CN109800587A - Data ciphering method between terminal device and server - Google Patents
Data ciphering method between terminal device and server Download PDFInfo
- Publication number
- CN109800587A CN109800587A CN201811587776.2A CN201811587776A CN109800587A CN 109800587 A CN109800587 A CN 109800587A CN 201811587776 A CN201811587776 A CN 201811587776A CN 109800587 A CN109800587 A CN 109800587A
- Authority
- CN
- China
- Prior art keywords
- terminal device
- parameter
- page data
- data
- background server
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Withdrawn
Links
Landscapes
- Storage Device Security (AREA)
- Information Transfer Between Computers (AREA)
Abstract
The present invention relates to technical field of information management, the data ciphering method between a kind of terminal device and server is disclosed, wherein method includes: the access request to target pages for obtaining terminal device and initiating;The corresponding first page data of the target pages are obtained from the corresponding background server of the target pages according to the access request;The first page data are encrypted to obtain second page data using the first Encryption Algorithm;The first response to the access request is sent to the terminal device, so that the terminal device is decrypted the second page data according to the first ciphertext data to obtain the first page data, first response includes the second page data and first ciphertext data.By being encrypted to the page data that background server returns, avoids the universal scans tool such as scanner from being directly obtained page data, improve the safety of background server.
Description
Technical field
The present invention relates to the data encryptions between technical field of information management more particularly to a kind of terminal device and server
Method.
Background technique
Website is to rely on the application of web technology foundation, and the information exchange each time in the application of website is directed to web client
End and web services end, wherein the main task of web client is to show the information content to user, specifically utilizes html language
Speech, shell script, CSS, plug-in part technology etc. realize that corresponding web page is shown;Web services end provides business for web client
It supports, the technologies such as PHP, ASP, JSP is specifically utilized to realize corresponding function.The interaction flow at web services end and web client
Generally are as follows: web client sends to web services end and requests, and the request that web services end group is issued in web client is to web client
End returns to the corresponding data (such as html code) of the request.
In order to improve the safety of website, certain data of website can generally be added using certain encryption technology
It is close, in current some Encryption Designs, the content to avoid website is mainly encrypted by the html code to website
Structure is read easily.But there are also the interaction parameters between each function of number of site (as mentioned by post list at present
User name, password of friendship etc.) it is to be transmitted in the form of plaintext, monitored risk is faced, the safety of website is not high enough.
Summary of the invention
In view of the above-mentioned deficiencies in the prior art, the present invention provides the numbers between a kind of terminal device and server
According to encryption method, the technical problem that web portal security is not high enough in the prior art can be solved.
The present invention provides the data ciphering methods between a kind of terminal device and server to include:
Obtain the access request to target pages that terminal device is initiated;
It is corresponding from the target pages corresponding background server acquisition target pages according to the access request
First page data;
The first page data are encrypted to obtain second page data using the first Encryption Algorithm;
The first response to the access request is sent to the terminal device, so that the terminal device is according to the first solution
Ciphertext data is decrypted the second page data to obtain the first page data, and first response includes described second
Page data and first ciphertext data, first ciphertext data are the data comprising first Encryption Algorithm.
Optionally, first ciphertext data includes the corresponding decryption script of the first Encryption Algorithm, the decryption script quilt
The terminal device makes terminal device execute first Encryption Algorithm to be decrypted when running;
It is described to include: to the first response of the access request to terminal device transmission
Determine the corresponding decryption script of first Encryption Algorithm;
It is inserted into the corresponding decryption script of first Encryption Algorithm in the second page data, and described will be inserted into
Second page data carrying after the corresponding decryption script of one Encryption Algorithm is sent to the terminal in first response and sets
It is standby.
Optionally, after first response sent to the terminal device to the access request, further includes:
It obtains the parameter that the terminal device is initiated and submits request, it includes the first parameter that the parameter, which submits request, described
First parameter is the parameter that is encrypted according to first encryption data to the second parameter of the terminal device, described the
Two parameters are the parameter that the terminal device is got by the target pages;
First parameter is decrypted to obtain second parameter;
Second parameter is sent to the background server.
It is optionally, described that second parameter is sent to after the background server further include:
Obtain the third page data that the background server is returned according to second parameter;
The third page data is encrypted to obtain the 4th page data using third Encryption Algorithm;
The second response that request is submitted to the parameter is sent to the terminal device, so that the terminal device is according to the
Two ciphertext datas are decrypted the 4th page data to obtain the third page data, and second response includes described
4th page data and second ciphertext data, second ciphertext data are the data comprising the third Encryption Algorithm.
Optionally, described second parameter is sent to the background server to include:
Second parameter is sent to the background service by the Hyper text transfer HTTPS agreement based on security socket layer
Device.
It is described to obtain the background server according to the third page data that second parameter returns and include:
Obtain the third page number that the background server is returned according to second parameter based on the HTTPS agreement
According to.
In embodiment of the present invention, by intercepting and capturing the data interacted between terminal device and background server and being carried out to it
Encryption, ensure that the safety of the data interacted between terminal device and background server.
Detailed description of the invention
It, below will be to embodiment in order to illustrate more clearly of embodiment of the present invention or technical solution in the prior art
Or attached drawing needed to be used in the description of the prior art is briefly described, it should be apparent that, the accompanying drawings in the following description is only
It is some embodiments of the present invention, for those skilled in the art, without creative efforts, may be used also
To obtain other drawings based on these drawings.
Fig. 1 is a kind of configuration diagram for web station system that embodiment of the present invention provides;
Fig. 2 is a kind of process of the data ciphering method between terminal device and server that embodiment of the present invention provides
Schematic diagram.
Specific embodiment
Below in conjunction with the attached drawing in the application embodiment, the technical solution in the application embodiment is carried out clear
Chu is fully described by, it is clear that described embodiment is only a part of embodiment of the application, rather than whole realities
Apply mode.Based on the embodiment in the application, those of ordinary skill in the art institute without making creative work
The every other embodiment obtained, shall fall in the protection scope of this application.
The present invention provides a kind of technical solution of the present invention and is suitable for traditional website system with plaintext version transmission data
System, web station system may include website client end and website service end.Illustratively, the frame of the web station system of embodiment of the present invention
Structure can with as shown in Figure 1, web station system include the website client end operated on terminal device 101, encryption server 102 and
Website server 103, wherein encryption server 102 is used to obtain website client end and encrypts the interaction between the server-side of website
Data are simultaneously encrypted.
The method of embodiment of the present invention may be implemented that implementation of the present invention is described below in system architecture shown in Fig. 1
The method of mode.
Referring to fig. 2, Fig. 2 is the data encryption side between a kind of terminal device and server that embodiment of the present invention provides
The flow diagram of method, as shown, this method comprises:
S201, terminal device initiate the access request to target pages, and encryption server obtains the access to target pages
Request.
S202, encryption server send the corresponding resource acquisition request of target pages, background server to background server
Receive the resource access request to target pages.
Here, background server is the corresponding background server of the target pages, namely the website comprising the target pages
The background server of system.The corresponding resource acquisition request of target pages is for requesting the background server to return to the target pages
Corresponding first page data, the first page data can make the website when being run by the website client end in terminal device
Client shows the target pages.
S203, background server send the corresponding first page data of target pages, and encryption server obtains target pages
Corresponding first page data.
Here, background server finds the target according to the corresponding resource acquisition request of the target pages from directory web site
The corresponding site file of the page obtains first page data from the site file, then sends the first page data.
S204, encryption server encrypt first page data to obtain second page number using the first Encryption Algorithm
According to.
S205, encryption server send the first response to terminal device, and terminal device receives the first response, the first response bag
Include second page data and the first ciphertext data.
S206, terminal device are decrypted second page data according to the first ciphertext data to obtain first page data.
S207, terminal device is according to first page data shows target pages.
In the corresponding embodiment of above-mentioned Fig. 2, the page that encryption server returns to from background server to terminal device
Data are encrypted, in some possible implementations, if the target pages are that parameter obtains the page, in terminal device
In the case where submitting the parameter information got from target pages to background server, terminal device can be to terminal device backward
The parameter information that platform server is submitted is encrypted.Encryption server can take the encryption data for being used to encrypt the parameter information
Band is sent to terminal device in the corresponding page data of the target pages, i.e., is that parameter page obtains the page in the target pages
In the case where, which can also include the first encryption data, which is to include the second Encryption Algorithm
Data, first encryption data can be used for encryption data by terminal device.
In embodiment of the present invention, by intercepting and capturing the data interacted between terminal device and background server and being carried out to it
Encryption, ensure that the safety of the data interacted between terminal device and background server.
In the above-described embodiment, it all emphasizes particularly on different fields to the description of each embodiment, without detailed in some embodiment
The part stated may refer to the associated description of other embodiment.The above are to terminal device provided by the present invention and service
The description of data ciphering method between device, for those of ordinary skill in the art, the thought of embodiment according to the present invention,
There will be changes in the specific implementation manner and application range, and to sum up, the content of the present specification should not be construed as to the present invention
Limitation.
Claims (5)
1. the data ciphering method between a kind of terminal device and server characterized by comprising
Obtain the access request to target pages that terminal device is initiated;
The target pages corresponding first are obtained from the corresponding background server of the target pages according to the access request
Page data;
The first page data are encrypted to obtain second page data using the first Encryption Algorithm;
The first response to the access request is sent to the terminal device, so that the terminal device is according to the first decryption number
It is decrypted to obtain the first page data according to the second page data, first response includes the second page
Data and first ciphertext data, first ciphertext data are the data comprising first Encryption Algorithm.
2. the method according to claim 1, wherein first ciphertext data is corresponding including the first Encryption Algorithm
Decryption script, the decryption script make when being run by the terminal device terminal device execute first Encryption Algorithm with into
Row decryption;
It is described to include: to the first response of the access request to terminal device transmission
Determine the corresponding decryption script of first Encryption Algorithm;
It is inserted into the corresponding decryption script of first Encryption Algorithm in the second page data, and described first will be inserted into and added
Second page data after the corresponding decryption script of close algorithm, which are carried, is sent to the terminal device in first response.
3. method described in any one of -2 according to claim 1, which is characterized in that described to terminal device transmission pair
After first response of the access request, further includes:
It obtaining the parameter that the terminal device is initiated and submits request, it includes the first parameter that the parameter, which submits request, and described first
Parameter is the parameter that the terminal device encrypts the second parameter according to first encryption data, second ginseng
Number is the parameter that the terminal device is got by the target pages;
First parameter is decrypted to obtain second parameter;
Second parameter is sent to the background server.
4. method described in any one of -2 according to claim 1, which is characterized in that described to be sent to second parameter
After the background server further include:
Obtain the third page data that the background server is returned according to second parameter;
The third page data is encrypted to obtain the 4th page data using third Encryption Algorithm;
The second response that request is submitted to the parameter is sent to the terminal device, so that the terminal device is according to the second solution
Ciphertext data is decrypted the 4th page data to obtain the third page data, and second response includes the described 4th
Page data and second ciphertext data, second ciphertext data are the data comprising the third Encryption Algorithm.
5. method described in any one of -2 according to claim 1, which is characterized in that described to be sent to second parameter
The background server includes:
Second parameter is sent to the background server by the Hyper text transfer HTTPS agreement based on security socket layer.
It is described to obtain the background server according to the third page data that second parameter returns and include:
Obtain the third page data that the background server is returned according to second parameter based on the HTTPS agreement.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201811587776.2A CN109800587A (en) | 2018-12-25 | 2018-12-25 | Data ciphering method between terminal device and server |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201811587776.2A CN109800587A (en) | 2018-12-25 | 2018-12-25 | Data ciphering method between terminal device and server |
Publications (1)
Publication Number | Publication Date |
---|---|
CN109800587A true CN109800587A (en) | 2019-05-24 |
Family
ID=66557480
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201811587776.2A Withdrawn CN109800587A (en) | 2018-12-25 | 2018-12-25 | Data ciphering method between terminal device and server |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN109800587A (en) |
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN112738117A (en) * | 2020-12-31 | 2021-04-30 | 青岛海尔科技有限公司 | Data transmission method, device and system, storage medium and electronic device |
-
2018
- 2018-12-25 CN CN201811587776.2A patent/CN109800587A/en not_active Withdrawn
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN112738117A (en) * | 2020-12-31 | 2021-04-30 | 青岛海尔科技有限公司 | Data transmission method, device and system, storage medium and electronic device |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US10880732B2 (en) | Authentication of phone caller identity | |
CN109922077B (en) | Identity authentication method and system based on block chain | |
US8966243B2 (en) | Method and system for data encryption and decryption in data transmission through the web | |
US10387639B2 (en) | Apparatus and method for API authentication using two API tokens | |
US11676133B2 (en) | Method and system for mobile cryptocurrency wallet connectivity | |
CN105357191B (en) | The encryption method and device of user data | |
US9021552B2 (en) | User authentication for intermediate representational state transfer (REST) client via certificate authority | |
US8527762B2 (en) | Method for realizing an authentication center and an authentication system thereof | |
CN103428221A (en) | Safety logging method, system and device of mobile application | |
CN101651666A (en) | Method and device for identity authentication and single sign-on based on virtual private network | |
US11190350B2 (en) | Systems and methods for using an OAUTH client secret to encrypt data sent to browser | |
CN104283680A (en) | Data transmission method, client side, server and system | |
Ban et al. | Fine-grained support of security services for resource constrained internet of things | |
CN109067739A (en) | Encryption of communicated data method and apparatus | |
CN108965311A (en) | Encryption of communicated data method and apparatus | |
CN109150800A (en) | Login access method, system and storage medium | |
CN104378379A (en) | Encryption transmission method, equipment and system for digital content | |
CN106936759A (en) | A kind of single-point logging method, server and client | |
CN105049448B (en) | Single-sign-on device and method | |
CN106031097A (en) | Service processing method and device | |
CN104639528A (en) | DBA (database administrator) mobile client counterattack method and DBA mobile client counterattack device | |
CN103716280A (en) | Data transmission method, server and system | |
CN107911344A (en) | A kind of safe docking calculation of cloud platform | |
CN109802834A (en) | The method and system that a kind of pair of business layer data is encrypted, decrypted | |
CN102714653B (en) | For the system and method for accessing private digital content |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
WW01 | Invention patent application withdrawn after publication |
Application publication date: 20190524 |
|
WW01 | Invention patent application withdrawn after publication |