CN102663323A - Encryption method supporting mobile media - Google Patents

Encryption method supporting mobile media Download PDF

Info

Publication number
CN102663323A
CN102663323A CN2012100606101A CN201210060610A CN102663323A CN 102663323 A CN102663323 A CN 102663323A CN 2012100606101 A CN2012100606101 A CN 2012100606101A CN 201210060610 A CN201210060610 A CN 201210060610A CN 102663323 A CN102663323 A CN 102663323A
Authority
CN
China
Prior art keywords
module
move media
authentication
terminal
user
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN2012100606101A
Other languages
Chinese (zh)
Inventor
耿振明
戴伟强
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
WUXI CINSEC INFORMATION TECHNOLOGY Co Ltd
Original Assignee
WUXI CINSEC INFORMATION TECHNOLOGY Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by WUXI CINSEC INFORMATION TECHNOLOGY Co Ltd filed Critical WUXI CINSEC INFORMATION TECHNOLOGY Co Ltd
Priority to CN2012100606101A priority Critical patent/CN102663323A/en
Publication of CN102663323A publication Critical patent/CN102663323A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Storage Device Security (AREA)

Abstract

The invention discloses an encryption method supporting a mobile media. According to the method, encryption and decryption functions are solidified on the mobile media whose functions are protected by an authentication mode. Compared with the traditional method in which the encryption and decryption functions must be installed on a PC terminal, the method of the present inventyion is more convenient in that the mobile media is easier to carry. When a user needs to work in different locations, files require no decryption for that encrypted files can be directly transmitted on the internet without the worry of risk of secret leakage; when the user come to a different location, the mobile media can be connected with any one of PC terminals for the user to use the encrypted files.

Description

A kind of encryption method of supporting move media
Technical field
The invention belongs to the computer information safety technique field, relate in particular to a kind of encryption method of supporting move media.
Background technology
At present, the data protection to movable memory equipment (as: portable hard drive, USB flash disk, SD card, CD etc.) generally has following several kinds of modes.The one, the data message itself that is stored in the move media is encrypted, but this generally only is applicable to personal behavior that for company or enterprise, this is unfavorable for going on business or goes out office.The 2nd, prevent the leakage of data of move media through concealed encrypted partition and PKI technology, but this mode exists and is still in the medium expressly, with the mutual process of other-end in plaintext transmission also very easily cause and divulge a secret.
Summary of the invention
The present invention provides a kind of encryption method of supporting move media, utilizes the mobile phone hardware numbering scheme to make user's certificate, makes certificate have uniqueness, is kept at encrypt file more not to be cracked in the mobile phone EMS memory card or to duplicate, and realizes the security of information preferably.
To achieve these goals, the present invention adopts following technical scheme:
A kind of encryption method of supporting move media, wherein, said method step comprises:
A1: memory module is comprised that authentication module, curing module, core driver module etc. are solidificated on the move media in advance.
A2: move media is connected with terminals such as PC.
A3: the core driver module is sensed and is connected the also chip of activating and authenticating module.
A4: authentication module starts, and requires the user to carry out authentication.User through authentication can use or visit in the move media all the elements.The user through authentication or authentication mistake can't not visit the encryption and decryption functions that move media also can't use move media to provide.
A5: after authentication, core driving module drives information loads and the injection user terminal.
A6: after activation bit successfully loads,, and realize it is carried out the function of transparent encryption and decryption through curing module with the data on the monitoring terminal.
A7: after breaking off connection, load the activation bit that is injected into the terminal and respond to also unloading/deletion activation bit automatically, the file of will not close is simultaneously closed automatically.
A8: after breaking off connection, the user can not use or visit the content of storing in the move media.
A9: after break off connecting, enciphered data, the file of user on can not access terminal.
The used cipher mode of said method is a symmetry or asymmetric.
Said core driver module can be responded to being connected of move media and terminal.
Said core driver module can the activating and authenticating module carry out authentication.
Said core driver module can and inject activation bit to terminal loads, activates calling program in the curing module simultaneously.
The activation bit of said loading and injection can be responded to and unloading/deletion activation bit automatically after break off connecting, and the file of will not close is simultaneously closed automatically.
After breaking off being connected of move media and terminal, can not use or visit the content of storing in the move media, also can't use or visit the encrypted content at terminal self in the move media.
A kind of encryption method of supporting move media provided by the invention is cured to encryption and decryption functions on the move media, and by certification mode function own is protected.Must encryption and decryption functions to be installed to the PC terminal more convenient than traditional for this method; Move media is carried more easily; When needs when various places go to office, need be with file decryption yet, cryptograph files can be directly in internet transmission and the risk of not worrying divulging a secret; When the strange land, any station terminal can through with the use of carrying out cryptograph files that is connected of move media.
Description of drawings
Fig. 1 is a memory module synoptic diagram provided by the invention;
Fig. 2 is a method synoptic diagram provided by the invention.
Embodiment
Specify the present invention below in conjunction with accompanying drawing, it explains principle of the present invention as the part of this instructions through embodiment, other aspects of the present invention, and characteristic and advantage thereof will become very clear through this detailed description.
Like Fig. 1, shown in 2, A1: memory module is comprised that authentication module, curing module, core driver module etc. are solidificated on the move media in advance.
A2: move media is connected with terminals such as PC.
A3: the core driver module is sensed and is connected the also chip of activating and authenticating module.
A4: authentication module starts, and requires the user to carry out authentication.User through authentication can use or visit in the move media all the elements.The user through authentication or authentication mistake can't not visit the encryption and decryption functions that move media also can't use move media to provide.
A5: after authentication, core driving module drives information loads and the injection user terminal.
A6: after activation bit successfully loads,, and realize it is carried out the function of transparent encryption and decryption through curing module with the data on the monitoring terminal.
A7: after breaking off connection, load the activation bit that is injected into the terminal and respond to also unloading/deletion activation bit automatically, the file of will not close is simultaneously closed automatically.
A8: after breaking off connection, the user can not use or visit the content of storing in the move media.
A9: after break off connecting, enciphered data, the file of user on can not access terminal.
The used cipher mode of said method is a symmetry or asymmetric.
Said core driver module can be responded to being connected of move media and terminal.
Said core driver module can the activating and authenticating module carry out authentication.
Said core driver module can and inject activation bit to terminal loads, activates calling program in the curing module simultaneously.
The activation bit of said loading and injection can be responded to and unloading/deletion activation bit automatically after break off connecting, and the file of will not close is simultaneously closed automatically.
After breaking off being connected of move media and terminal, can not use or visit the content of storing in the move media, also can't use or visit the encrypted content at terminal self in the move media.
The said safe movement medium of this method, its carrier can be portable hard drive, USB flash disk, SD card, CD etc.This medium also comprises authentication module, curing module, core driver module except that original memory function module, transport function etc.
Wherein authentication module comprises a phy chip, and this chip is prepended to move media, is placed on transfer bus.It act as and carries out authentication, and the user through authentication or authentication mistake can't not visit the encryption and decryption functions that move media also can't use move media to provide.User through authentication can use or visit in the move media all the elements.
Wherein curing module is a fixed storage space, can only read and can not revise.Comprise cryptographic algorithm and key information etc.; All program Solidifications of realizing encryption and decryption functions are arrived in this storage space; Anyone can't read or revise the content of this storage space; This space routine is in the lock state simultaneously, has only the personnel through authentication just can visit, and the operation function that wherein each program provided.
Wherein the core driver module can only read and can not revise, and realizes following function:
When 1, being connected to terminal such as PC when move media, the chip of induction of core driver module and activating and authenticating module.
2, the user through authentication after, core driving module drives information loads also injects user terminal, these activation bits are the data on the monitoring terminal, and through curing module it are carried out transparent encryption and decryption functions.
3, after disconnection connects, load the activation bit induction and the automatic unloading/deletion activation bit that are injected into the terminal, the file of will not close is simultaneously closed automatically
A kind of encryption method of supporting move media provided by the invention is cured to encryption and decryption functions on the move media, and by certification mode function own is protected.Must encryption and decryption functions to be installed to the PC terminal more convenient than traditional for this method; Move media is carried more easily; When needs when various places go to office, need be with file decryption yet, cryptograph files can be directly in internet transmission and the risk of not worrying divulging a secret; When the strange land, any station terminal can through with the use of carrying out cryptograph files that is connected of move media.
The above disclosed the preferred embodiments of the present invention that are merely can not limit the present invention's interest field certainly with this, so according to the equivalent variations that claim of the present invention is done, still belong to the scope that the present invention is contained.

Claims (7)

1. encryption method of supporting move media, wherein, said method step comprises:
A1: memory module is comprised that authentication module, curing module, core driver module etc. are solidificated on the move media in advance.
A2: move media is connected with terminals such as PC.
A3: the core driver module is sensed and is connected the also chip of activating and authenticating module.
A4: authentication module starts, and requires the user to carry out authentication.User through authentication can use or visit in the move media all the elements.The user through authentication or authentication mistake can't not visit the encryption and decryption functions that move media also can't use move media to provide.
A5: after authentication, core driving module drives information loads and the injection user terminal.
A6: after activation bit successfully loads,, and realize it is carried out the function of transparent encryption and decryption through curing module with the data on the monitoring terminal.
A7: after breaking off connection, load the activation bit that is injected into the terminal and respond to also unloading/deletion activation bit automatically, the file of will not close is simultaneously closed automatically.
A8: after breaking off connection, the user can not use or visit the content of storing in the move media.
A9: after break off connecting, enciphered data, the file of user on can not access terminal.
2. the encryption method of support move media as claimed in claim 1 is characterized in that, the used cipher mode of said method is a symmetry or asymmetric.
3. the encryption method of support move media as claimed in claim 1 is characterized in that, said core driver module can be responded to being connected of move media and terminal.
4. like the encryption method of claim 1 or 3 described support move medias, it is characterized in that said core driver module can the activating and authenticating module carry out authentication.
5. like the encryption method of claim 1 or 3 described support move medias, it is characterized in that said core driver module can and inject activation bit to terminal loads, activates the program in the curing module simultaneously.
6. like the encryption method of claim 1 or 5 described support move medias, it is characterized in that the activation bit of said loading and injection can be responded to and unloading/deletion activation bit automatically after break off connecting, the file of will not close is simultaneously closed automatically.
7. like the encryption method of claim 1 or 6 described support move medias; It is characterized in that; After breaking off being connected of move media and terminal, can not use or visit the content of storing in the move media, also can't use or visit the encrypted content at terminal self in the move media.
CN2012100606101A 2012-03-09 2012-03-09 Encryption method supporting mobile media Pending CN102663323A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2012100606101A CN102663323A (en) 2012-03-09 2012-03-09 Encryption method supporting mobile media

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2012100606101A CN102663323A (en) 2012-03-09 2012-03-09 Encryption method supporting mobile media

Publications (1)

Publication Number Publication Date
CN102663323A true CN102663323A (en) 2012-09-12

Family

ID=46772809

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2012100606101A Pending CN102663323A (en) 2012-03-09 2012-03-09 Encryption method supporting mobile media

Country Status (1)

Country Link
CN (1) CN102663323A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104615929A (en) * 2013-11-04 2015-05-13 安全地带株式会社 Security key device for secure cloud services, and system and method of providing security cloud services

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101308475A (en) * 2008-07-15 2008-11-19 中兴通讯股份有限公司 Safe mobile storage system and method of use thereof
CN101877246A (en) * 2009-04-28 2010-11-03 许燕 U disk encryption method
CN201716734U (en) * 2010-07-21 2011-01-19 郑州信大捷安信息技术有限公司 Usb safe storage encryption device
US20110067112A1 (en) * 2006-01-03 2011-03-17 Samsung Electronics Co., Ltd. Method and apparatus for importing content

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20110067112A1 (en) * 2006-01-03 2011-03-17 Samsung Electronics Co., Ltd. Method and apparatus for importing content
CN101308475A (en) * 2008-07-15 2008-11-19 中兴通讯股份有限公司 Safe mobile storage system and method of use thereof
CN101877246A (en) * 2009-04-28 2010-11-03 许燕 U disk encryption method
CN201716734U (en) * 2010-07-21 2011-01-19 郑州信大捷安信息技术有限公司 Usb safe storage encryption device

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104615929A (en) * 2013-11-04 2015-05-13 安全地带株式会社 Security key device for secure cloud services, and system and method of providing security cloud services

Similar Documents

Publication Publication Date Title
CN204595860U (en) A kind of memory device encryption bridge
CN102334124B (en) File protection method and device
CN103139767B (en) Mobile phone and communication means thereof
CN102831346B (en) A kind of file protecting system carries out the method for file encryption-decryption
US20050235143A1 (en) Mobile network authentication for protection stored content
US20090019291A1 (en) Backup and restoration of drm security data
CN103731475B (en) A kind of data protection system
CN104123506B (en) Data access method, device, data encryption, storage and access method, device
CN102638568A (en) Cloud storage system and data management method thereof
CN101763469B (en) Digital copyright management system and implementation method thereof
CN106682521B (en) File transparent encryption and decryption system and method based on driver layer
CN102361481A (en) Method for binding hardware encryption trans-flash (TF) card with mobile phone subscriber identity module (SIM) card
CN102457561B (en) Data access method and equipment adopting same
CN104615929A (en) Security key device for secure cloud services, and system and method of providing security cloud services
EP2840818B1 (en) Method and device for information security management of mobile terminal, and mobile terminal
CN108491724A (en) A kind of hardware based computer interface encryption device and method
CN105631298B (en) A kind of ciphering and deciphering device and method
WO2011130970A1 (en) Device and method for protecting data of mobile terminal
CN206515828U (en) The data storage device of safety encryption
CN105825136B (en) Method and device for realizing safe transmission of electronic file by combining software and hardware
CN103207976B (en) Mobile storage file prevents the method for divulging a secret and the secret USB flash disk based on the method
CN100462993C (en) Outer placed mobile storage in use for alete information processing
CN104346586A (en) Self-destructive data protection storage device and self-destructive data protection method
CN103177224A (en) Data protection method and device used for terminal external storage card
CN106845254A (en) A kind of encrypted data transmission line for computer

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C02 Deemed withdrawal of patent application after publication (patent law 2001)
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20120912