CN105356998A - TrustZone-based domain space switching system and method - Google Patents

TrustZone-based domain space switching system and method Download PDF

Info

Publication number
CN105356998A
CN105356998A CN201510628574.8A CN201510628574A CN105356998A CN 105356998 A CN105356998 A CN 105356998A CN 201510628574 A CN201510628574 A CN 201510628574A CN 105356998 A CN105356998 A CN 105356998A
Authority
CN
China
Prior art keywords
domain space
trustzone
key
handover
domain
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201510628574.8A
Other languages
Chinese (zh)
Other versions
CN105356998B (en
Inventor
江跃龙
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Original Assignee
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Yulong Computer Telecommunication Scientific Shenzhen Co Ltd filed Critical Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Priority to CN201510628574.8A priority Critical patent/CN105356998B/en
Priority to PCT/CN2015/093546 priority patent/WO2017054294A1/en
Publication of CN105356998A publication Critical patent/CN105356998A/en
Application granted granted Critical
Publication of CN105356998B publication Critical patent/CN105356998B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
    • H04L9/0819Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0816Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Storage Device Security (AREA)

Abstract

The invention discloses a TrustZone-based domain space switching system and method. The system comprises a switching request acquisition module, an extraction instruction generation module, a TrustZone and a domain space switcher, wherein the switching request acquisition module is used for acquiring a corresponding switching request instruction when a first domain space in a multi-domain space needs to be switched to a second domain space; the extraction instruction generation module is used for generating a key extraction instruction according to the switching request instruction; the TrustZone is used for storing switching keys; and the domain space switcher is used for extracting a switching key corresponding to switching to the second domain space from the TrustZone under the control of the key extraction instruction, and finishing a corresponding switching operation by using the switching key. The switching keys for switching the domain spaces are stored in the TrustZone, and data saved inside the TrustZone is difficult to steal from the outside since the TrustZone is constructed with a strict security mechanism, thereby enhancing the security of the switching keys.

Description

A kind of domain space switched system based on TrustZone and method
Technical field
The present invention relates to field of information security technology, particularly a kind of domain space switched system based on TrustZone and method.
Background technology
Along with informationalized development, intelligent mobile terminal obtains applying more and more widely.In order to improve the managerial ability of intelligent mobile terminal to data message, by arranging multiple domain space on an intelligent mobile terminal, to utilize different domain spaces, different user data can be managed now.
But when carrying out handover operation to domain spaces different on intelligent mobile terminal, required handover key is kept in file system, as being kept on the subregion such as data subregion or persist subregion of Android.Because the fail safe of these subregions in protected data is poor, thus cause the handover key be kept on these subregions to be easy to be stolen by other people, and then the fail safe of user-space messages cannot be ensured.
Can find out in sum how to improve the fail safe of handover key, thus the fail safe improving user-space messages is current problem demanding prompt solution.
Summary of the invention
In view of this, the object of the present invention is to provide a kind of domain space switched system based on TrustZone and method, improve the fail safe of handover key, thus improve the fail safe of user-space messages.Its concrete scheme is as follows:
Based on a domain space switched system of TrustZone, be applied to the multiple domain space of intelligent mobile terminal, described multiple domain space comprises at least two domain spaces; Described system comprises:
Handover request acquisition module, for when the first domain space in described multiple domain space needs to switch to the second domain space, obtains corresponding handover request instruction;
Extracting directive generation module, for obtaining the described handover request instruction that described handover request acquisition module sends, and according to described handover request instruction, generating cipher key-extraction instruction;
TrustZone, for bank switching key;
Domain space switch, for obtaining described cipher key-extraction instruction, under the control of described cipher key-extraction instruction, extraction and handover key corresponding when switching to described second domain space from described TrustZone; And utilize this handover key to complete the handover operation switching to described second domain space from described first domain space.
Preferably, described system also comprises:
Raw information acquisition module, for obtaining raw information;
Key production module, for obtaining the described raw information that described raw information acquisition module sends, and utilize key schedule, described raw information is processed, obtain handover key, and this handover key is sent to described TrustZone, to utilize described TrustZone, this handover key is stored.
Preferably, described raw information acquisition module is fingerprint feature information detecting module, iris feature information detection module, face feature information detection module, sound characteristic information detection module, palm print characteristics information detection module or keyboard.
Preferably, described raw information acquisition module is domain space ID extraction module;
Described domain space ID extraction module, for extracting the ID of domain space, and using the ID of domain space as raw information.
Preferably, described system, also comprises:
Data transmission channel, for connecting described TrustZone and described domain space switch, when described domain space switch needs to extract handover key from described TrustZone, transfers to described domain space switch by this handover key;
Channel data encrypting module, for being encrypted transmission to the data transmitted in described data transmission channel.
The invention also discloses a kind of domain space changing method based on TrustZone, be applied to the multiple domain space of intelligent mobile terminal, described multiple domain space comprises at least two domain spaces; Described method comprises:
When the first domain space in described multiple domain space needs to switch to the second domain space, obtain corresponding handover request instruction;
According to described handover request instruction, generate cipher key-extraction instruction;
Under the control of described cipher key-extraction instruction, extract that prestore with handover key corresponding when switching to described second domain space from TrustZone; And utilize this handover key to complete the handover operation switching to described second domain space from described first domain space.
Preferably, described method also comprises:
Obtain raw information, and utilize key schedule, described raw information is processed, obtains handover key, and this handover key is sent to described TrustZone, to utilize described TrustZone, this handover key is stored.
Preferably, the process of described acquisition raw information comprises: obtain the fingerprint feature information of user, iris feature information, face feature information, sound characteristic information, palm print characteristics information or the character string information by input through keyboard.
Preferably, the process of described acquisition raw information comprises: the ID extracting domain space, and using the ID of domain space as described raw information.
Preferably, described method, also comprises:
When described domain space switch needs to extract handover key from described TrustZone, by data transmission channel, this handover key is transferred to described domain space switch;
Transmission is encrypted to the data transmitted in described data transmission channel.
In the present invention, domain space switched system comprises handover request acquisition module, extracts directive generation module, TrustZone and domain space switch.Wherein, handover request acquisition module is used for when the first domain space in multiple domain space needs to switch to the second domain space, obtains corresponding handover request instruction; Extract directive generation module and according to handover request instruction, cipher key-extraction instruction can be generated; TrustZone is then for bank switching key; Domain space switch then can under the control of cipher key-extraction instruction, extraction and handover key corresponding when switching to the second domain space from TrustZone; And utilize this handover key to complete the handover operation switching to the second domain space from the first domain space.As can be seen here, the present invention utilizes the handover key of TrustZone storage for switching domain space, and because TrustZone self adopts strict security mechanism to build, its inner data of preserving are difficult to be stolen by the external world.Handover key is stored on TrustZone by the present invention, and when needs utilize handover key to switch domain space, extracts relevant handover key just can by domain space switch from TrustZone.Visible, the present invention, under the prerequisite of handoff procedure ensureing not domain of influence space, improves the fail safe of handover key, thus improves the fail safe of user-space messages.
Accompanying drawing explanation
In order to be illustrated more clearly in the embodiment of the present invention or technical scheme of the prior art, be briefly described to the accompanying drawing used required in embodiment or description of the prior art below, apparently, accompanying drawing in the following describes is only embodiments of the invention, for those of ordinary skill in the art, under the prerequisite not paying creative work, other accompanying drawing can also be obtained according to the accompanying drawing provided.
Fig. 1 is a kind of domain space switched system application structure schematic diagram based on TrustZone disclosed in the embodiment of the present invention;
Fig. 2 is a kind of domain space switched system application structure schematic diagram based on TrustZone specifically disclosed in the embodiment of the present invention;
Fig. 3 is a kind of domain space changing method flow chart based on TrustZone disclosed in the embodiment of the present invention.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention, be clearly and completely described the technical scheme in the embodiment of the present invention, obviously, described embodiment is only the present invention's part embodiment, instead of whole embodiments.Based on the embodiment in the present invention, those of ordinary skill in the art, not making the every other embodiment obtained under creative work prerequisite, belong to the scope of protection of the invention.
The embodiment of the invention discloses a kind of domain space switched system based on TrustZone, be applied to the multiple domain space of intelligent mobile terminal, multiple domain space comprises at least two domain spaces; Shown in Figure 1, this system comprises:
Handover request acquisition module 11, for when the first domain space in multiple domain space needs to switch to the second domain space, obtains corresponding handover request instruction;
Extracting directive generation module 12, for obtaining the handover request instruction that handover request acquisition module 11 sends, and according to handover request instruction, generating cipher key-extraction instruction;
TrustZone13, for bank switching key;
Domain space switch 14, for obtaining cipher key-extraction instruction, under the control of cipher key-extraction instruction, extraction and handover key corresponding when switching to the second domain space from TrustZone13; And utilize this handover key to complete the handover operation switching to the second domain space from the first domain space.
It should be noted that, TrustZone is a kind of framework for promoting consumer-elcetronics devices Information Security, builds based on strict security mechanism, has high fail safe.
In addition, when switching to different domain spaces in the present embodiment, required handover key can be different, certainly according to the actual needs, also can adopt identical handover key.
In the embodiment of the present invention, domain space switched system comprises handover request acquisition module, extracts directive generation module, TrustZone and domain space switch.Wherein, handover request acquisition module is used for when the first domain space in multiple domain space needs to switch to the second domain space, obtains corresponding handover request instruction; Extract directive generation module and according to handover request instruction, cipher key-extraction instruction can be generated; TrustZone is then for bank switching key; Domain space switch then can under the control of cipher key-extraction instruction, extraction and handover key corresponding when switching to the second domain space from TrustZone; And utilize this handover key to complete the handover operation switching to the second domain space from the first domain space.
As can be seen here, the embodiment of the present invention utilizes the handover key of TrustZone storage for switching domain space, and because TrustZone self adopts strict security mechanism to build, its inner data of preserving are difficult to be stolen by the external world.Handover key is stored on TrustZone by the embodiment of the present invention, and when needs utilize handover key to switch domain space, extracts relevant handover key just can by domain space switch from TrustZone.Visible, the embodiment of the present invention, under the prerequisite of handoff procedure ensureing not domain of influence space, improves the fail safe of handover key, thus improves the fail safe of user-space messages.
The invention discloses a kind of domain space switched system based on TrustZone specifically, shown in Figure 2, relative to a upper embodiment, the embodiment of the present invention expands further instruction and optimization to technical scheme.Specific as follows:
In the present embodiment, system can also comprise raw information acquisition module 15 and key production module 16.Wherein,
Raw information acquisition module 15 can be used for obtaining raw information; Key production module 16 can be used for the raw information obtaining the transmission of raw information acquisition module 15, and utilize key schedule, raw information is processed, obtains handover key, and this handover key is sent to TrustZone13, to utilize TrustZone13, this handover key is stored.Wherein, existing common key schedule can be utilized to process raw information, concrete key schedule is not limited at this.
Concrete, above-mentioned raw information acquisition module 15 can be fingerprint feature information detecting module, iris feature information detection module, face feature information detection module, sound characteristic information detection module, palm print characteristics information detection module or keyboard.Wherein, keyboard is for inputting corresponding character string information as raw information.
Certainly, above-mentioned raw information acquisition module 15 can also be domain space ID extraction module, specifically for extracting the ID of domain space, and using the ID of domain space as raw information.
The system of the present embodiment also comprises data transmission channel 17, and to transfer to the fail safe of data the process of domain space switch 14 from TrustZone13 in order to promote handover key, the system of the present embodiment can also comprise channel data encrypting module 18, wherein,
Data transmission channel 17 can be used for connecting TrustZone13 and domain space switch 14, when domain space switch 14 needs to extract handover key from TrustZone13, this handover key is transferred to domain space switch 14; Channel data encrypting module 18 then for being encrypted transmission to the data of transmission in data transmission channel 17, thus further increases the difficulty stealing handover key.
The embodiment of the invention also discloses a kind of domain space changing method based on TrustZone, be applied to the multiple domain space of intelligent mobile terminal, multiple domain space comprises at least two domain spaces; Shown in Figure 3, the method comprises:
Step S301: when the first domain space in multiple domain space needs to switch to the second domain space, obtain corresponding handover request instruction;
Step S302: according to handover request instruction, generates cipher key-extraction instruction;
Step S303: under the control of cipher key-extraction instruction, extracts that prestore with handover key corresponding when switching to the second domain space from TrustZone;
Step S304: utilize this handover key to complete the handover operation switching to the second domain space from the first domain space.
Method in the present embodiment can also comprise: obtain raw information, and utilize key schedule, process, obtain handover key, and this handover key is sent to TrustZone, store to utilize TrustZone to this handover key raw information.Wherein, existing common key schedule can be utilized to process raw information, concrete key schedule is not limited at this.
Concrete, the process obtaining raw information can be: obtain the fingerprint feature information of user, iris feature information, face feature information, sound characteristic information, palm print characteristics information or the character string information by input through keyboard.
Certainly, the process obtaining raw information can also be: the ID extracting domain space, and using the ID of domain space as raw information.
To transfer to the fail safe of data the process of domain space switch from TrustZone in order to promote handover key, method in the present embodiment can also comprise: when domain space switch needs extract handover key from TrustZone, by data transmission channel, this handover key is transferred to domain space switch; Transmission is encrypted to the data transmitted in data transmission channel, thus further increases the difficulty stealing handover key.
In the embodiment of the present invention, domain space changing method comprises, and when the first domain space in multiple domain space needs to switch to the second domain space, obtains corresponding handover request instruction; Then according to handover request instruction, cipher key-extraction instruction is generated; Under the control of cipher key-extraction instruction, extraction and handover key corresponding when switching to the second domain space from TrustZone; And utilize this handover key to complete the handover operation switching to the second domain space from the first domain space.
As can be seen here, the embodiment of the present invention utilizes the handover key of TrustZone storage for switching domain space, and because TrustZone self adopts strict security mechanism to build, its inner data of preserving are difficult to be stolen by the external world.Handover key is stored on TrustZone by the embodiment of the present invention, and when needs utilize handover key to switch domain space, extracts relevant handover key just can by domain space switch from TrustZone.Visible, the embodiment of the present invention, under the prerequisite of handoff procedure ensureing not domain of influence space, improves the fail safe of handover key, thus improves the fail safe of user-space messages.
Finally, also it should be noted that, in this article, the such as relational terms of first and second grades and so on is only used for an entity or operation to separate with another entity or operating space, and not necessarily requires or imply the relation that there is any this reality between these entities or operation or sequentially.And, term " comprises ", " comprising " or its any other variant are intended to contain comprising of nonexcludability, thus make to comprise the process of a series of key element, method, article or equipment and not only comprise those key elements, but also comprise other key elements clearly do not listed, or also comprise by the intrinsic key element of this process, method, article or equipment.When not more restrictions, the key element limited by statement " comprising ... ", and be not precluded within process, method, article or the equipment comprising described key element and also there is other identical element.
Above a kind of domain space switched system based on TrustZone provided by the present invention and method are described in detail, apply specific case herein to set forth principle of the present invention and execution mode, the explanation of above embodiment just understands method of the present invention and core concept thereof for helping; Meanwhile, for one of ordinary skill in the art, according to thought of the present invention, all will change in specific embodiments and applications, in sum, this description should not be construed as limitation of the present invention.

Claims (10)

1. based on a domain space switched system of TrustZone, it is characterized in that, be applied to the multiple domain space of intelligent mobile terminal, described multiple domain space comprises at least two domain spaces; Described system comprises:
Handover request acquisition module, for when the first domain space in described multiple domain space needs to switch to the second domain space, obtains corresponding handover request instruction;
Extracting directive generation module, for obtaining the described handover request instruction that described handover request acquisition module sends, and according to described handover request instruction, generating cipher key-extraction instruction;
TrustZone, for bank switching key;
Domain space switch, for obtaining described cipher key-extraction instruction, under the control of described cipher key-extraction instruction, extraction and handover key corresponding when switching to described second domain space from described TrustZone; And utilize this handover key to complete the handover operation switching to described second domain space from described first domain space.
2. the domain space switched system based on TrustZone according to claim 1, is characterized in that, also comprise:
Raw information acquisition module, for obtaining raw information;
Key production module, for obtaining the described raw information that described raw information acquisition module sends, and utilize key schedule, described raw information is processed, obtain handover key, and this handover key is sent to described TrustZone, to utilize described TrustZone, this handover key is stored.
3. the domain space switched system based on TrustZone according to claim 2, it is characterized in that, described raw information acquisition module is fingerprint feature information detecting module, iris feature information detection module, face feature information detection module, sound characteristic information detection module, palm print characteristics information detection module or keyboard.
4. the domain space switched system based on TrustZone according to claim 2, is characterized in that, described raw information acquisition module is domain space ID extraction module;
Described domain space ID extraction module, for extracting the ID of domain space, and using the ID of domain space as raw information.
5. the domain space switched system based on TrustZone according to any one of Claims 1-4, is characterized in that, also comprise:
Data transmission channel, for connecting described TrustZone and described domain space switch, when described domain space switch needs to extract handover key from described TrustZone, transfers to described domain space switch by this handover key;
Channel data encrypting module, for being encrypted transmission to the data transmitted in described data transmission channel.
6. based on a domain space changing method of TrustZone, it is characterized in that, be applied to the multiple domain space of intelligent mobile terminal, described multiple domain space comprises at least two domain spaces; Described method comprises:
When the first domain space in described multiple domain space needs to switch to the second domain space, obtain corresponding handover request instruction;
According to described handover request instruction, generate cipher key-extraction instruction;
Under the control of described cipher key-extraction instruction, extract that prestore with handover key corresponding when switching to described second domain space from TrustZone; And utilize this handover key to complete the handover operation switching to described second domain space from described first domain space.
7. the domain space changing method based on TrustZone according to claim 6, is characterized in that, also comprise:
Obtain raw information, and utilize key schedule, described raw information is processed, obtains handover key, and this handover key is sent to described TrustZone, to utilize described TrustZone, this handover key is stored.
8. the domain space changing method based on TrustZone according to claim 7, it is characterized in that, the process of described acquisition raw information comprises: obtain the fingerprint feature information of user, iris feature information, face feature information, sound characteristic information, palm print characteristics information or the character string information by input through keyboard.
9. the domain space changing method based on TrustZone according to claim 7, is characterized in that, the process of described acquisition raw information comprises:
Extract the ID of domain space, and using the ID of domain space as described raw information.
10. the domain space changing method based on TrustZone according to any one of claim 6 to 9, is characterized in that, also comprise:
When described domain space switch needs to extract handover key from described TrustZone, by data transmission channel, this handover key is transferred to described domain space switch;
Transmission is encrypted to the data transmitted in described data transmission channel.
CN201510628574.8A 2015-09-28 2015-09-28 A kind of domain space switching system and method based on TrustZone Active CN105356998B (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN201510628574.8A CN105356998B (en) 2015-09-28 2015-09-28 A kind of domain space switching system and method based on TrustZone
PCT/CN2015/093546 WO2017054294A1 (en) 2015-09-28 2015-10-31 Trustzone-based domain space switching system and method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510628574.8A CN105356998B (en) 2015-09-28 2015-09-28 A kind of domain space switching system and method based on TrustZone

Publications (2)

Publication Number Publication Date
CN105356998A true CN105356998A (en) 2016-02-24
CN105356998B CN105356998B (en) 2019-06-11

Family

ID=55332878

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510628574.8A Active CN105356998B (en) 2015-09-28 2015-09-28 A kind of domain space switching system and method based on TrustZone

Country Status (2)

Country Link
CN (1) CN105356998B (en)
WO (1) WO2017054294A1 (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106130731A (en) * 2016-06-22 2016-11-16 宇龙计算机通信科技(深圳)有限公司 A kind of domain space changing method and system
CN107103251A (en) * 2017-04-26 2017-08-29 杭州中天微系统有限公司 The processor of containment mapping access interface

Citations (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102171704A (en) * 2008-10-03 2011-08-31 微软公司 External encryption and recovery management with hardware encrypted storage devices
CN102841989A (en) * 2011-06-24 2012-12-26 国民技术股份有限公司 Operation system protection method and operation system protection device
CN103714459A (en) * 2013-12-26 2014-04-09 电子科技大学 Secure payment system and method of intelligent terminal
CN104463028A (en) * 2013-09-25 2015-03-25 中国银联股份有限公司 Safety mode prompting method and movable device for implementing method
CN104516777A (en) * 2013-10-04 2015-04-15 三星电子株式会社 User interface management method and system
CN104598793A (en) * 2015-01-08 2015-05-06 百度在线网络技术(北京)有限公司 Fingerprint authentication method and fingerprint authentication device
CN104679558A (en) * 2015-02-09 2015-06-03 西安酷派软件科技有限公司 Switching method used among multiple systems and terminal
CN104700268A (en) * 2015-03-30 2015-06-10 中科创达软件股份有限公司 Mobile payment method and mobile device
CN104778393A (en) * 2015-04-16 2015-07-15 电子科技大学 Security fingerprint identification method for intelligent terminal

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
DE102011012226A1 (en) * 2011-02-24 2012-08-30 Giesecke & Devrient Gmbh Method for operating a microprocessor unit, in particular in a mobile terminal
CN104378381A (en) * 2014-11-27 2015-02-25 上海斐讯数据通信技术有限公司 Intelligent terminal enterprise Email security office method and system

Patent Citations (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102171704A (en) * 2008-10-03 2011-08-31 微软公司 External encryption and recovery management with hardware encrypted storage devices
CN102841989A (en) * 2011-06-24 2012-12-26 国民技术股份有限公司 Operation system protection method and operation system protection device
CN104463028A (en) * 2013-09-25 2015-03-25 中国银联股份有限公司 Safety mode prompting method and movable device for implementing method
CN104516777A (en) * 2013-10-04 2015-04-15 三星电子株式会社 User interface management method and system
CN103714459A (en) * 2013-12-26 2014-04-09 电子科技大学 Secure payment system and method of intelligent terminal
CN104598793A (en) * 2015-01-08 2015-05-06 百度在线网络技术(北京)有限公司 Fingerprint authentication method and fingerprint authentication device
CN104679558A (en) * 2015-02-09 2015-06-03 西安酷派软件科技有限公司 Switching method used among multiple systems and terminal
CN104700268A (en) * 2015-03-30 2015-06-10 中科创达软件股份有限公司 Mobile payment method and mobile device
CN104778393A (en) * 2015-04-16 2015-07-15 电子科技大学 Security fingerprint identification method for intelligent terminal

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106130731A (en) * 2016-06-22 2016-11-16 宇龙计算机通信科技(深圳)有限公司 A kind of domain space changing method and system
CN107103251A (en) * 2017-04-26 2017-08-29 杭州中天微系统有限公司 The processor of containment mapping access interface
CN107103251B (en) * 2017-04-26 2020-04-21 杭州中天微系统有限公司 Processor including a mapping access interface

Also Published As

Publication number Publication date
CN105356998B (en) 2019-06-11
WO2017054294A1 (en) 2017-04-06

Similar Documents

Publication Publication Date Title
US10659226B2 (en) Data encryption method, decryption method, apparatus, and system
CN105246026B (en) A kind of safe matching method of intelligence wearable device and other equipment
CN105208005A (en) Fingerprint authentication method, connection equipment and terminal equipment
CN104751538A (en) Implementation method for opening access controller, and access control system
CN109543423A (en) Control panel encryption and manner of decryption, terminal device and computer readable storage medium
CN105337733A (en) Two-dimensional code locking control method based on combination of synchronous-asynchronous secret key verification
CN105064805A (en) Intelligent door lock control system
CN205068524U (en) Intelligent gate inhibition system
CN105261097A (en) Intelligent door lock control method and system
CN103051459B (en) The management method of the transaction key of safety card and device
Bohan et al. Encryption node design in Internet of Things based on fingerprint features and cc2530
CN105356998A (en) TrustZone-based domain space switching system and method
CN105426727A (en) Fingerprint decryption method and mobile terminal
CN103596175A (en) Mobile intelligent terminal certification system and method based on near field communication technology
CN104618380A (en) Secret key update method suitable for internet of things
CN104915581A (en) Augmented reality unlocking system and method
CN106936571A (en) Synthesize computing using word to realize the method that single label key is wirelessly generated
CN104506533A (en) RFID (radio frequency identification) label ownership transfer method based on PUF (physical unclonable function)
US11539535B2 (en) Generating an authentication result by using a secure base key
CN105577650A (en) Remote time synchronization method and system of one-time password (OTP)
CN104992489A (en) Intelligent switch system
CN102622621B (en) Communication method for improving security of radio frequency identification system
CN106656946B (en) Dynamic authentication method and device
CN103441854A (en) Link protection method and system
CN105827403B (en) Security method, security gate and server

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant