CN104615918A - Environment achieving method supporting off-line authorization and meeting safe editing requirement - Google Patents

Environment achieving method supporting off-line authorization and meeting safe editing requirement Download PDF

Info

Publication number
CN104615918A
CN104615918A CN201510035928.8A CN201510035928A CN104615918A CN 104615918 A CN104615918 A CN 104615918A CN 201510035928 A CN201510035928 A CN 201510035928A CN 104615918 A CN104615918 A CN 104615918A
Authority
CN
China
Prior art keywords
control module
user
hardware platform
storage device
interactive component
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201510035928.8A
Other languages
Chinese (zh)
Other versions
CN104615918B (en
Inventor
傅如毅
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Zhejiang Yuanwang Software Co Ltd
Original Assignee
Zhejiang Yuanwang Software Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Zhejiang Yuanwang Software Co Ltd filed Critical Zhejiang Yuanwang Software Co Ltd
Priority to CN201510035928.8A priority Critical patent/CN104615918B/en
Publication of CN104615918A publication Critical patent/CN104615918A/en
Application granted granted Critical
Publication of CN104615918B publication Critical patent/CN104615918B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/10Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
    • G06F21/105Arrangements for software license management or administration, e.g. for managing licenses at corporate level
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6218Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
    • G06F21/6227Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database where protection concerns the structure of data, e.g. records, types, queries

Abstract

The invention relates to a method for protecting information safety and discloses an environment achieving method supporting off-line authorization and meeting a safe editing requirement. The environment achieving method is conducted based on a mobile storage device and a hardware platform, wherein the mobile storage device is internally provided with a control chip and a memorizer, the hardware platform is used for interaction with a user, and the memorizer internally comprises a credible operating system area and a storage area for storing target files. The environment achieving method supporting off-line authorization and meeting the safe editing requirement effectively prevents the situation that Trojan viruses steal files in the mobile storage device at an unknown operating environment; a built-in battery is additionally arranged, so the user can conduct authorization at the situation that the mobile storage device is not connected with the hardware platform, and therefore the hardware platform can be directly guided to the file editing environment in the mobile storage device, the protected credible operating system area and the protected storage area are prevented from being accessed by an original operating system on the hardware platform, and the safety of file mobile storage, edit and use is greatly improved.

Description

A kind ofly support offline authorization and solve the environment implementation method of secure composition demand
[technical field]
The present invention relates to a kind of method of protection information safety, particularly a kind ofly support offline authorization and solve the environment implementation method of secure composition demand.
[background technology]
No matter whether common movable storage device, possess encryption function, or whether direct by storage block opening to computer operating system, and whether carry out artificial license confirmation to file access, they all only play the function of a document carrier.When file is when opening, being always present in computer operating system in mode expressly, then being opened by corresponding software for editing.When the environment that software for editing runs and operating system and periphery software environment itself also exist give away secrets risk time, can say that what takes precautions against the secret and safe that all cannot ensure these files for another example.During file such as on strange calculating hands-operation memory device, user does not also know whether computing machine exists virus, does not know whether have the file that the 3rd people steals memory device yet.
Therefore, in order to the technical matters that the security solving above-mentioned situation file editing environment cannot ensure, applicant thinks to be needed to introduce a kind of new method, and this method needs to provide a kind of believable operating environment to carry out editing application for user to the file of movable storage device inside easily on the one hand; The process to entering this operating environment and carry out browsing file and application is then needed on the other hand to carry out authority checking; Again on the one hand, the process of authority checking should have independence, does not rely on the safety of other operating environments.
In prior art, user can be conducted interviews to memory device by special document-editing system, although it can isolate the access of unsafe operating system to memory device, but this editing system is the operating environment parallel with operating system, user can only switch before os starting, complex operation, great inconvenience is brought to user, and the switching of operating environment can only be carried out under an operating system, not only inconvenient user operation, but also the situation that the operation that likely switches is controlled by the 3rd people, threaten the safety of memory device internal file.
[summary of the invention]
The object of the invention is to overcome above-mentioned the deficiencies in the prior art, there is provided a kind of support offline authorization and solve the environment implementation method of secure composition demand, it is intended to solve, and the editing environment security of memory device internal file of the prior art be not high, user cannot separating system carry out switching, Document Editing environment enter loaded down with trivial details technical matters.
For achieving the above object, the present invention proposes and a kind ofly support offline authorization and solve the environment implementation method of secure composition demand, it contains the movable storage device of control chip and storer and the hardware platform with user interactions based on a kind of inside, the memory block of trusted operating system district and storage purpose file is included in described storer, the routine package that described control chip runs is containing control module, described movable storage device is also provided with for providing the internal battery of electric power with the interactive component of user interactions and for control chip and interactive component, described control module communicates with interactive component with trusted operating system district respectively, its concrete steps are as follows:
A) original state: user starts movable storage device by interactive component, control chip is powered on, and control module brings into operation;
B) status checking: control module enters protection state, check whether movable storage device is connected with hardware platform, if the connection status of being in, then go to step K), if be in not-connected status, then authorising conditional is transferred to interactive component by control module, and the mandate of interactive component reminding user, to start secure composition environment, waits for the input of user;
C) subscriber authorisation: after interactive component receives the input signal of user, be organized into authorization message, and authorization message is transferred to control module, if control module does not receive the authorization message of interactive component within the T1 time, then control module judges that user operation is as invalid operation, go to step K), if control module have received the authorization message of interactive component within the T1 time, then go to step D);
D) authority checking: after control module receives authorization message, authorization information predetermined to itself and inside is checked, if be consistent, then go to step G), if do not met, then error message is transferred to interactive component, go to step E), if incongruent number of times reaches N time, then go to step F);
E) authentication failed: interactive component shows authorising conditional again, waits for the input of user, returns back to step C);
F) authorization failure: control module checks predetermined configuration information, if configuration information is format, then authorization information resets to defaults by control module, and by information transmission too much for errors number to interactive component, by interactive component reminding user, remove the inner All Files in memory block, go to step K), if configuration information is not for format, then control module by information transmission too much for errors number to interactive component, by interactive component reminding user, return back to step B);
G) switching state: control module switches to trust state, the connector to hardware platform enumerates trusted operating system subregion and memory block, waits for the communication of hardware platform;
H) editing environment is started: movable storage device and hardware platform are interconnected by user, start hardware platform, and select from movable storage device guidance system, hardware platform runs the Document Editing environment in trusted operating system district, if in the T2 time from control module switches to trust state, Document Editing environment is not run, then go to step K), if in the T2 time from control module switches to trust state, Document Editing environment runs, then go to step I);
I) user operation: according to the operation of user, hardware platform sends the operational order to memory block internal file, and this operational order is transferred to control module, the order of control module parse operation, and carries out the editor of file according to operational order;
J) end operation: user's complete operation, exit Document Editing environment, control module control hardware platform upper once start time do not guide from movable storage device, hardware platform is closed, and disconnect trusted operating system district and the communication of hardware platform and the communication connection of movable storage device and hardware platform successively, go to step K);
K) done state: control module enters protection state, and by control chip power-off, close movable storage device, return back to steps A).
As preferably, the described T1 time is 5s ~ 10s, and the described T2 time is 30s ~ 2m.
As preferably, in step D) in, the number of times of N is no less than 3 times.
As preferably, in step I) in, Document Editing environment in trusted operating system district comprises the private file transmitting software of management storage region internal file, and described private file transmitting software sends operational order according to the operation of user, and operational order is transferred to control module.
As preferably, described movable storage device is communicated to connect by usb protocol and hardware platform.
As preferably, described interactive component comprises Fingerprint Identification Unit, and described Fingerprint Identification Unit is connected with control chip and communicates with control module, in step C) in, user's input be finger print information, in step D) in, the predetermined authorization information of control module is corresponding finger print information.
As preferably, described interactive component comprises keyboard, and described keyboard is connected with control chip and communicates with control module, in step C) in, the information of user's input is the authentication password conformed to authorising conditional, and the predetermined authorization information of control module is the authorization information of corresponding user.
Beneficial effect of the present invention: compared with prior art, provided by the inventionly a kind ofly support offline authorization and solve the environment implementation method of secure composition demand, step is reasonable, the secure file editing environment adopting movable storage device built-in is as the interface of the file in user's access and editor's movable storage device, effectively prevent trojan horse stealing the file in movable storage device under unknown operating environment, but also set up internal battery, user can be authorized when movable storage device is not connected with hardware platform, thus make hardware platform directly can be directed to Document Editing environment in movable storage device, the process of whole authority checking does not rely on the origin operation system on hardware platform, avoid protected trusted operating system subregion and memory block by the origin operation system access on hardware platform, greatly increase the security of file mobile storage and editor's use.
Feature of the present invention and advantage will be described in detail by reference to the accompanying drawings by embodiment.
[accompanying drawing explanation]
Fig. 1 is the schematic flow sheet of the embodiment of the present invention.
[embodiment]
For making the object, technical solutions and advantages of the present invention clearly understand, below by accompanying drawing and embodiment, the present invention is further elaborated.But should be appreciated that, specific embodiment described herein, only in order to explain the present invention, is not limited to scope of the present invention.In addition, in the following description, the description to known features and technology is eliminated, to avoid unnecessarily obscuring concept of the present invention.
Consult Fig. 1, the embodiment of the present invention provides a kind of and supports offline authorization and solve the environment implementation method of secure composition demand, it contains the movable storage device of control chip and storer and the hardware platform with user interactions based on a kind of inside, the memory block of trusted operating system district and storage purpose file is included in storer, the routine package that control chip runs is containing control module, movable storage device is also provided with for providing the internal battery of electric power with the interactive component of user interactions and for control chip and interactive component, control module communicates with interactive component with trusted operating system district respectively.
In embodiments of the present invention, trusted operating system district is in order to provide safe Document Editing environment, and it can resolve the data block of inside, memory block, and data block is shown to user in the form of a file, so that user edits.That is, memory block internal data can and only with resolve by trusted operating system district, and the Document Editing environment of inside, trusted operating system district be one with the operating environment of the operating system mutual exclusion on hardware platform, thus not only make trusted operating system district depart from the operating system of hardware platform, ensure that the safety of memory block internal data, but also different file system all can be run on identical hardware platform, user friendly editor.
Wherein, movable storage device is also provided with can the control chip of independent operating, its electric energy is provided by internal battery, user directly can carry out authorization on movable storage device, hardware platform can directly be guided from movable storage device start, that is, the embodiment of the present invention can not rely on the mandate of operating system complete independently and state switches, it not only avoid the 3rd people and controls by operating system the situation that movable storage device carries out state switching, further increase the security of memory block, but also make movable storage device there is no the naked hands-operation of operating system, expand the scope of application of movable storage device.
A) original state: user starts movable storage device by interactive component, control chip is powered on, and control module brings into operation.In this kind of structure, interactive component comprises a starting switch, the connecting and disconnecting of the circuit that user can control between control chip and internal battery by starting switch.
B) status checking: control module enters protection state; check whether movable storage device is connected with hardware platform; if the connection status of being in; then go to step K); if be in not-connected status; then authorising conditional is transferred to interactive component by control module, and the mandate of interactive component reminding user, to start secure composition environment, waits for the input of user.
In embodiments of the present invention; protection state is the original state of each parts in movable storage device; under protection state; the hardware platform be connected with movable storage device only can communicate with control module; trusted operating system district does not all communicate with hardware platform with memory block, and namely memory block internal data is in protected state.
As long as because incredible operating system is connected with the storer of movable storage device, virus is just likely infected in memory block, therefore, the embodiment of the present invention requires that user completes the switching of Document Editing environment before movable storage device is connected with hardware platform, and first check state before mandate, in case control module is viral by the origin operation system infections of hardware platform behind open trusted operating system district.
C) subscriber authorisation: after interactive component receives the input signal of user, be organized into authorization message, and authorization message is transferred to control module, if control module does not receive the authorization message of interactive component within the T1 time, then control module judges that user operation is as invalid operation, go to step K), if control module have received the authorization message of interactive component within the T1 time, then go to step D).
In embodiments of the present invention, authorization message is that user is inputted by interactive component, it is directly transferred into control module and carries out checking of authorization message, namely control module independently carries out checking of authorization message, make the authorization control of Document Editing environment can depart from hardware platform independent work, improve the authorization message confidentiality of user, stop the situation that the 3rd people or virus control hardware platform just can skip the direct access storage areas of user.
Wherein, in order to leave the time that user checks and inputs for, the T1 time is set to 5s ~ 10s, and the embodiment of the present invention adopts 5s.
D) authority checking: after control module receives authorization message, authorization information predetermined to itself and inside is checked, if be consistent, then go to step G), if do not met, then error message is transferred to interactive component, go to step E), if incongruent number of times reaches N time, then go to step F).
In embodiments of the present invention, user is needed to be verified by authorization message and just can enter Document Editing environment, and it is for preventing the direct startup file editing environment of disabled user.Simultaneously, incongruent for password number of times can be write down by control module, and when control chip power-off, this number of times still can retain, disabled user is avoided to pass through repeated priming---close movable storage device and do not meet number of times to remove, thus the step preventing disabled user from getting around format constantly attempts authorization message.
Wherein, the number of times of N is no less than 3 times, in an embodiment of the present invention, and N value 6 times.
E) authentication failed: interactive component shows authorising conditional again, waits for the input of user, returns back to step C).
F) authorization failure: control module checks predetermined configuration information, if configuration information is format, then authorization information resets to defaults by control module, and by information transmission too much for errors number to interactive component, by interactive component reminding user, remove the inner All Files in memory block, go to step K), if configuration information is not for format, then control module by information transmission too much for errors number to interactive component, by interactive component reminding user, return back to step B).
Step D) as the Authorized operation of whole environment changing, it can not only prevent disabled user to the access of memory block, but also on-warning mode can be entered when disabled user switches by force, namely in step F) middle warning of ejecting user, if configuration information is format, then whole memory block will be formatd by control module, thus avoids more data to be stolen, by user's damage control in suitable scope.Certainly, this just can operate at the critical moment, and for general case, such as user forgets Password, and user can make control information be feedback information by change configuration information, and can not format total data.
In embodiments of the present invention, configuration information can manufacture starting stage setting by the producer at control chip, and also can be adjusted at any time in use by user, user also can be modified to configuration information by special software.
G) switching state: control module switches to trust state, the connector to hardware platform enumerates trusted operating system subregion and memory block, waits for the communication of hardware platform.
In embodiments of the present invention, trust the using state that state is each parts in movable storage device, under trust state, the Document Editing environment in trusted operating system district is intercomed mutually by control module and hardware platform, and memory block internal data is now in editing environment trusty.The operational order that user produces in Document Editing environment can be transferred to control module by hardware platform, is carried out the reading of data block by control module.
H) editing environment is started: movable storage device and hardware platform are interconnected by user, start hardware platform, and select from movable storage device guidance system, hardware platform runs the Document Editing environment in trusted operating system district, if in the T2 time from control module switches to trust state, Document Editing environment is not run, then go to step K), if in the T2 time from control module switches to trust state, Document Editing environment runs, then go to step I).
In this kind of structure, control module can not use during movable storage device user and automatically close movable storage device, to reduce the consumption of internal battery.Wherein, connect the time of hardware platform and amendment boot sequence to leave user for, the T2 time is 30s ~ 2m, and the T2 time is 2m in embodiments of the present invention.
I) user operation: according to the operation of user, hardware platform sends the operational order to memory block internal file, and this operational order is transferred to control module, the order of control module parse operation, and carries out the editor of file according to operational order.
In embodiments of the present invention, the operation of user each time all needs the parsing through control module, namely control module not only controls the access of hardware platform, but also the access of the Document Editing environment run on a hardware platform is also controlled separately, make the access rights of hardware platform can control in the corresponding scope of operational order, thus further limit the access rights of hardware platform to memory block internal data, improve the confidentiality of memory block.
J) end operation: user's complete operation, exit Document Editing environment, control module control hardware platform upper once start time do not guide from movable storage device, hardware platform is closed, and disconnect trusted operating system district and the communication of hardware platform and the communication connection of movable storage device and hardware platform successively, go to step K).
After user's complete operation, by control module, hardware platform and each parts of movable storage device are all disconnected communication, terminate all operations.
K) done state: control module enters protection state, and by control chip power-off, close movable storage device, return back to steps A).
In order to improve the security of Document Editing environment further, in step I) in, Document Editing environment in trusted operating system district comprises the private file transmitting software of management storage region internal file, private file transmitting software sends operational order according to the operation of user, and operational order is transferred to control module.Now, user needs the file in inside, private file transmitting software inediting memory block.
Particularly, as a kind of embodiment, interactive component comprises Fingerprint Identification Unit, in step C) in, user's input be finger print information, in step D) in, the predetermined authorization information of control module is corresponding finger print information.
Wherein, movable storage device is communicated to connect by usb protocol and hardware platform, Fingerprint Identification Unit is also communicated with control module by usb protocol, and Fingerprint Identification Unit now both can be connected with control chip by the USB interface on movable storage device, also can be fixed on movable storage device.
As another kind of embodiment, interactive component comprises keyboard, and keyboard is connected with control chip, in step C) in, the information of user's input is the authentication password conformed to authorising conditional, and the predetermined authorization information of control module is the authorization information of corresponding user.
When the embodiment of the present invention specifically uses, user checks the authorising conditional that interactive component is reminded, corresponding authorization message is inputted according to authorising conditional, after control module checking meets and enters trust state, control module can enumerate trusted operating system district to hardware platform, guides start for hardware platform.After user starts hardware platform, need to adjust boot sequence under BIOS environment, make hardware platform can from movable storage device operating file editing environment, thus user can edit memory block internal file in safe and reliable Document Editing environment.Now, in Document Editing environment, user can see two disks, and a disk is the system disk in trusted operating system district, and another disk is to the data disks of user's accessing file.
In embodiments of the present invention; the implementation method of file security editing environment both can be used for by the file transfer between the movable storage device of usb protocol and hardware platform; also can be used between fixed equipment and fixed equipment by file transfer that hardware platform carries out; also can be used for the file transfer of Unified Device inside; as long as include independently editing environment in equipment, just belong in protection scope of the present invention.
The foregoing is only preferred embodiment of the present invention, not in order to limit the present invention, all any amendments done within the spirit and principles in the present invention, equivalent replacement or improvement etc., all should be included within protection scope of the present invention.

Claims (7)

1. support offline authorization and solve the environment implementation method of secure composition demand for one kind, it is characterized in that: it contains the movable storage device of control chip and storer and the hardware platform with user interactions based on a kind of inside, the memory block of trusted operating system district and storage purpose file is included in described storer, the routine package that described control chip runs is containing control module, described movable storage device is also provided with for providing the internal battery of electric power with the interactive component of user interactions and for control chip and interactive component, described control module communicates with interactive component with trusted operating system district respectively, its concrete steps are as follows:
A) original state: user starts movable storage device by interactive component, control chip is powered on, and control module brings into operation;
B) status checking: control module enters protection state, check whether movable storage device is connected with hardware platform, if the connection status of being in, then go to step K), if be in not-connected status, then authorising conditional is transferred to interactive component by control module, and the mandate of interactive component reminding user, to start secure composition environment, waits for the input of user;
C) subscriber authorisation: after interactive component receives the input signal of user, be organized into authorization message, and authorization message is transferred to control module, if control module does not receive the authorization message of interactive component within the T1 time, then control module judges that user operation is as invalid operation, go to step K), if control module have received the authorization message of interactive component within the T1 time, then go to step D);
D) authority checking: after control module receives authorization message, authorization information predetermined to itself and inside is checked, if be consistent, then go to step G), if do not met, then error message is transferred to interactive component, go to step E), if incongruent number of times reaches N time, then go to step F);
E) authentication failed: interactive component shows authorising conditional again, waits for the input of user, returns back to step C);
F) authorization failure: control module checks predetermined configuration information, if configuration information is format, then authorization information resets to defaults by control module, and by information transmission too much for errors number to interactive component, by interactive component reminding user, remove the inner All Files in memory block, go to step K), if configuration information is not for format, then control module by information transmission too much for errors number to interactive component, by interactive component reminding user, return back to step B);
G) switching state: control module switches to trust state, the connector to hardware platform enumerates trusted operating system subregion and memory block, waits for the communication of hardware platform;
H) editing environment is started: movable storage device and hardware platform are interconnected by user, start hardware platform, and select from movable storage device guidance system, hardware platform runs the Document Editing environment in trusted operating system district, if in the T2 time from control module switches to trust state, Document Editing environment is not run, then go to step K), if in the T2 time from control module switches to trust state, Document Editing environment runs, then go to step I);
I) user operation: according to the operation of user, hardware platform sends the operational order to memory block internal file, and this operational order is transferred to control module, the order of control module parse operation, and carries out the editor of file according to operational order;
J) end operation: user's complete operation, exit Document Editing environment, control module control hardware platform upper once start time do not guide from movable storage device, hardware platform is closed, and disconnect trusted operating system district and the communication of hardware platform and the communication connection of movable storage device and hardware platform successively, go to step K);
K) done state: control module enters protection state, and by control chip power-off, close movable storage device, return back to steps A).
2. a kind ofly support offline authorization and solve the environment implementation method of secure composition demand as claimed in claim 1, it is characterized in that: the described T1 time is 5s ~ 10s, the described T2 time is 30s ~ 2m.
3. a kind ofly support offline authorization and solve the environment implementation method of secure composition demand as claimed in claim 1, it is characterized in that: in step D) in, the number of times of N is no less than 3 times.
4. a kind ofly support offline authorization and solve the environment implementation method of secure composition demand as claimed in claim 1, it is characterized in that: in step I) in, Document Editing environment in trusted operating system district comprises the private file transmitting software of management storage region internal file, described private file transmitting software sends operational order according to the operation of user, and operational order is transferred to control module.
5. a kind of according to any one of Claims 1-4 supports offline authorization and solves the environment implementation method of secure composition demand, it is characterized in that: described movable storage device is communicated to connect by usb protocol and hardware platform.
6. a kind ofly support offline authorization and solve the environment implementation method of secure composition demand as claimed in claim 5, it is characterized in that: described interactive component comprises Fingerprint Identification Unit, described Fingerprint Identification Unit is connected with control chip and communicates with control module, in step C) in, what user inputted is finger print information, in step D) in, the predetermined authorization information of control module is corresponding finger print information.
7. a kind ofly support offline authorization and solve the environment implementation method of secure composition demand as claimed in claim 5, it is characterized in that: described interactive component comprises keyboard, described keyboard is connected with control chip and communicates with control module, in step C) in, the information of user's input is the authentication password conformed to authorising conditional, and the predetermined authorization information of control module is the authorization information of corresponding user.
CN201510035928.8A 2015-01-23 2015-01-23 A kind ofly support offline authorization and solve the environment implementation method of secure composition demand Active CN104615918B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510035928.8A CN104615918B (en) 2015-01-23 2015-01-23 A kind ofly support offline authorization and solve the environment implementation method of secure composition demand

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510035928.8A CN104615918B (en) 2015-01-23 2015-01-23 A kind ofly support offline authorization and solve the environment implementation method of secure composition demand

Publications (2)

Publication Number Publication Date
CN104615918A true CN104615918A (en) 2015-05-13
CN104615918B CN104615918B (en) 2016-03-02

Family

ID=53150359

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510035928.8A Active CN104615918B (en) 2015-01-23 2015-01-23 A kind ofly support offline authorization and solve the environment implementation method of secure composition demand

Country Status (1)

Country Link
CN (1) CN104615918B (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108763971A (en) * 2018-08-17 2018-11-06 北京航星中云科技有限公司 A kind of data safety storage device and method, mobile terminal
CN110008659A (en) * 2019-03-29 2019-07-12 深圳华锐金融技术股份有限公司 Outline management method, apparatus, computer equipment and the storage medium of software license

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102724137A (en) * 2012-05-30 2012-10-10 杭州华三通信技术有限公司 Method and system for safely using credible mobile storage medium in off-line state
CN102955746A (en) * 2011-08-18 2013-03-06 北京爱国者信息技术有限公司 Read-only mode mobile storage device and data access method thereof
CN104217175A (en) * 2014-09-05 2014-12-17 北京邮电大学 Data read-write method and device

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102955746A (en) * 2011-08-18 2013-03-06 北京爱国者信息技术有限公司 Read-only mode mobile storage device and data access method thereof
CN102724137A (en) * 2012-05-30 2012-10-10 杭州华三通信技术有限公司 Method and system for safely using credible mobile storage medium in off-line state
CN104217175A (en) * 2014-09-05 2014-12-17 北京邮电大学 Data read-write method and device

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108763971A (en) * 2018-08-17 2018-11-06 北京航星中云科技有限公司 A kind of data safety storage device and method, mobile terminal
CN108763971B (en) * 2018-08-17 2023-04-04 北京航星中云科技有限公司 Data security storage device and method and mobile terminal
CN110008659A (en) * 2019-03-29 2019-07-12 深圳华锐金融技术股份有限公司 Outline management method, apparatus, computer equipment and the storage medium of software license
CN110008659B (en) * 2019-03-29 2021-03-23 深圳华锐金融技术股份有限公司 Software license offline management method and device, computer equipment and storage medium

Also Published As

Publication number Publication date
CN104615918B (en) 2016-03-02

Similar Documents

Publication Publication Date Title
CA2799932C (en) Computer motherboard having peripheral security functions
CN101324912B (en) Credible safety computer
CN100437618C (en) Portable information safety device
CN201397508Y (en) Stand-alone terminal secure login and monitoring device
CN102799831B (en) Information safety protection system of application system based on database and information safety protection method
CN101256608A (en) Safe operation method and system
CN101593252B (en) Method and system for controlling access of computer to USB equipment
CN102855451A (en) Portable computer terminal with safe anti-secret-disclosing function
TW201712589A (en) Secure input/output device management
CN104615918B (en) A kind ofly support offline authorization and solve the environment implementation method of secure composition demand
CN101303716B (en) Embedded system recuperation mechanism based on TPM
CN203618020U (en) Internal and external network security access mode
CN114942729A (en) Data safety storage and reading method for computer system
CN104598838B (en) A kind of random verification and provide trusted operating environment file store and edit methods
CN102831081A (en) Transparent encryption and decryption secure digital memory card (SD card) and implementation method thereof
CN104598837B (en) A kind of environment implementation method solving file security editor demand
CN201917912U (en) Monitoring and management system of USB (Universal Serial Bus) storage device
CN104573559A (en) File storage and access method capable of supporting password authentication and operation log
CN104598787A (en) File storage and editing method for artificially authorizing and providing trusted operation environment
CN202085191U (en) Data safe storage and transmission system
CN111736770B (en) Embedded secure memory
EP3007092B1 (en) Mobile device-based authentication method and authentication apparatus
CN104598811A (en) Starting method for safe operation environment of program
CN109255258B (en) Encrypted navigation computer circuit
CN104866787A (en) Mobile equipment based on data interface recognition

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant