CN101539890B (en) Data processing system, cryptogram management method and data reading and writing method
JP2014160383A (en) Portable terminal equipment and decryption processing program
CN103370718A (en) Data protection using distributed security key
CN105208017B (en) A kind of memorizer information acquisition methods

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20140312