Summary of the invention
The object of the invention is to overcome deficiency of the prior art, a kind of data guard method based on movable storage device is provided, solve data protection, mobile storage device management, the problems such as the property right of enterprises protection based on movable storage device.
The object of the invention is to be achieved through the following technical solutions: this data guard method based on movable storage device, in movable storage device, increase safety chip, memory device is divided into San Ge district, CD_ROM district, encryption memory block and general memory area, the wherein inner burning user supervisor in CD_ROM district; General memory area is for preserving some provisional or demand for security is low files; In encryption memory block, for stores user data files, data file is encrypted by algorithm, and with the storage of ciphertext form, data need, by safety chip, data are done to corresponding encryption and decryption and process before and after storage; The user of described encryption memory block is invisible, only has by application program and carries out read operation, and write permission is exclusive by producer, during operation, authentication of users authority in advance, after success to be certified, carry out corresponding application programs, desirable this area data information demonstration, this area data cannot copy.
Programming in described CD_ROM district is operation or user's independent operation automatically, distributes each storage area size, authority keys, authentication of users password and operating file are set.
Described verification process is as follows: for the data file of encrypting memory block, when user often opens a data file by user interface program, all will be by authentication, main control chip detects user need to open this data file time, return to immediately a random number, host computer obtains random number, by the key pre-setting, be encrypted, data after encryption are passed to slave computer main control chip, main control chip is decrypted encrypt data, if the data after deciphering are as different in the random number producing last time, represent authentification failure, user cannot normally open hidden area file, if the random number producing with last time is identical, represent authentication success.
The invention has the beneficial effects as follows: 1. the built-in movable storage device of instructional video, easy to carry, be convenient to user and learn at any time.2. user is simple to operate, on PC, without application operating movable storage device is installed, but directly management software is stored into the CD_ROM district of equipment, portably uses conveniently.3. user data is deposited with the form of ciphertext, has guaranteed multimedia data security, has ensured that the rights and interests of issuer are without prejudice.
Embodiment
Below in conjunction with drawings and Examples, the present invention is described further.
1, overall system design
The present invention is directed to the movable storage device that personal daily is used, increase safety chip, realize the function to storage of subscriber data, equipment control, information protection.
Equipment is mainly comprised of memory device, safety chip, pcb version, management software.Memory device is wherein divided into San Ge district, and memory block and general memory area are encrypted by CD_ROM district.
1, CD_ROM district, inner burning user supervisor, can arrange automatic operation or user's independent operation, and supervisory routine is for the size distribution to memory device, encryption disc authentication function;
2, encrypt memory block (can be set as the visible still invisible two kinds of modes of user), by TF card, provide space, store different file datas in memory block, it is invisible that user is hidden in this district's data encryption.
3, general memory area, makees common u dish for client and uses, and can preserve some provisional or demand for security is low files.
2, CD_ROM district
This region recording device management software and other executable files, can distribute each storage area size, authority keys is set, authentication of users password, the functions such as operating file.Corresponding data information matches in each function button and hidden area on this interface, just can read in named cache corresponding data information after action button, just can demonstrate corresponding informance by demand afterwards.
3, encrypt memory block (multimedia memory block)
Multimedia memory block is used for storing user data, is mainly instructional video, and data are encrypted by algorithm, with the storage of ciphertext form, this area data is deposited product information data, and this district user is invisible, only have by application program and carry out read operation, write permission is exclusive by producer, during operation, and authentication of users authority in advance, after success to be certified, carry out corresponding application programs, desirable this area data information demonstration, this area data cannot copy.
4, data security storage
For guaranteeing the security of user data, data need, by safety chip, data are done to corresponding encryption and decryption and process before and after storage, thereby guarantee the privacy of data, and concrete data Stored Procedure is shown in Figure 3.
5, data authentication process
Data file for hidden area (multimedia memory block), when user often opens a file by user interface program, all will be by authentication, click different course buttons, be OPEN file, when main control chip detects user OPEN file, return to immediately a random number, host computer obtains random number, by the key pre-setting, be encrypted, data after encryption are passed to slave computer main control chip, main control chip is decrypted encrypt data, if the data after deciphering are as different in the random number producing last time, represent authentification failure, user cannot normally open hidden area file, if the random number producing with last time is identical, represent authentication success.
Although the present invention is described in connection with preferred embodiment, should know, do not represent to limit the invention in described embodiment.On the contrary, the present invention is by alternative, modified and the equivalent contained in the scope of the present invention that can be included in attached claims restriction.