CN107180195A - Electronic document Life cycle safety protecting method based on safety label - Google Patents

Electronic document Life cycle safety protecting method based on safety label Download PDF

Info

Publication number
CN107180195A
CN107180195A CN201710351467.4A CN201710351467A CN107180195A CN 107180195 A CN107180195 A CN 107180195A CN 201710351467 A CN201710351467 A CN 201710351467A CN 107180195 A CN107180195 A CN 107180195A
Authority
CN
China
Prior art keywords
document
electronic document
safety label
information
safety
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201710351467.4A
Other languages
Chinese (zh)
Inventor
周益周
姚金利
曾颖明
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Institute of Computer Technology and Applications
Original Assignee
Beijing Institute of Computer Technology and Applications
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Institute of Computer Technology and Applications filed Critical Beijing Institute of Computer Technology and Applications
Priority to CN201710351467.4A priority Critical patent/CN107180195A/en
Publication of CN107180195A publication Critical patent/CN107180195A/en
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/602Providing cryptographic facilities or services
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6209Protecting access to data via a platform, e.g. using keys or access control rules to a single file or object, e.g. in a secure envelope, encrypted and accessed using a key, or with access control rules appended to the object itself
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0807Network architectures or network communication protocols for network security for authentication of entities using tickets, e.g. Kerberos
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/10Network architectures or network communication protocols for network security for controlling access to devices or network resources

Abstract

The invention discloses a kind of electronic document Life cycle safety protecting method based on safety label, wherein, including:Judge whether user possesses the access rights of document;Verify the integrality of document;Carry out the decryption of electronic document;Judge the authority managing and controlling information of safety label, then document is committed to circulation person liable's terminal;Document is read, replicated and during edit operation, the authority managing and controlling information of safety label is judged;When being destroyed to document, by the way that document is committed into destruction person liable's terminal, by destroying the examination & approval of person liable's terminal;The person liable's terminal that circulates carries out approval information;Being read to document, replicate and during edit operation, judge the authority managing and controlling information of safety label, the operation to user carries out management and control;When carrying out outgoing to document, by the way that document is committed into outgoing person liable's terminal, the authority information for the person liable's terminal modifications safety label that circulates determines that document can only carry out controllable operating in known terminal.

Description

Electronic document Life cycle safety protecting method based on safety label
Technical field
The invention belongs to technical field of network security, it is proposed that a kind of electronic document Life cycle based on safety label Security architecture.
Background technology
State secret and business secret are country, government, the important intangible asset of enterprise and core competitiveness, electronic document The common carrier of this kind of assets, safety label 1 can realize the state recording to electronic document Life cycle, trajectory track and Fine granularity security management and control, the electronic document based on safety label produce, circulation, using, storage and destroy Life cycle In, face following 5 potential safety hazards.
(1) electronic document based on safety label produces the potential safety hazard in stage
Electronic document produces the stage, it is impossible to which clear and definite electronic document knows scope, authority, level of confidentiality and security deadline, level of confidentiality It is difficult to review document track after change, security level identification is easily distorted.It is fixed that close (multistage is examined the problem of there is equivocal, cognitive differ Criticize, specify fixed close approver).
(2) potential safety hazard in the electronic document circulation stage based on safety label
The diversity and dispersiveness of electronic document, frequently circulation and shared, the situation palm of the shortage to a large amount of electronic documents Control and complete detailed circulation audit.Electronic document internally network transmission when, there is High Security Level electronic document and flow to Low Security Level User;In non-internal network transport, there is the potential safety hazard such as be stolen, deny sending and receiving in transmission electronic document;Outside During hair, there is electronic document is not the potential safety hazard read by file reception people.
(3) potential safety hazard of the electronic document application stage based on safety label
Different operating department, job specification personnel it is different to the demand of electronic document, if the limiting operation of electronic document There is the potential safety hazards such as unauthorized access, copy electronic document without fine granularity control in authority,
(4) potential safety hazard in the electronic document storage stage based on safety label
It is stored in the electronic document of terminal and server, storing process and there is electronic document and be tampered, reveal, destroy Potential safety hazard.Important electronic document storage lacks perfect management and control means in external environment condition.
(5) electronic document based on safety label destroys the potential safety hazard in stage
Delete after electronic document, need to prevent from recovering electronic document by data recovery means, and obtain sensitive information, if Go beyond one's commission after use, document should be destroyed immediately.
The content of the invention
It is above-mentioned for solving it is an object of the invention to provide managing and control system in a kind of document sets based on virtualization technology Problem of the prior art.
A kind of electronic document Life cycle safety protecting method based on safety label of the present invention, wherein, including:S1、 When request creates electronic document, according to the strategy generating safety label issued, by contrasting the authority managing and controlling information of safety label, Judge whether the access rights for possessing document, if not possessing access rights, perform step S10, if possessing access rights, perform step Rapid S2;S2, document are in encrypted state, judge the unsymmetrical key information of safety label, pass through the school of unsymmetrical key information Value is tested, the public key information of document creator is contrasted, the integrality of document is verified, if checking does not pass through, step S10 is performed, if testing Card passes through, and performs step S3;S3, by symmetric key information, carry out the decryption of electronic document, determine document function content, such as To destroy document, then S4 is performed, such as to circulate and sending operation, then perform S5, be such as reading, replicate and edit operation, then Perform step S6;S4, document is committed to destruction person liable's terminal, performs step S7;S5, the authority managing and controlling for judging safety label Information, if having outgoing or circulation authority, if so, document then is committed into circulation person liable's terminal, perform step S8, if No, then step S11 is performed;S6, document is read, replicated and during edit operation, judging the authority pipe of safety label Control information, if having reading, duplication and editing authority, if so, then performing step S9, otherwise perform step S10;S7, When being destroyed to document, by the way that document is committed into destruction person liable's terminal, by destroying the examination & approval of person liable's terminal, work as safety post Sign the approval status of destroying information for by when, the document can be destroyed, otherwise, perform step S11;S8, circulation responsibility People's terminal carries out approval information, and such as circulation person liable's terminal is by the way that the approval information of document is set to by state, then this article Shelves can be circulated or outgoing, perform step S12, otherwise, perform step S11;S9, being read to document, replicate and During edit operation, judge the authority managing and controlling information of safety label, management and control carried out to the operation of user, read in user and During write operation, the number of times read and write in corresponding safety label subtracts 1, when the reading in safety label and the number of times write are 0, refusal The operation of user and record;S10, document locked, and record locking reason;S11, failure cause is back to sender, And record reason;S12, user, by the way that document is committed into outgoing person liable's terminal, work as safety when carrying out outgoing to document The outgoing number of times of label authority managing and controlling information is more than 1, the authority information for the person liable's terminal modifications safety label that circulates, and determines document Controllable operating can be only carried out in known terminal.
According to the present invention the electronic document Life cycle safety protecting method based on safety label an embodiment, its In, in electronic document Life cycle, document management and control server need to be disposed, the terminal disposition of document management and control need to carried out, text Shelves management and control server is responsible for the generation of safety label with using.
According to the present invention the electronic document Life cycle safety protecting method based on safety label an embodiment, its In, the stage is produced in electronic document, when user creates document, inner nuclear layer driving capture establishment event creates safety label, safety Label preserves the base attribute of electronic document, level of confidentiality attribute and document ownership attribute, and base attribute, which includes system, to be used to determine Unique ID of document, unique ID are without changing in the Life cycle of electronic document, and base attribute also includes electronic document Title, author, establishment and modification time, classification and path;Draft level of confidentiality, the level of confidentiality that level of confidentiality attribute includes document examine shape State, security level identification state and security deadline;Document ownership attribute includes the unit or department's mark that electronic document is produced.
According to the present invention the electronic document Life cycle safety protecting method based on safety label an embodiment, its In, in the electronic document storage stage, safety label preserves the cryptographic attributes of electronic document, by tying up for symmetric key and electronic document Determine relation to send to document management and control server, cryptographic attributes include symmetric key information and unsymmetrical key information, encrypted state And AES, symmetric key information includes certificate, check value and AES content, different based on key The different key information of file correspondence, generates electronic document ciphertext.
According to the present invention the electronic document Life cycle safety protecting method based on safety label an embodiment, its In, circulated the stage in electronic document, safety label preserves the unsymmetrical key information and approval information of electronic document, asymmetric close The key information content includes signing certificate, check value and AES, using the private key of founder to safety label and electronics text Shelves ciphertext is integrally signed, and recipient during circulation is signed with the public key verifications of electronic document founder;Approval information includes The approval status that circulates and examination & approval user.
According to the present invention the electronic document Life cycle safety protecting method based on safety label an embodiment, its In, the control of authority information issued in electronic document service stage, safety label according to document management and control server preserves electronics text The control of authority information of the safety label of shelves, control of authority information includes authorized user message, reading and writing, printing, imprinting, screenshotss And watermark, for the different classes of corresponding authority of document setup, fine-grained control, reading, editor, printing and imprinting The switch and number of times of function, and whether watermark is shown when using, when more than access times, electronic document is locked and can not made With.
According to the present invention the electronic document Life cycle safety protecting method based on safety label an embodiment, its In, electronic document destroy the stage, the destroying information of the clear and definite electronic document of safety label, when document produce, storage, circulation and During use, if there is a situation where to go beyond one's commission in violation of rules and regulations, electronic document self-locked, and destroying information is updated.
The present invention faces different potential safety hazards by studying electronic document in its life cycle different phase, and electronics is literary Shelves safety label need to specifically be designed in per stage, coordinate other necessary security protection means, and the present invention proposes one The electronic document Life cycle safety protecting method based on safety label is planted, is provided for government, enterprise based on safety label Life cycle electronic document security protection ability.
Brief description of the drawings
Fig. 1 show the electronic document Life cycle security architecture module map based on safety label;
The life cycle that Fig. 2 show safety label uses flow chart;
Fig. 3 show the flow chart of the electronic document Life cycle safety protecting method of the invention based on safety label.
Embodiment
To make the purpose of the present invention, content and advantage clearer, with reference to the accompanying drawings and examples, to the present invention's Embodiment is described in further detail.
Fig. 1 show the electronic document Life cycle security architecture module map based on safety label, such as Fig. 1 institutes Show, the electronic document Life cycle security architecture based on safety label is divided into three parts, Part I is electronics text Shelves safety label 1, different phase of the safety label 1 in electronic document Life cycle provides different security functions, second Part is electronic document running environment safety 2, and physical environment, terminal and server, network and application are the full life of electronic document Cycle provides security mechanism guarantee, and Part III is document security management system 3, in electronic document lifecycle management, The security system that should be taken.
As shown in figure 1, in electronic document Life cycle, document management and control server need to be disposed, document pipe need to carried out The terminal disposition of control, document management and control service end is responsible for the generation of safety label 1 and used with software, realizes to the complete of electronic document Life cycle management.
The life cycle that Fig. 2 show safety label uses flow chart, as shown in Figure 1 and Figure 2, the life of safety label Cycle uses flow, including:
The stage is produced in electronic document, when user creates document, inner nuclear layer driving capture establishment event creates safety label 1.Safety label 1 preserves the base attribute of electronic document, level of confidentiality attribute and document ownership attribute, and base attribute is used including system In it is determined that unique ID of document, unique ID in the Life cycle of electronic document without change, base attribute also comprising electricity The content such as title, author, establishment and the modification time of subdocument, classification, path;Level of confidentiality attribute include document draft level of confidentiality, The contents such as level of confidentiality approval status, security level identification state, security deadline;Document ownership attribute include electronic document produce unit or Department identifies.
In the electronic document storage stage, safety label 1 preserves the encryption information of electronic document, by symmetric key and electronics text The binding relationship of shelves is sent to document management and control service end.Encryption information includes symmetric key information and unsymmetrical key information, added The contents such as close state, AES, symmetric key information includes the contents such as certificate, check value and AES, thinks key Based on, using literary first secretary's mechanism, the different key information of different file correspondences generates electronic document ciphertext, can improved The security of storage is encrypted, is prevented after some file is cracked, causing the leakage of high-volume file, there is provided to electronic document Encipherment protection is stored, prevents the information of storage to be stolen.
Circulated the stage in electronic document, safety label 1 preserves the unsymmetrical key information of electronic document, approval information, non- Symmetric key information content includes the contents such as signing certificate, check value, AES, using the private key of founder to safety label 1 and electronic document ciphertext integrally signed, to ensure genuineness of document, recipient during circulation is with electronic document founder's Public key verifications sign, prevent participate in electronic document circulation either or both deny done operation ensure transmit confidentiality, Integrality and non-repudiation;Approval information includes circulation approval status, examination & approval user, prevents the personnel for not possessing examination & approval qualification from entering The examination & approval of row outgoing, Internal Transfer.
The control of authority information issued in electronic document service stage, safety label 1 according to document management and control server, is preserved The control of authority information of the safety label 1 of electronic document, control of authority information includes authorized user message, reading and writing, printing, quarter The contents such as record, screenshotss, watermark, for the different classes of corresponding authority of document setup, fine-grained control, reading, editor, beat Print, the switch and number of times of recording function, and the management and control such as watermark whether are shown when using, when more than access times, electronic document Lock and can not use, prevent Low Security Level librarian use High Security Level electronic document.
Destroyed the stage in electronic document, the destroying information of the clear and definite electronic document of safety label 1, destroying information includes destroying shape The contents such as state, document user can be in routine use phase application document destruction, when document is being produced, stores, circulates and used During, if there is a situation where to go beyond one's commission in violation of rules and regulations, electronic document self-locked, and update destroying information.
Fig. 3 show the flow chart of the electronic document Life cycle safety protecting method of the invention based on safety label, As shown in Figure 1-Figure 3,
Electronic document Life cycle safety protecting method of the invention based on safety label includes:
When S1, user's request create electronic document, the strategy generating safety label 1 issued according to service end.By right Than the authority managing and controlling information of safety label 1, judge whether user possesses the authorities such as the access of document, if not possessing access right Limit, performs step S10, if possessing access rights, performs step S2;
S2, document are in encrypted state, the unsymmetrical key information of the encryption information of safety label 1 are judged, by non-right Claim the check value of key information, contrast the public key information of document creator, verify the integrality of document, it is ensured that document is not broken It is bad, if checking does not pass through, step S10 is performed, if being verified, step S3 is performed;
S3, the symmetric key information by encryption information, realize the decryption of electronic document, determine the document function of user Content, is such as destruction document, then performs S4, is such as circulation operation, then performs S5, is such as to read, replicate and editor's operation, Then perform step S6;
S4, user, by the way that document is committed into destruction person liable's terminal, perform step when being destroyed to document S7;
S5, user judge the authority managing and controlling information of safety label 1 when carrying out Internal Transfer operation to document, if There are the authorities such as outgoing, Internal Transfer, if (when the Internal Transfer number of times of the authority managing and controlling information of safety label 1 is more than 1), then will Document is committed to Internal Transfer person liable's terminal, performs step S8, if it is not, performing step S11;
S6, user being read to document, replicate and during edit operation, judge the authority managing and controlling of safety label 1 Information, if having the authorities such as reading, duplication and editor, if so, then performing step S9, otherwise performs step S10;
S7, user to document when destroying, by the way that document is committed into destruction person liable's terminal, by destruction responsibility People's terminal examine, when the destroying information of safety label 1 approval status for by when, the document can be destroyed, otherwise, perform Step S11;
S8, Internal Transfer person liable terminal carry out approval information, and such as circulation person liable's terminal is by the way that the examination & approval of document are believed Breath is set to by state, then the document can carry out Internal Transfer or outgoing, performs step S12, otherwise, performs step S11;
S9, user judge the authority managing and controlling information of safety label 1, to using when entering the operation such as edlin to document The operation of person carries out management and control, user read and write wait operate when, the number of times of reading and writing subtracts 1 in corresponding safety label 1, when When number of operations is 0 in safety label 1, refuse operation and the record of user;
S10, document locked, and record locking reason;
S11, failure cause is back to sender, and records reason;
S12, user, by the way that document is committed into outgoing person liable's terminal, work as safety post when carrying out outgoing to document The outgoing number of times for signing 1 authority managing and controlling information is more than 1, and the authority information of circulation person liable's terminal modifications safety label 1 determines document Controllable operating can be only carried out in known terminal.Known terminal is the outgoing terminal mac that authority information is defined by safety label 1 The information such as address, terminal serial number, controllable operating is that the operating rights such as reading and writing, printing to document are defined by safety label 1 Limit.
In electronic document Life cycle, running environment and the main security function of document security management system 3 are as follows:
Physical environment secure context, office space, discrepancy personnel etc. need to have corresponding security protection means, prevent unauthorized Personnel obtain electronic document;In terms of network security, implement strict access control policy and mechanism, killing malicious code, and open With the safety measures such as IPS, border detection, protection electronic document storage, the network environment of transmission;It is right in terms of Host Security Terminal and server carry out security hardening, formulate strict identity and differentiate and access control policy, upgrade in time security patch and A series of Host Security management and control measures such as anti-malicious code software;Using secure context, lifting application system during design application system The system security of itself.The security of running environment is lifted, strict implement safety management system 3 is strengthened pacifying outside electronic document Full technology and the security of management requirement, further lifting electronic document.
The present invention faces different potential safety hazards by studying electronic document in its life cycle different phase, and electronics is literary Shelves safety label need to specifically be designed in per stage, coordinate other necessary security protection means, and the present invention proposes one The electronic document Life cycle safety protecting method based on safety label is planted, is provided for government, enterprise based on safety label Life cycle electronic document security protection ability.
Described above is only the preferred embodiment of the present invention, it is noted that for the ordinary skill people of the art For member, without departing from the technical principles of the invention, some improvement and deformation can also be made, these improve and deformed Also it should be regarded as protection scope of the present invention.

Claims (7)

1. a kind of electronic document Life cycle safety protecting method based on safety label, it is characterised in that including:
When S1, request create electronic document, according to the strategy generating safety label issued, by the authority pipe for contrasting safety label Information is controlled, judges whether the access rights for possessing document, if not possessing access rights, step S10 is performed, if possessing access right Limit, performs step S2;
S2, document are in encrypted state, judge the unsymmetrical key information of safety label, pass through the verification of unsymmetrical key information Value, contrasts the public key information of document creator, verifies the integrality of document, if checking does not pass through, performs step S10, if checking Pass through, perform step S3;
S3, by symmetric key information, carry out the decryption of electronic document, determine document function content, such as to destroy document, then hold Row S4, such as to circulate and sending operation, then performs S5, is such as reading, replicates and edit operation, then performs step S6;
S4, document is committed to destruction person liable's terminal, performs step S7;
S5, the authority managing and controlling information for judging safety label, if having outgoing or circulation authority, if so, being then committed to document Circulate person liable's terminal, performs step S8, if it is not, performing step S11;
S6, document is read, replicated and during edit operation, judging the authority managing and controlling information of safety label, if read Read, replicate and editing authority, if so, then performing step S9, otherwise perform step S10;
S7, when being destroyed to document, by by document be committed to destruction person liable's terminal, by destroy person liable's terminal examine Batch, when safety label destroying information approval status for by when, the document can be destroyed, otherwise, perform step S11;
S8, circulation person liable terminal carry out approval information, and such as circulation person liable's terminal is by the way that the approval information of document is set to By state, then the document can be circulated or outgoing, perform step S12, otherwise, perform step S11;
S9, being read to document, replicate and during edit operation, the authority managing and controlling information of safety label is judged, to using The operation of person carries out management and control, when user carries out read and write operation, and the number of times read and write in corresponding safety label subtracts 1, when When reading in safety label and the number of times write are 0, refuse operation and the record of user;
S10, document locked, and record locking reason;
S11, failure cause is back to sender, and records reason;
S12, user to document when carrying out outgoing, by the way that document is committed into outgoing person liable's terminal, when safety label power The outgoing number of times for limiting management and control information is more than 1, the authority information for the person liable's terminal modifications safety label that circulates, and determines that document only can be Controllable operating is carried out in known terminal.
2. the electronic document Life cycle safety protecting method as claimed in claim 1 based on safety label, its feature exists In, in electronic document Life cycle, document management and control server need to be disposed, the terminal disposition of document management and control need to carried out, text Shelves management and control server is responsible for the generation of safety label with using.
3. the electronic document Life cycle safety protecting method as claimed in claim 1 based on safety label, its feature exists In, the stage is produced in electronic document, when user creates document, inner nuclear layer driving capture establishment event, establishment safety label, safety Label preserves the base attribute of electronic document, level of confidentiality attribute and document ownership attribute, and base attribute, which includes system, to be used to determine Unique ID of document, unique ID are without changing in the Life cycle of electronic document, and base attribute also includes electronic document Title, author, establishment and modification time, classification and path;Draft level of confidentiality, the level of confidentiality that level of confidentiality attribute includes document examine shape State, security level identification state and security deadline;Document ownership attribute includes the unit or department's mark that electronic document is produced.
4. the electronic document Life cycle safety protecting method as claimed in claim 2 based on safety label, its feature exists In in the electronic document storage stage, safety label preserves the cryptographic attributes of electronic document, by tying up for symmetric key and electronic document Determine relation to send to document management and control server, cryptographic attributes include symmetric key information and unsymmetrical key information, encrypted state And AES, symmetric key information includes certificate, check value and AES content, different based on key The different key information of file correspondence, generates electronic document ciphertext.
5. the electronic document Life cycle safety protecting method as claimed in claim 1 based on safety label, its feature exists In in the electronic document circulation stage, safety label preserves the unsymmetrical key information and approval information of electronic document, asymmetric close The key information content includes signing certificate, check value and AES, using the private key of founder to safety label and electronics text Shelves ciphertext is integrally signed, and recipient during circulation is signed with the public key verifications of electronic document founder;Approval information includes The approval status that circulates and examination & approval user.
6. the electronic document Life cycle safety protecting method as claimed in claim 2 based on safety label, its feature exists In the control of authority information issued in electronic document service stage, safety label according to document management and control server preserves electronics text The control of authority information of the safety label of shelves, control of authority information includes authorized user message, reading and writing, printing, imprinting, screenshotss And watermark, for the different classes of corresponding authority of document setup, fine-grained control, reading, editor, printing and imprinting The switch and number of times of function, and whether watermark is shown when using, when more than access times, electronic document is locked and can not made With.
7. the electronic document Life cycle safety protecting method as claimed in claim 1 based on safety label, its feature exists In, electronic document destroy the stage, the destroying information of the clear and definite electronic document of safety label, when document produce, storage, circulation and During use, if there is a situation where to go beyond one's commission in violation of rules and regulations, electronic document self-locked, and destroying information is updated.
CN201710351467.4A 2017-05-18 2017-05-18 Electronic document Life cycle safety protecting method based on safety label Pending CN107180195A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201710351467.4A CN107180195A (en) 2017-05-18 2017-05-18 Electronic document Life cycle safety protecting method based on safety label

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201710351467.4A CN107180195A (en) 2017-05-18 2017-05-18 Electronic document Life cycle safety protecting method based on safety label

Publications (1)

Publication Number Publication Date
CN107180195A true CN107180195A (en) 2017-09-19

Family

ID=59832287

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201710351467.4A Pending CN107180195A (en) 2017-05-18 2017-05-18 Electronic document Life cycle safety protecting method based on safety label

Country Status (1)

Country Link
CN (1) CN107180195A (en)

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107944284A (en) * 2017-11-23 2018-04-20 国网浙江省电力公司电力科学研究院 A kind of method and system of business data internal security management and control
CN108270782A (en) * 2018-01-15 2018-07-10 中国科学院信息工程研究所 A kind of access control method and system based on safety label
CN109614812A (en) * 2018-09-25 2019-04-12 北京计算机技术及应用研究所 File outgoing managing and control system and method under a kind of security application environment
CN110166451A (en) * 2019-05-20 2019-08-23 北京计算机技术及应用研究所 A kind of lightweight electronic document transmitting control system and method
CN110502906A (en) * 2019-07-04 2019-11-26 北京泰立鑫科技有限公司 A kind of method and system of data safety outgoing
CN111274773A (en) * 2020-01-03 2020-06-12 沈阳通用软件有限公司 Method for adding new attribute of document by defining document tag based on document property
CN111582833A (en) * 2020-05-13 2020-08-25 中国民航信息网络股份有限公司 Document processing method and device based on life cycle and electronic equipment
CN111914275A (en) * 2020-08-05 2020-11-10 北京控制与电子技术研究所 File leakage-proof monitoring method
CN111931244A (en) * 2020-10-13 2020-11-13 北京世纪好未来教育科技有限公司 Method and device for preventing document from divulging, electronic equipment and storage medium
CN112926089A (en) * 2021-03-25 2021-06-08 支付宝(杭州)信息技术有限公司 Data risk prevention and control method, device and equipment based on privacy protection
CN113742295A (en) * 2021-09-09 2021-12-03 珠海金山办公软件有限公司 Business data management method and device and document label management method and device
CN115130141A (en) * 2022-09-01 2022-09-30 北京亿赛通科技发展有限责任公司 Document processing method and device, mobile terminal and storage medium

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101710380A (en) * 2009-12-22 2010-05-19 中国软件与技术服务股份有限公司 Electronic document safety protection method
CN101894238A (en) * 2010-08-09 2010-11-24 中国人民解放军海军工程大学 Double authentication-based word document electronic seal system and method
CN102930225A (en) * 2012-10-25 2013-02-13 中国航天科工集团第二研究院七〇六所 Electronic document access control method based on confidential identifier
CN103440463A (en) * 2013-09-17 2013-12-11 上海颐东网络信息有限公司 Electronic file protection method based on label
CN105516204A (en) * 2016-01-27 2016-04-20 北京理工大学 Method for high-security network data storage

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101710380A (en) * 2009-12-22 2010-05-19 中国软件与技术服务股份有限公司 Electronic document safety protection method
CN101894238A (en) * 2010-08-09 2010-11-24 中国人民解放军海军工程大学 Double authentication-based word document electronic seal system and method
CN102930225A (en) * 2012-10-25 2013-02-13 中国航天科工集团第二研究院七〇六所 Electronic document access control method based on confidential identifier
CN103440463A (en) * 2013-09-17 2013-12-11 上海颐东网络信息有限公司 Electronic file protection method based on label
CN105516204A (en) * 2016-01-27 2016-04-20 北京理工大学 Method for high-security network data storage

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
张晓帅: "基于标签的电子文档管控系统研究与设计", 《中国优秀硕士学位论文全文数据库信息科技辑》 *

Cited By (18)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107944284A (en) * 2017-11-23 2018-04-20 国网浙江省电力公司电力科学研究院 A kind of method and system of business data internal security management and control
CN107944284B (en) * 2017-11-23 2020-10-09 国网浙江省电力公司电力科学研究院 Method and system for internal security control of enterprise data
CN108270782B (en) * 2018-01-15 2020-05-26 中国科学院信息工程研究所 Access control method and system based on security label
CN108270782A (en) * 2018-01-15 2018-07-10 中国科学院信息工程研究所 A kind of access control method and system based on safety label
CN109614812A (en) * 2018-09-25 2019-04-12 北京计算机技术及应用研究所 File outgoing managing and control system and method under a kind of security application environment
CN110166451B (en) * 2019-05-20 2021-11-16 北京计算机技术及应用研究所 Lightweight electronic document transfer control system and method
CN110166451A (en) * 2019-05-20 2019-08-23 北京计算机技术及应用研究所 A kind of lightweight electronic document transmitting control system and method
CN110502906A (en) * 2019-07-04 2019-11-26 北京泰立鑫科技有限公司 A kind of method and system of data safety outgoing
CN111274773A (en) * 2020-01-03 2020-06-12 沈阳通用软件有限公司 Method for adding new attribute of document by defining document tag based on document property
CN111274773B (en) * 2020-01-03 2024-03-29 三六零数字安全科技集团有限公司 Method for adding new attribute of document based on document property definition document label
CN111582833A (en) * 2020-05-13 2020-08-25 中国民航信息网络股份有限公司 Document processing method and device based on life cycle and electronic equipment
CN111914275A (en) * 2020-08-05 2020-11-10 北京控制与电子技术研究所 File leakage-proof monitoring method
CN111914275B (en) * 2020-08-05 2024-01-02 北京控制与电子技术研究所 File leakage prevention monitoring method
CN111931244A (en) * 2020-10-13 2020-11-13 北京世纪好未来教育科技有限公司 Method and device for preventing document from divulging, electronic equipment and storage medium
CN112926089A (en) * 2021-03-25 2021-06-08 支付宝(杭州)信息技术有限公司 Data risk prevention and control method, device and equipment based on privacy protection
CN113742295A (en) * 2021-09-09 2021-12-03 珠海金山办公软件有限公司 Business data management method and device and document label management method and device
CN115130141A (en) * 2022-09-01 2022-09-30 北京亿赛通科技发展有限责任公司 Document processing method and device, mobile terminal and storage medium
CN115130141B (en) * 2022-09-01 2022-11-22 北京亿赛通科技发展有限责任公司 Document processing method and device, mobile terminal and storage medium

Similar Documents

Publication Publication Date Title
CN107180195A (en) Electronic document Life cycle safety protecting method based on safety label
US7797541B2 (en) Method and apparatus for providing cellular telephone service using an authenticating cellular telephone device
CN101729550B (en) Digital content safeguard system based on transparent encryption and decryption, and encryption and decryption method thereof
JP3520081B2 (en) Method for digitally signing and certifying
CN101710380B (en) Electronic document safety protection method
US20030217275A1 (en) Method and system for digital rights management and digital signatures
PL182163B1 (en) System for and method of verifying a document
CN102930225A (en) Electronic document access control method based on confidential identifier
JP2003058840A (en) Information protection management program utilizing rfid-loaded computer recording medium
CN103065102A (en) Data encryption mobile storage management method based on virtual disk
US8793503B2 (en) Managing sequential access to secure content using an encrypted wrap
CN114175580B (en) Enhanced secure encryption and decryption system
Mavrovouniotis et al. Hardware security modules
CN111324901A (en) Method for creating and decrypting enterprise security encrypted file
CN109388952A (en) A kind of method and apparatus of confidential document and security level identification binding
WO2011005869A2 (en) Method and system for generating and using biometrically secured embedded tokens in documents
JP4629581B2 (en) Output information management system
JPH10200522A (en) Ic card use enciphering method, system therefor and ic card
CN113806785B (en) Method and system for carrying out security protection on electronic document
CA2366562A1 (en) Secure electronic document creation, approval and distribution method in an open and distributed network environment
JP3849465B2 (en) Information management method
JP4765262B2 (en) Electronic data storage device, program
CN112464273A (en) Method and server for seal safety management and seal
CN112906021B (en) Document processing method and device
JP2006107305A (en) Data storage device

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20170919