CN110035070A - Data processing method and device for share-car - Google Patents

Data processing method and device for share-car Download PDF

Info

Publication number
CN110035070A
CN110035070A CN201910202006.XA CN201910202006A CN110035070A CN 110035070 A CN110035070 A CN 110035070A CN 201910202006 A CN201910202006 A CN 201910202006A CN 110035070 A CN110035070 A CN 110035070A
Authority
CN
China
Prior art keywords
share
car
target
key
service terminal
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201910202006.XA
Other languages
Chinese (zh)
Other versions
CN110035070B (en
Inventor
孙勇
赵原
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Advanced New Technologies Co Ltd
Advantageous New Technologies Co Ltd
Original Assignee
Alibaba Group Holding Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Alibaba Group Holding Ltd filed Critical Alibaba Group Holding Ltd
Priority to CN201910202006.XA priority Critical patent/CN110035070B/en
Publication of CN110035070A publication Critical patent/CN110035070A/en
Application granted granted Critical
Publication of CN110035070B publication Critical patent/CN110035070B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0407Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the identity of one or more communicating identities is hidden
    • H04L63/0414Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the identity of one or more communicating identities is hidden during transmission, i.e. party's identity is protected against eavesdropping, e.g. by using temporary identifiers, but is known to the other party or parties involved in the communication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0876Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint

Abstract

One or more embodiments of this specification provide a kind of data processing method and device for share-car, applied to the business data processing system for including Ride-share service terminal, share-car user client and safety caculation module;The described method includes: target share-car user client sends target share-car request to the Ride-share service terminal, wherein, target share-car request includes identity and the target share-car address that is encrypted by the corresponding object transmission key of the target share-car user of the target share-car user;The Ride-share service terminal sends the target share-car request to the safety caculation module;The safety caculation module is based on the decryption of target share-car address described in the object transmission key pair;The share-car address for other share-cars user that the safety caculation module has been obtained according to preset share-car user matching logic, based on target share-car address and the safety caculation module after decryption matches, to obtain share-car allocation result.

Description

Data processing method and device for share-car
Technical field
This specification is related to network communication and technical field of data processing more particularly to a kind of data processing for share-car Method and apparatus.
Background technique
In actual service application, Ride-share service terminal can be by multiple client due to processing multiple business service type Or other service processing equipments access, the data information handled in Ride-share service terminal, data letter especially related to user Breath is easy to be obtained by other clients or service processing equipment, to cause the security risk of leaking data.
Summary of the invention
In view of this, this specification one or more embodiment provides a kind of data processing method and dress for share-car It sets, computer equipment.
To achieve the above object, it is as follows to provide technical solution for this specification one or more embodiment:
According to this specification one or more embodiment in a first aspect, proposing a kind of data processing side for share-car Method, applied to including Ride-share service terminal, the data processing system of share-car user client and safety caculation module;The spelling Vehicle service terminal and the safety caculation module communicate to connect, and the Ride-share service terminal and the share-car user client are logical Letter connection;The safety caculation module and share-car user client negotiation have transmission corresponding with the share-car user close Key;The described method includes:
Target share-car user client sends target share-car request to the Ride-share service terminal, wherein the target is spelled Vehicle request includes identity and the target share-car address of the target share-car user, and target share-car address is by the mesh Mark the corresponding object transmission key encryption of share-car user;
Share-car allocation result is received from the Ride-share service terminal.
According to the second aspect of this specification one or more embodiment, a kind of data processing side for share-car is proposed Method, applied to including Ride-share service terminal, the data processing system of share-car user client and safety caculation module;The spelling Vehicle service terminal and the safety caculation module communicate to connect, and the Ride-share service terminal and the share-car user client are logical Letter connection;The safety caculation module and share-car user client negotiation have transmission corresponding with the share-car user close Key;The described method includes:
The Ride-share service terminal receives the target share-car request that target share-car user client is sent, wherein the mesh Identity and the target share-car address that share-car request includes the target share-car user are marked, and target share-car address is by institute State the corresponding object transmission key encryption of target share-car user client;
The share-car request data is sent to the safety caculation module;
Receive the share-car allocation result that the safety caculation module is sent;
The share-car allocation result is sent to the target share-car user client.
According to the third aspect of this specification one or more embodiment, a kind of data processing side for share-car is proposed Method, applied to including Ride-share service terminal, the data processing system of share-car user client and safety caculation module;The spelling Vehicle service terminal and the safety caculation module communicate to connect, and the Ride-share service terminal and the share-car user client are logical Letter connection;The safety caculation module and share-car user client negotiation have transmission corresponding with the share-car user close Key;The described method includes:
The safety caculation module obtains the target share-car request that the Ride-share service terminal is sent, wherein the target Share-car request includes identity and the target share-car address of the target share-car user, and target share-car address is described The corresponding object transmission key encryption of target share-car user;
It is close that identity based on the target share-car user obtains object transmission corresponding with the target share-car user Key;
It is decrypted based on target share-car address described in the object transmission key pair;
According to preset share-car user matching logic, based on after decryption target share-car address and the safety caculation module The share-car address of other share-cars user obtained matches, to obtain share-car allocation result;
The share-car allocation result is sent to the Ride-share service terminal.
According to the fourth aspect of this specification one or more embodiment, a kind of data processing dress for share-car is proposed It sets, applied to including Ride-share service terminal, the data processing system of share-car user client and safety caculation module;The spelling Vehicle service terminal and the safety caculation module communicate to connect, and the Ride-share service terminal and the share-car user client are logical Letter connection;The safety caculation module and share-car user client negotiation have transmission corresponding with the share-car user close Key;Described device is used for share-car user client, comprising:
Transmission unit, for sending target share-car request to the Ride-share service terminal, wherein the target share-car request Identity and target share-car address including the target share-car user, and target share-car address is by the target share-car The corresponding object transmission key encryption of user;
Receiving unit, for receiving share-car allocation result from the Ride-share service terminal.
According to the 5th of this specification one or more embodiment the aspect, a kind of data processing dress for share-car is proposed It sets, applied to including Ride-share service terminal, the data processing system of share-car user client and safety caculation module;The spelling Vehicle service terminal and the safety caculation module communicate to connect, and the Ride-share service terminal and the share-car user client are logical Letter connection;The safety caculation module and share-car user client negotiation have transmission corresponding with the share-car user close Key;Described device is used for the Ride-share service terminal, comprising:
Receiving unit, for receiving the target share-car request of target share-car user client transmission, wherein the target is spelled Vehicle request includes identity and the target share-car address of the target share-car user, and target share-car address is by the mesh Mark the corresponding object transmission key encryption of share-car user client;
Transmission unit, for the share-car request data to be sent to the safety caculation module;
The receiving unit is further used for receiving the share-car allocation result that the safety caculation module is sent;
The transmission unit is further used for sending the share-car allocation result to the target share-car user client.
According to the 6th of this specification one or more embodiment the aspect, a kind of data processing dress for share-car is proposed It sets, applied to including Ride-share service terminal, the data processing system of share-car user client and safety caculation module;The spelling Vehicle service terminal and the safety caculation module communicate to connect, and the Ride-share service terminal and the share-car user client are logical Letter connection;The safety caculation module and share-car user client negotiation have transmission corresponding with the share-car user close Key;Described device is used for the safety caculation module, comprising:
Acquiring unit obtains the target share-car request that the Ride-share service terminal is sent, wherein the target share-car request Identity and target share-car address including the target share-car user, and target share-car address is by the target share-car The corresponding object transmission key encryption of user;
The acquiring unit is further used for the identity based on the target share-car user and obtains and target spelling The corresponding object transmission key in automobile-used family;
Decryption unit, based on the decryption of target share-car address described in the object transmission key pair;
Matching unit is calculated, is used for according to preset share-car user matching logic, based on the target share-car address after decryption The share-car address of other share-cars user obtained with the safety caculation module matches, to obtain share-car allocation result;
Transmission unit, for sending the share-car allocation result to the Ride-share service terminal.
According to the 7th of this specification one or more embodiment the aspect, a kind of computer equipment is proposed, comprising: storage Device and processor;The computer program that can be run by processor is stored on the memory;The processor runs the meter When calculation machine program, the data processing method steps that above-mentioned target share-car user client executes are executed.
According to this specification one or more embodiment in a first aspect, proposing a kind of computer equipment, comprising: storage Device and processor;The computer program that can be run by processor is stored on the memory;The processor runs the meter When calculation machine program, the data processing method steps that above-mentioned Ride-share service terminal executes are executed.
According to this specification one or more embodiment in a first aspect, proposing a kind of computer equipment, comprising: storage Device and processor;The computer program that can be run by processor is stored on the memory;The processor runs the meter When calculation machine program, the data processing method steps that above-mentioned safety caculation module executes are executed.
Using data processing method, device, the computer equipment for being used for share-car provided by this specification, pass through setting one Safety caculation module is connect with Ride-share service terminal, using above-mentioned safety caculation module to Ride-share service terminal from user client The share-car request of the encryption of acquisition be decrypted with share-car user's matching treatment, and the result of matching treatment is passed through into Ride-share service Terminal sends back user client.Be related to share-car user data personal secrets share-car request (may include the share-car address of user, The share-car address of user can be related to privacy of user) although the transmitting of Ride-share service terminal is related to by Ride-share service terminal The information of share-car user data personal secrets can be encryption information, avoid the leaking data that may occur in Ride-share service terminal Etc. security risks.
Detailed description of the invention
Fig. 1 is that the business data processing system for share-car that one exemplary embodiment of this specification provides carries out at data The flow chart of reason;
Fig. 2 is showing for the data processing equipment applied to Ride-share service terminal that one exemplary embodiment of this specification provides It is intended to;
Fig. 3 is the data processing equipment applied to share-car user client that one exemplary embodiment of this specification provides Schematic diagram;
Fig. 4 is showing for the data processing equipment applied to safety caculation module that one exemplary embodiment of this specification provides It is intended to;
Fig. 5 is a kind of hardware knot for running one or more service data processing apparatus embodiments provided by this specification Composition.
Specific embodiment
Example embodiments are described in detail here, and the example is illustrated in the accompanying drawings.Following description is related to When attached drawing, unless otherwise indicated, the same numbers in different drawings indicate the same or similar elements.Following exemplary embodiment Described in embodiment do not represent all embodiments consistent with this specification one or more embodiment.Phase Instead, they are only some aspects phases with the one or more embodiments of as detailed in the attached claim, this specification The example of consistent device and method.
It should be understood that the sequence that might not show and describe according to this specification in other embodiments executes The step of correlation method.In some other embodiments, step included by method can than described in this specification more It is more or less.In addition, single step described in this specification, may be broken down into other embodiments multiple steps into Row description;And multiple steps described in this specification, it may also be merged into single step progress in other embodiments Description.
Data processing method described in each embodiment provided by this specification can be applied to include Ride-share service end It holds, the data processing system of share-car user client and safety caculation module.Above-mentioned Ride-share service terminal may include shared rides Service provider is the computer equipment or computer for receiving the share-car of user and requesting, carrying out the business such as share-car matching and be arranged The terminals such as cluster.Share-car user client is that share-car user is to lift share-car request, receive the business such as share-car allocation result and hold Some computer equipment terminals.Above-mentioned safety caculation module can also pass through hardware or software and hardware by software realization In conjunction with mode realize;It taking software implementation as an example, can be whole by being integrated in above-mentioned Ride-share service as the module on logical meaning In end, by the CPU (Central Process Unit, central processing unit) of Ride-share service terminal by corresponding computer program Instruction is read into memory what operation was formed;For hardware view, which both can be for independently of share-car clothes Hardware device except terminal of being engaged in, comprising CPU, memory and memory;Or it is shared with Ride-share service terminal part The soft or hard binding modules of hardware facility.For example, the processor of the safety caculation module is the processor of above-mentioned Ride-share service terminal The middle partial region for dividing setting, the software and hardware knot which establishes for the partial region based on above-mentioned processor Total calculation processing module, the credible and secure calculating environment of enclave such as based on Intel chip, etc..
Fig. 1 is the data processing for the business data processing system for share-car that one exemplary embodiment of this specification provides Flow diagram.As shown in Figure 1, above-mentioned Ride-share service terminal and above-mentioned safety caculation module communicate to connect, and above-mentioned share-car takes Terminal of being engaged in and above-mentioned share-car user client communicate to connect.It is worth noting that, " communication link described in each embodiment of this specification Connect " include but is not limited between terminal device or between terminal device and module direct communication connect, may also include terminal device Between or terminal device and module between connected by the indirect communications of other terminal devices etc..
In the present embodiment, above-mentioned safety caculation module has corresponding with the share-car user with the negotiation of share-car user client Transmission key, above-mentioned transmission key can be used for the business to transmission to be communicated between safety caculation module and share-car user client Data are encrypted or are decrypted.Since above-mentioned transmission key is only known by safety caculation module and the negotiation of share-car user client, Above-mentioned Ride-share service terminal due to that can not know transmission key, and it can not be transmitted or stored, added by above-mentioned transmission key Close business datum is decrypted, to can not know the original text of encrypted business datum.
As shown in Figure 1, data processing method provided by one or more embodiments that this specification provides includes:
Step 102, target share-car user client sends target share-car request to the Ride-share service terminal, wherein institute State identity and the target share-car address that target share-car request includes the target share-car user, and target share-car address By the corresponding object transmission key encryption of the target share-car user.
The identity of above-mentioned target share-car user can be for known to above-mentioned data processing system, the mesh for identification Mark the unique identification ID of share-car user.Above-mentioned target share-car address may include target share-car user be intended to other users (can be Driver user or by bus user) stroke of share-car or the location informations such as the destination of share-car or the starting point of share-car.Above-mentioned mesh Share-car address is marked due to including position or the trip information of target share-car user, and there is personal privacy;Especially when above-mentioned When target share-car address includes the information such as home address or the CompanyAddress of target share-car user, some share-car users are unwilling Above-mentioned target share-car address information is revealed to other share-cars user.
Step 104, the Ride-share service terminal sends the target share-car request to the safety caculation module.
Above-mentioned target share-car request is appeared and is transmitted to after obtaining the target share-car request by the Ride-share service terminal Safety caculation module.As noted previously, as Ride-share service terminal does not have above-mentioned object transmission key, therefore above-mentioned Ride-share service Terminal cannot know the source language message of the above-mentioned target share-car address for being related to target user's privacy, so that above-mentioned target be prevented to spell Leakage of the vehicle address information in the Ride-share service terminal.In the present embodiment, above-mentioned Ride-share service terminal can be counted with above-mentioned safety Module is calculated to be directly connected to, and by the target share-car of the above-mentioned identity including the target share-car user and target share-car address Request is sent to above-mentioned safety caculation module.
Step 106, the safety caculation module is obtained and the target based on the identity of the target share-car user The corresponding object transmission key of share-car user.
Due to the safety caculation module and the share-car user client negotiation have it is corresponding with the share-car user Transmission key, based on the identity of the target share-car user, the safety caculation module be can get and the target share-car The corresponding object transmission key of user.
The process for negotiating the transmission key about above-mentioned safety caculation module and above-mentioned share-car user client, can wrap It includes:
Share-car user client sends encrypted first key to the Ride-share service terminal, wherein described first is close Key is by the public key encryption based on the safety caculation module;
The encrypted first key is sent to the safety caculation module by the Ride-share service terminal;
The safety caculation module decrypts the encrypted first key based on the private key of itself, to obtain described the One key;
The safety caculation module is calculated based on the first key according to preset transmission key computation rule and obtains institute State transmission key.
Above-mentioned safety caculation module can will be stored in above-mentioned Ride-share service terminal not by the transmission key for negotiating to obtain The region that can be accessed is to carry out key management, to reach the physical isolation of transmission key Yu Ride-share service terminal;Further, For the sake of security insurance, safety caculation module can be periodically or secondary every the target share-car request transmission of the target user of setting Number, renegotiates transmission key with target share-car user client.Alternatively, above-mentioned target share-car user client can be each Above-mentioned encrypted first key is sent while sending target share-car request, so that above-mentioned safety caculation module can be first based on The private key of itself decrypts above-mentioned encrypted first key, to obtain the transmission key for being directed to this target share-car request data, And then above-mentioned first business datum is decrypted again;Such one-time pad, more improves and includes in above-mentioned target share-car data Private data, such as the safeguard protection of target share-car address date.
Those skilled in the art is, it should be understood that preset transmission key computation rule is different, based on the acquisition of above-mentioned first key The mode of transmission key corresponding from share-car user is also different.
In the embodiment shown in one, above-mentioned transmission key is equal to the first key.In another embodiment party shown In formula, data processing system is reducible to determine safety caculation module and identical elliptic curve encryption algorithm can be used in share-car user client And transmission key of the DH exchange key as encrypted transaction data (such as target share-car address date) in basic point choice;It is using When DH exchanges key as transmission key, the product of the private key of the public key and share-car user client of safety caculation module, and peace The private key of full computing module is identical as the product of the public key of share-car user client, can be used as above-mentioned transmission key;Therefore, only Know that the public key of share-car user client, safety caculation module can the public keys based on own private key Yu share-car user client Product carry out decryption to business datum and encryption of business data processing result etc. operated.
Further, public-private key pair can be regularly replaced in share-car user client, to improve the peace of business data transmission Overall coefficient.Similarly, share-car user client is based on replacement public key (hereinafter referred to as random public key), negotiates with safety caculation module The process of transmission key can include:
Encrypted random public key is sent to the Ride-share service terminal by the share-car user client, wherein described Random public key is by the public key encryption based on the safety caculation module;
The Ride-share service terminal retransmits above-mentioned encrypted random public key to the safety caculation module;
The safety caculation module based on the private key of itself to the encrypted random public key decryptions, with obtain it is described with Machine public key;
The safety caculation module calculates the product of the random public key and the private key of itself, obtains the transmission key.
Similarly, the random public key of above-mentioned share-car user client can be regularly replaced, alternatively, accomplish one-time pad, with Further improve safety when business data transmission;Details are not described herein for detailed process.
In addition to safety caculation module described in above-mentioned several embodiments and share-car user client negotiate the tool of transmission key Body process, other specific negotiations process that those skilled in the art are expected based on existing encryption technology, should belong to this explanation In the described protection scope for negotiating transmission key of book.
Step 108, the safety is calculated based on the decryption of target share-car address described in the object transmission key pair.
Step 110, the safety caculation module is spelled according to preset share-car user matching logic based on the target after decryption Vehicle address is matched with the share-car address for other share-cars user that the safety caculation module has obtained, to obtain share-car distribution As a result.
Above-mentioned safety caculation module can the method according to the step 102 described in the present embodiment to 108 obtain it is multiple to The target share-car address of share-car user is above-mentioned target share-car user then according to share-car user's matching logic of systemic presupposition Matching symbol closes other share-cars user for stating share-car user's matching logic.This specification does not limit above-mentioned share-car user matching and patrols The particular content collected, safety caculation module can be based on each similar to the initial position similarity of share-car user or final position The indexs such as degree or stroke similarity are other share-cars user that user's matching symbol closes system thresholds setting.
Those skilled in the art is readily apparent that, above-mentioned share-car allocation result may include share-car success or share-car unsuccessfully etc. Notifying class message, may also include can with the target share-car user participate in share-car other share-cars user identity, or on State the other information of other share-cars user.In the another embodiment shown, the authorization through other share-cars user, above-mentioned share-car Allocation result can also include that the target share-car address of other share-cars user of share-car can be participated in the target share-car user, In, in order to make the target share-car address information of above-mentioned other share-cars user keep concealed to above-mentioned Ride-share service terminal, it is described its The target share-car address of his share-car user is encrypted by the safety caculation module based on the object transmission key.
Step 112, the safety caculation module sends the share-car allocation result to the Ride-share service terminal.
Step 114, the Ride-share service terminal sends the share-car allocation result to the share-car user client.
When above-mentioned share-car allocation result includes that other encrypted by the object transmission key participate in the ground of the user of share-car When the information of location, method described in the present embodiment further includes step 116, and it is close that the share-car user client is based on the object transmission Key decrypts target share-car address.
In the present embodiment, by the way that safety caculation module is arranged, to carry out share-car number of request inside safety caculation module According to decryption and based on share-car request data share-car user's matching primitives processing, and by share-car allocation result send back user visitor Family end.In the above process, it is related to the data information (including at least the address information of share-car user) of share-car privacy of user to share-car Ride-share service terminal be it is sightless, thereby ensure that above-mentioned share-car privacy of user data information (include at least share-car use The address information at family) it will not be leaked in share-car Ride-share service terminal.
As previously mentioned, above-mentioned safety caculation module can be by the independently operated software realization of Ride-share service terminal, soft Part level reaches data isolation;In order to further increase the Information Security of safety caculation module data processing, above-mentioned safety meter Calculating module can also realize in conjunction with the form of the shared fractional hardware of Ride-share service terminal or not shared hardware separate hardware.
The form of the separate hardware of not shared hardware can be understood as above-mentioned safety caculation module operating in independence completely Terminal device on, above-mentioned safety caculation module can be connect with above-mentioned Ride-share service terminal by the communication module of each terminal.Portion The form of point shared hardware develops into possibility with computer processor technology: such as Ride-share service terminal can will be legal Business datum calculation processing program be encapsulated in a trusted computation environment of CPU, protect it from Malware or program Attack, franchise or non-privileged software or program can not all access the trusted computation environment, that is to say, that once at business Reason program and business datum be located in above-mentioned trusted computation environment, even if operating system or with VMM (Hypervisor) also without Method influences code and data inside above-mentioned trusted computation environment.
By above-mentioned trusted computation environment partitioning technology, the processor of above-mentioned safety caculation module is above-mentioned Ride-share service The partial region of setting is divided in the processor of terminal, has also physically reached the processing of business datum and business datum to spelling The physical isolation of vehicle service terminal.Moreover, compared to completely self-contained hardware terminal mode, it is above-mentioned to be based on trusted computation environment skill The embodiment of safety caculation module is arranged in art, convenient for exploitation, reduces operation cost;Belong to more excellent provided by this specification Embodiment.
Corresponding with the realization of above-mentioned process, the embodiment of this specification additionally provides a variety of data processing equipments.Above-mentioned apparatus It can also be realized by way of hardware or software and hardware combining by software realization.Taking software implementation as an example, as patrolling Device in volume meaning is by the CPU (Central Process Unit, central processing unit) of place equipment by corresponding meter Calculation machine program instruction is read into memory what operation was formed.For hardware view, in addition to CPU shown in fig. 5, memory and deposit Except reservoir, the equipment where the data processing equipment also typically includes chip for carrying out wireless signal transmitting-receiving etc., and other are hard Part, and/or for realizing other hardware such as board of network communicating function.
Fig. 2 show a kind of data processing equipment 20 for share-car provided by this specification, is applied to include share-car The data processing system of service terminal, share-car user client and safety caculation module;The Ride-share service terminal and the peace Full computing module communication connection, and the Ride-share service terminal and the share-car user client communicate to connect;The safety meter Calculating module and share-car user client negotiation has transmission key corresponding with the share-car user;Described device 20 is for spelling Vehicle user client, comprising:
Transmission unit 202, for sending target share-car request to the Ride-share service terminal, wherein the target share-car Request includes identity and the target share-car address of the target share-car user, and target share-car address is by the target The corresponding object transmission key encryption of share-car user;
Receiving unit 204, for receiving share-car allocation result from the Ride-share service terminal.
In the another embodiment shown, the share-car allocation result includes that can participate in spelling with the target share-car user The identity of other share-cars user of vehicle.
In the another embodiment shown, the share-car allocation result further includes that can participate in the target share-car user The target share-car address of other share-cars user of share-car, wherein the target share-car address of other share-cars user is by the peace Full computing module is encrypted based on the object transmission key;
Described device further include: decryption unit 206, for based on target share-car address described in the object transmission key pair Decryption.
Fig. 3 illustrates the data processing equipment 30 in share-car that the another embodiment of this specification provides, and is applied to include spelling The data processing system of vehicle service terminal, share-car user client and safety caculation module;The Ride-share service terminal with it is described Safety caculation module communication connection, and the Ride-share service terminal and the share-car user client communicate to connect;The safety Computing module and share-car user client negotiation have transmission key corresponding with the share-car user;Described device 30 is used for The Ride-share service terminal, comprising:
Receiving unit 302, for receiving the target share-car request of target share-car user client transmission, wherein the mesh Identity and the target share-car address that share-car request includes the target share-car user are marked, and target share-car address is by institute State the corresponding object transmission key encryption of target share-car user client;
Transmission unit 304, for the share-car request data to be sent to the safety caculation module;
The receiving unit 302 is further used for receiving the share-car allocation result that the safety caculation module is sent;
The transmission unit 304 is further used for sending the share-car distribution knot to the target share-car user client Fruit.
In the another embodiment shown, the share-car allocation result includes that can participate in spelling with the target share-car user The identity of other share-cars user of vehicle.
In the another embodiment shown, the share-car allocation result further includes that can participate in the target share-car user The target share-car address of other share-cars user of share-car, wherein the target share-car address of other share-cars user is by the peace Full computing module is encrypted based on the object transmission key;
Fig. 4 illustrates the data processing equipment 40 for share-car that the another embodiment of this specification provides, applied to including The data processing system of Ride-share service terminal, share-car user client and safety caculation module;The Ride-share service terminal and institute Safety caculation module communication connection is stated, and the Ride-share service terminal and the share-car user client communicate to connect;The peace Full computing module and share-car user client negotiation have transmission key corresponding with the share-car user;Described device 40 is used In the safety caculation module, comprising:
Acquiring unit 402 obtains the target share-car request that the Ride-share service terminal is sent, wherein the target share-car Request includes identity and the target share-car address of the target share-car user, and target share-car address is by the target The corresponding object transmission key encryption of share-car user;
The acquiring unit 402 is further used for the identity based on the target share-car user and obtains and the mesh Mark the corresponding object transmission key of share-car user;
Decryption unit 404, based on the decryption of target share-car address described in the object transmission key pair;
Matching unit 406 is calculated, is used for according to preset share-car user matching logic, based on the target share-car after decryption Location is matched with the share-car address for other share-cars user that the safety caculation module has obtained, to obtain share-car distribution knot Fruit;
Transmission unit 406, for sending the share-car allocation result to the Ride-share service terminal.
In the another embodiment shown, the share-car allocation result includes that can participate in spelling with the target share-car user The identity of other share-cars user of vehicle.
In the another embodiment shown, the share-car allocation result further includes that can participate in the target share-car user The target share-car address of other share-cars user of share-car, wherein the target share-car address of other share-cars user is by the peace Full computing module is encrypted based on the object transmission key.
The function of each unit and the realization process of effect are specifically detailed in the above method corresponding step in above-mentioned each device Rapid realization process, the relevent part can refer to the partial explaination of embodiments of method, and details are not described herein.
The apparatus embodiments described above are merely exemplary, wherein described, unit can as illustrated by the separation member It is physically separated with being or may not be, component shown as a unit may or may not be physics mould Block, it can it is in one place, or may be distributed on multiple network modules.It can be selected according to the actual needs In some or all of unit or module realize the purpose of this specification scheme.Those of ordinary skill in the art are not paying In the case where creative work, it can understand and implement.
Device that above-described embodiment illustrates, unit, module can specifically be realized, Huo Zheyou by computer chip or entity Product with certain function is realized.A kind of typically to realize that equipment is computer, the concrete form of computer can be a People's computer, laptop computer, cellular phone, camera phone, smart phone, personal digital assistant, media player, navigation It is any several in equipment, E-mail receiver/send equipment, game console, tablet computer, wearable device or these equipment The combination of kind equipment.
Corresponding with above method embodiment, the embodiment of this specification additionally provides a kind of computer equipment, the calculating Machine equipment includes memory and processor.Wherein, the computer program that can be run by processor is stored on memory;Processing Device executes the business data processing that Ride-share service terminal executes in this specification embodiment in the computer program of operation storage Each step of method.The detailed description of each step of the business data processing method of Ride-share service terminal execution is referred to Content before, is not repeated.
Corresponding with above method embodiment, the embodiment of this specification additionally provides a kind of computer equipment, the calculating Machine equipment includes memory and processor.Wherein, the computer program that can be run by processor is stored on memory;Processing Device executes at the business datum that share-car user client executes in this specification embodiment in the computer program of operation storage Each step of reason method.The detailed description of each step of the business data processing method of share-car user client execution is asked Referring to content before, it is not repeated.
Corresponding with above method embodiment, the embodiment of this specification additionally provides a kind of computer equipment, the calculating Machine equipment includes memory and processor.Wherein, the computer program that can be run by processor is stored on memory;Processing Device executes the business data processing that safety caculation module executes in this specification embodiment in the computer program of operation storage Each step of method.The detailed description of each step of the business data processing method of safety caculation module execution is referred to Content before, is not repeated.
The foregoing is merely the preferred embodiments of this specification, all in this explanation not to limit this specification Within the spirit and principle of book, any modification, equivalent substitution, improvement and etc. done should be included in the model of this specification protection Within enclosing.
In a typical configuration, calculating equipment includes one or more processors (CPU), input/output interface, net Network interface and memory.
Memory may include the non-volatile memory in computer-readable medium, random access memory (RAM) and/or The forms such as Nonvolatile memory, such as read-only memory (ROM) or flash memory (flash RAM).Memory is computer-readable medium Example.
Computer-readable medium includes permanent and non-permanent, removable and non-removable media can be by any method Or technology come realize information store.Information can be computer readable instructions, data structure, the module of program or other data.
The example of the storage medium of computer includes, but are not limited to phase change memory (PRAM), static random access memory (SRAM), dynamic random access memory (DRAM), other kinds of random access memory (RAM), read-only memory (ROM), electrically erasable programmable read-only memory (EEPROM), flash memory or other memory techniques, CD-ROM are read-only Memory (CD-ROM), digital versatile disc (DVD) or other optical storage, magnetic cassettes, tape magnetic disk storage or Other magnetic storage devices or any other non-transmission medium, can be used for storage can be accessed by a computing device information.According to Herein defines, and computer-readable medium does not include temporary computer readable media (transitory media), such as modulation Data-signal and carrier wave.
It should also be noted that, the terms "include", "comprise" or its any other variant are intended to nonexcludability It include so that the process, method, commodity or the equipment that include a series of elements not only include those elements, but also to wrap Include other elements that are not explicitly listed, or further include for this process, method, commodity or equipment intrinsic want Element.In the absence of more restrictions, the element limited by sentence "including a ...", it is not excluded that including described want There is also other identical elements in the process, method of element, commodity or equipment.
It will be understood by those skilled in the art that the embodiment of this specification can provide as the production of method, system or computer program Product.Therefore, the embodiment of this specification can be used complete hardware embodiment, complete software embodiment or combine software and hardware side The form of the embodiment in face.Moreover, it wherein includes that computer is available that the embodiment of this specification, which can be used in one or more, It is real in the computer-usable storage medium (including but not limited to magnetic disk storage, CD-ROM, optical memory etc.) of program code The form for the computer program product applied.

Claims (24)

1. a kind of data processing method for share-car is applied to including Ride-share service terminal, share-car user client and safety The data processing system of computing module;The Ride-share service terminal and the safety caculation module communicate to connect, and the share-car Service terminal and the share-car user client communicate to connect;The safety caculation module and the share-car user client are negotiated There is transmission key corresponding with the share-car user;The described method includes:
Target share-car user client sends target share-car request to the Ride-share service terminal, wherein the target share-car is asked The identity including the target share-car user and target share-car address are asked, and target share-car address is spelled by the target The corresponding object transmission key encryption in automobile-used family;
Share-car allocation result is received from the Ride-share service terminal.
2. according to the method described in claim 1, the safety caculation module is negotiated with the share-car user client to obtain The process of transmission key corresponding with the share-car user, comprising:
Share-car user client sends encrypted first key to the Ride-share service terminal, wherein the first key quilt Public key encryption based on the safety caculation module;
The encrypted first key is sent to the safety caculation module by the Ride-share service terminal;
The safety caculation module decrypts the encrypted first key based on the private key of itself, close to obtain described first Key;
The safety caculation module is calculated based on the first key according to preset transmission key computation rule and obtains the biography Defeated key.
3. according to the method described in claim 2, the transmission key is equal to the first key.
4. according to the method described in claim 2, the first key be the share-car user client selection random public key, The transmission key is the product of the private key of the random public key and the safety caculation module itself, and the product is equal to described The product of the public key of the random corresponding random private-key of public key and the safety caculation module itself.
5. the share-car allocation result includes can be with the mesh according to claim 1 to method described in any claim in 4 Mark the identity that share-car user participates in other share-cars user of share-car.
6. according to the method described in claim 5, the share-car allocation result further includes that can participate in the target share-car user The target share-car address of other share-cars user of share-car, wherein the target share-car address of other share-cars user is by the peace Full computing module is encrypted based on the object transmission key;
The method also includes: the share-car user client is based on the solution of target share-car address described in the object transmission key pair It is close.
7. a kind of data processing method for share-car is applied to including Ride-share service terminal, share-car user client and safety The data processing system of computing module;The Ride-share service terminal and the safety caculation module communicate to connect, and the share-car Service terminal and the share-car user client communicate to connect;The safety caculation module and the share-car user client are negotiated There is transmission key corresponding with the share-car user;The described method includes:
The Ride-share service terminal receives the target share-car request that target share-car user client is sent, wherein the target is spelled Vehicle request includes identity and the target share-car address of the target share-car user, and target share-car address is by the mesh Mark the corresponding object transmission key encryption of share-car user client;
The share-car request data is sent to the safety caculation module;
Receive the share-car allocation result that the safety caculation module is sent;
The share-car allocation result is sent to the target share-car user client.
8. according to the method described in claim 7, the safety caculation module is negotiated with the share-car user client to obtain The process of transmission key corresponding with the share-car user, comprising:
Share-car user client sends encrypted first key to the Ride-share service terminal, wherein the first key quilt Public key encryption based on the safety caculation module;
The encrypted first key is sent to the safety caculation module by the Ride-share service terminal;
The safety caculation module decrypts the encrypted first key based on the private key of itself, close to obtain described first Key;
The safety caculation module is close based on the first key acquisition transmission according to preset transmission key computation rule Key.
9. according to the method described in claim 8, the transmission key is equal to the first key.
10. according to the method described in claim 8, the first key is the random public affairs of share-car user client selection Key, the transmission key are the product of the private key of the random public key and the safety caculation module itself, and the product is equal to The product of the public key of the corresponding random private-key of the random public key and the safety caculation module itself.
11. the method according to any claim in claim 7 to 10, the share-car allocation result include can with it is described Target share-car user participates in the identity of other share-cars user of share-car.
12. according to the method for claim 11, the share-car allocation result further includes that can join with the target share-car user With the target share-car address of other share-cars user of share-car, wherein the target share-car address of other share-cars user is described Safety caculation module is encrypted based on the object transmission key.
13. a kind of data processing method for share-car is applied to including Ride-share service terminal, share-car user client and peace The data processing system of full computing module;The Ride-share service terminal and the safety caculation module communicate to connect, and the spelling Vehicle service terminal and the share-car user client communicate to connect;The safety caculation module and the share-car user client are assisted The corresponding transmission key of share-car user described in Shang Youyu;The described method includes:
The safety caculation module obtains the target share-car request that the Ride-share service terminal is sent, wherein the target share-car Request includes identity and the target share-car address of the target share-car user, and target share-car address is by the target The corresponding object transmission key encryption of share-car user;
Identity based on the target share-car user obtains object transmission key corresponding with the target share-car user;
It is decrypted based on target share-car address described in the object transmission key pair;
According to preset share-car user matching logic, obtained based on the target share-car address after decryption with the safety caculation module The share-car address of other share-cars user taken matches, to obtain share-car allocation result;
The share-car allocation result is sent to the Ride-share service terminal.
14. according to the method for claim 13, the safety caculation module is negotiated with the share-car user client to obtain Obtain the process of transmission key corresponding with the share-car user, comprising:
Share-car user client sends encrypted first key to the Ride-share service terminal, wherein the first key quilt Public key encryption based on the safety caculation module;
The encrypted first key is sent to the safety caculation module by the Ride-share service terminal;
The safety caculation module decrypts the encrypted first key based on the private key of itself, close to obtain described first Key;
The safety caculation module is close based on the first key acquisition transmission according to preset transmission key computation rule Key.
15. according to the method for claim 14, the transmission key is equal to the first key.
16. according to the method for claim 14, the first key is the random public affairs of share-car user client selection Key, the transmission key are the product of the private key of the random public key and the safety caculation module itself, and the product is equal to The product of the public key of the corresponding random private-key of the random public key and the safety caculation module itself.
17. method described in any claim in 3 to 16 according to claim 1, the share-car allocation result includes can be with institute State the identity that target share-car user participates in other share-cars user of share-car.
18. according to the method for claim 17, the share-car allocation result further includes that can join with the target share-car user With the target share-car address of other share-cars user of share-car, wherein the target share-car address of other share-cars user is described Safety caculation module is encrypted based on the object transmission key;
The method also includes: the share-car user client is based on the solution of target share-car address described in the object transmission key pair It is close.
19. a kind of data processing equipment for share-car is applied to including Ride-share service terminal, share-car user client and peace The data processing system of full computing module;The Ride-share service terminal and the safety caculation module communicate to connect, and the spelling Vehicle service terminal and the share-car user client communicate to connect;The safety caculation module and the share-car user client are assisted The corresponding transmission key of share-car user described in Shang Youyu;Described device is used for share-car user client, comprising:
Transmission unit, for sending target share-car request to the Ride-share service terminal, wherein target share-car request includes The identity of the target share-car user and target share-car address, and target share-car address is by the target share-car user Corresponding object transmission key encryption;
Receiving unit, for receiving share-car allocation result from the Ride-share service terminal.
20. a kind of data processing equipment for share-car is applied to including Ride-share service terminal, share-car user client and peace The data processing system of full computing module;The Ride-share service terminal and the safety caculation module communicate to connect, and the spelling Vehicle service terminal and the share-car user client communicate to connect;The safety caculation module and the share-car user client are assisted The corresponding transmission key of share-car user described in Shang Youyu;Described device is used for the Ride-share service terminal, comprising:
Receiving unit, for receiving the target share-car request of target share-car user client transmission, wherein the target share-car is asked The identity including the target share-car user and target share-car address are asked, and target share-car address is spelled by the target The corresponding object transmission key encryption of vehicle user client;
Transmission unit, for the share-car request data to be sent to the safety caculation module;
The receiving unit is further used for receiving the share-car allocation result that the safety caculation module is sent;
The transmission unit is further used for sending the share-car allocation result to the target share-car user client.
21. a kind of data processing equipment for share-car is applied to including Ride-share service terminal, share-car user client and peace The data processing system of full computing module;The Ride-share service terminal and the safety caculation module communicate to connect, and the spelling Vehicle service terminal and the share-car user client communicate to connect;The safety caculation module and the share-car user client are assisted The corresponding transmission key of share-car user described in Shang Youyu;Described device is used for the safety caculation module, comprising:
Acquiring unit obtains the target share-car request that the Ride-share service terminal is sent, wherein the target share-car request includes The identity of the target share-car user and target share-car address, and target share-car address is by the target share-car user Corresponding object transmission key encryption;
The acquiring unit is further used for the identity based on the target share-car user and obtains and target share-car use The corresponding object transmission key in family;
Decryption unit, based on the decryption of target share-car address described in the object transmission key pair;
Calculate matching unit, for according to preset share-car user matching logic, based on after decryption target share-car address and institute The share-car address for stating other share-cars user that safety caculation module has obtained matches, to obtain share-car allocation result;
Transmission unit, for sending the share-car allocation result to the Ride-share service terminal.
22. a kind of computer equipment, comprising: memory and processor;Being stored on the memory can be by processor operation Computer program;When the processor runs the computer program, the side as described in claims 1 to 6 any one is executed Method.
23. a kind of computer equipment, comprising: memory and processor;Being stored on the memory can be by processor operation Computer program;When the processor runs the computer program, the side as described in claim 7 to 12 any one is executed Method.
24. a kind of computer equipment, comprising: memory and processor;Being stored on the memory can be by processor operation Computer program;When the processor runs the computer program, execute as described in claim 13 to 18 any one Method.
CN201910202006.XA 2019-03-18 2019-03-18 Data processing method and device for car sharing Active CN110035070B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201910202006.XA CN110035070B (en) 2019-03-18 2019-03-18 Data processing method and device for car sharing

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201910202006.XA CN110035070B (en) 2019-03-18 2019-03-18 Data processing method and device for car sharing

Publications (2)

Publication Number Publication Date
CN110035070A true CN110035070A (en) 2019-07-19
CN110035070B CN110035070B (en) 2021-07-23

Family

ID=67236173

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201910202006.XA Active CN110035070B (en) 2019-03-18 2019-03-18 Data processing method and device for car sharing

Country Status (1)

Country Link
CN (1) CN110035070B (en)

Citations (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102903046A (en) * 2011-07-25 2013-01-30 上海博路信息技术有限公司 Real-time car pooling system for mobile terminal
CN103546515A (en) * 2012-07-16 2014-01-29 上海博讯信息技术有限公司 Real-time car-sharing system
CN103761873A (en) * 2014-02-13 2014-04-30 王中胜 Taxi sharing system and taxi sharing method utilizing taxi sharing system
CN104484902A (en) * 2014-12-03 2015-04-01 广州万客达电子科技有限公司 Cloud-based car-sharing cost calculating and processing method
US9127958B2 (en) * 2013-01-03 2015-09-08 Sap Se Shared ride driver determination
CN105553951A (en) * 2015-12-08 2016-05-04 腾讯科技(深圳)有限公司 Data transmission method and data transmission device
CN106339763A (en) * 2016-08-12 2017-01-18 北京东方车云信息技术有限公司 Carpooling method, passenger side and server side
CN107172210A (en) * 2017-07-06 2017-09-15 安徽超清科技股份有限公司 A kind of car sharing service system
CN107508796A (en) * 2017-07-28 2017-12-22 北京明朝万达科技股份有限公司 A kind of data communications method and device
CN107610453A (en) * 2017-08-31 2018-01-19 武汉斑马快跑科技有限公司 A kind of share-car method and system based on the positioning of closely bluetooth hot spot
CN107924339A (en) * 2015-08-12 2018-04-17 微软技术许可有限责任公司 Data center's privacy
CN108566383A (en) * 2018-03-22 2018-09-21 西安电子科技大学 A kind of intimacy protection system and method towards service of calling a taxi online

Patent Citations (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102903046A (en) * 2011-07-25 2013-01-30 上海博路信息技术有限公司 Real-time car pooling system for mobile terminal
CN103546515A (en) * 2012-07-16 2014-01-29 上海博讯信息技术有限公司 Real-time car-sharing system
US9127958B2 (en) * 2013-01-03 2015-09-08 Sap Se Shared ride driver determination
CN103761873A (en) * 2014-02-13 2014-04-30 王中胜 Taxi sharing system and taxi sharing method utilizing taxi sharing system
CN104484902A (en) * 2014-12-03 2015-04-01 广州万客达电子科技有限公司 Cloud-based car-sharing cost calculating and processing method
CN107924339A (en) * 2015-08-12 2018-04-17 微软技术许可有限责任公司 Data center's privacy
CN105553951A (en) * 2015-12-08 2016-05-04 腾讯科技(深圳)有限公司 Data transmission method and data transmission device
CN106339763A (en) * 2016-08-12 2017-01-18 北京东方车云信息技术有限公司 Carpooling method, passenger side and server side
CN107172210A (en) * 2017-07-06 2017-09-15 安徽超清科技股份有限公司 A kind of car sharing service system
CN107508796A (en) * 2017-07-28 2017-12-22 北京明朝万达科技股份有限公司 A kind of data communications method and device
CN107610453A (en) * 2017-08-31 2018-01-19 武汉斑马快跑科技有限公司 A kind of share-car method and system based on the positioning of closely bluetooth hot spot
CN108566383A (en) * 2018-03-22 2018-09-21 西安电子科技大学 A kind of intimacy protection system and method towards service of calling a taxi online

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
曹承龙,朱晓玲: "面向网约车服务有效的隐私增强方案", 《武汉大学学报(理学版)》 *

Also Published As

Publication number Publication date
CN110035070B (en) 2021-07-23

Similar Documents

Publication Publication Date Title
CN109327314A (en) Access method, device, electronic equipment and the system of business datum
US20210246824A1 (en) Method and apparatus for securing communications using multiple encryption keys
EP3047601B1 (en) Technologies for synchronizing and restoring reference templates
EP3962020B1 (en) Information sharing methods and systems
CN111654367B (en) Method for cryptographic operation and creation of working key, cryptographic service platform and device
CN109064324A (en) Method of commerce, electronic device and readable storage medium storing program for executing based on alliance's chain
CN104462949B (en) The call method and device of a kind of plug-in unit
CN111428887B (en) Model training control method, device and system based on multiple computing nodes
CN109687952A (en) Data processing method and its device, electronic device and storage medium
CN106603496A (en) Data transmission protection method, intelligent card, server, and communication system
CN109995781A (en) Transmission method, device, medium and the equipment of data
CN107948212A (en) A kind of processing method and processing device of daily record
WO2021082647A1 (en) Federated learning system, training result aggregation method, and device
CN110266474A (en) Key sending method, apparatus and system
CN109905350A (en) A kind of data transmission method and system
CN109525388A (en) A kind of combined ciphering method and system of cipher key separation
Atiqur et al. Mobile edge computing for internet of things (IoT): security and privacy issues
CN112184444A (en) Method, apparatus, device and medium for processing information based on information characteristics
CN112597542A (en) Target asset data aggregation method and device, storage medium and electronic device
CN116488789A (en) Data processing method, device, equipment and medium
Khasim et al. An improved fast and secure CAMEL based authenticated key in smart health care system
CN110677253B (en) Anti-quantum computation RFID authentication method and system based on asymmetric key pool and ECC
KR101666243B1 (en) Method for generating an identifier
CN113254989B (en) Fusion method and device of target data and server
CN110035070A (en) Data processing method and device for share-car

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
TA01 Transfer of patent application right
TA01 Transfer of patent application right

Effective date of registration: 20201020

Address after: Cayman Enterprise Centre, 27 Hospital Road, George Town, Grand Cayman Islands

Applicant after: Innovative advanced technology Co.,Ltd.

Address before: Cayman Enterprise Centre, 27 Hospital Road, George Town, Grand Cayman Islands

Applicant before: Advanced innovation technology Co.,Ltd.

Effective date of registration: 20201020

Address after: Cayman Enterprise Centre, 27 Hospital Road, George Town, Grand Cayman Islands

Applicant after: Advanced innovation technology Co.,Ltd.

Address before: A four-storey 847 mailbox in Grand Cayman Capital Building, British Cayman Islands

Applicant before: Alibaba Group Holding Ltd.

GR01 Patent grant
GR01 Patent grant