CN110245144A - Protocol data management method, device, storage medium and system - Google Patents

Protocol data management method, device, storage medium and system Download PDF

Info

Publication number
CN110245144A
CN110245144A CN201910681718.4A CN201910681718A CN110245144A CN 110245144 A CN110245144 A CN 110245144A CN 201910681718 A CN201910681718 A CN 201910681718A CN 110245144 A CN110245144 A CN 110245144A
Authority
CN
China
Prior art keywords
protocol data
block
block chain
data
management server
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201910681718.4A
Other languages
Chinese (zh)
Other versions
CN110245144B (en
Inventor
张可峰
周洪飞
王慧星
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Tencent Technology Shenzhen Co Ltd
Tencent Cloud Computing Beijing Co Ltd
Original Assignee
Tencent Technology Shenzhen Co Ltd
Tencent Cloud Computing Beijing Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Tencent Technology Shenzhen Co Ltd, Tencent Cloud Computing Beijing Co Ltd filed Critical Tencent Technology Shenzhen Co Ltd
Priority to CN201910681718.4A priority Critical patent/CN110245144B/en
Publication of CN110245144A publication Critical patent/CN110245144A/en
Application granted granted Critical
Publication of CN110245144B publication Critical patent/CN110245144B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F16/00Information retrieval; Database structures therefor; File system structures therefor
    • G06F16/20Information retrieval; Database structures therefor; File system structures therefor of structured data, e.g. relational data
    • G06F16/22Indexing; Data structures therefor; Storage structures
    • G06F16/2228Indexing structures
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F16/00Information retrieval; Database structures therefor; File system structures therefor
    • G06F16/20Information retrieval; Database structures therefor; File system structures therefor of structured data, e.g. relational data
    • G06F16/27Replication, distribution or synchronisation of data between databases or within a distributed database system; Distributed database system architectures therefor
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/64Protecting data integrity, e.g. using checksums, certificates or signatures
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/04Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
    • H04L63/0428Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
    • H04L63/0442Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload wherein the sending and receiving network entities apply asymmetric encryption, i.e. different keys for encryption and decryption

Abstract

The embodiment of the invention discloses a kind of protocol data management method, device, storage medium and systems, belong to Internet technical field.This method is applied in protocol data management system, including management server and block chain network, and each node in block chain network configures identical block chain.This method comprises: management server receives the protocol data posting request that first terminal is sent;Based on protocol data posting request, the 4th block is generated according to the characteristic value of protocol data and third block, the 4th block is added in block chain, updated block chain is obtained, third block is a upper block for the 4th block in updated block chain, and the 4th block is used for record protocol data.The embodiment of the present invention stores protocol data into block chain, and the characteristic that the data of block chain can not distort is utilized, ensure that the safety and reliability of protocol data, avoids malicious user and distorts or deny issued protocol data.

Description

Protocol data management method, device, storage medium and system
The application is submission on 04 27th, 2018, application No. is 201810392315.3, entitled " protocol datas The divisional application of the Chinese patent application of management method, device, storage medium and system ", entire contents are incorporated by reference In this application.
Technical field
The present embodiments relate to Internet technical field, in particular to a kind of protocol data management method, device, storage Medium and system.
Background technique
With the fast development of Internet technology and universal, a variety of ISPs start to occur, these ISPs Various services, such as e-payment, Investment & Financing, information recommendation can be provided for personal user.In order to be mentioned to service The rights and duties of donor and personal user are standardized, and guarantee going on smoothly for service process, ISP and personal use The data that subscribe to the agreement are needed between family.
Protocol data is usually generated by ISP, and is stored in the server of ISP's configuration.Work as individual When the service that user will use ISP to provide, ISP is that personal user shows protocol data, and personal user looks into After seeing protocol data and confirming the signature protocol data, ISP can store the protocol data of itself and personal user's signature In the server, later personal user can normal use ISP provide service.
During realizing the embodiment of the present invention, inventor has found the relevant technologies the prior art has at least the following problems: service mentions Donor and the protocol data of personal user's signature are stored in the server of ISP's configuration, it is easy to be lost or be usurped Change, causes safety and reliability poor.
Summary of the invention
The embodiment of the invention provides a kind of protocol data management method, device, storage medium and systems, can solve phase Pass technology there are the problem of.The technical solution is as follows:
In a first aspect, providing a kind of protocol data management method, it is applied in protocol data management system, the agreement Data management system includes management server and block chain network, and the block chain network includes multiple nodes, and each node is matched Identical block chain is set, the block chain network is used for the record protocol data in the block chain, which comprises
The management server receives the protocol data posting request that first terminal is sent, the protocol data posting request Carry the protocol data;
Based on the protocol data posting request, the 4th area is generated according to the characteristic value of the protocol data and third block 4th block is added in the block chain by block, obtains updated block chain, institute in the updated block chain The upper block that third block is the 4th block is stated, the 4th block is for recording the protocol data.
Second aspect provides a kind of protocol data management method, is applied in first terminal, which comprises
The protocol data administration interface that management server provides;
Publication operation is detected by the protocol data administration interface, the publication operation includes agreement number to be released According to, the protocol data be used to provide belonging to ISP provide service for personal user when the ISP and institute State the behavior of personal user;
Protocol data posting request is sent to the management server, the protocol data posting request carries the agreement Data generate the second block according to the characteristic value of the Data Identification and the first block by the management server, by described the Two blocks are added in the block chain, obtain updated block chain, the first block described in the updated block chain For a upper block for second block, second block is for recording the Data Identification.
The third aspect provides a kind of protocol data management method, is applied in application server, which comprises
It receives the protocol data that second terminal is sent and signs request, the protocol data signature request is carried wait subscribe to the agreement Personal user's mark that the Data Identification of data and the second terminal log in;
Protocol data signature request is sent to management server, the protocol data signature request carries the Data Identification It is identified with the personal user, generates second according to the characteristic value of the Data Identification and the first block by the management server Second block is added in the block chain by block, obtains updated block chain, and establish in the first concordance list The corresponding relationship of the personal user mark and second block, the first block described in the updated block chain is institute A upper block for the second block is stated, second block includes for recording the Data Identification, first concordance list It is corresponding between people's user identifier and the block for recording the Data Identification that the personal user identifies signed protocol data Relationship.
Fourth aspect provides a kind of protocol data management method, is applied in second terminal, which comprises
Show the application interface that application server provides;
When detecting to the confirmation operation of protocol data in the application interface, Xiang Suoshu application server sends agreement Data signing request, the protocol data signature request carry the Data Identification of the protocol data and personal user's mark of login Know, from the application server to the management server send protocol data signature request, by the management server according to The characteristic value of the Data Identification and the first block generates the second block, and second block is added in the block chain, Updated block chain is obtained, the first block described in the updated block chain is the area Shang Yige of second block Block, second block is for recording the Data Identification;Personal user mark and described is established in the first concordance list The corresponding relationship of second block, first concordance list include that personal user identifies and has been used to record personal user's mark Corresponding relationship between the block of the Data Identification for the data that subscribe to the agreement.
5th aspect, provides a kind of protocol data managing device, the management service applied to protocol data management system In device, the protocol data management system includes the management server and block chain network, and the block chain network includes more A node, each node configure identical block chain, and the block chain network is used for the record protocol data in the block chain, Described device includes:
Receiving module, for receiving the protocol data posting request of first terminal transmission, the protocol data posting request Carry the protocol data;
Processing module, for being based on the protocol data posting request, according to the spy of the protocol data and third block Value indicative generates the 4th block, and the 4th block is added in the block chain, updated block chain, the update are obtained Third block described in block chain afterwards is a upper block for the 4th block, and the 4th block is for recording the association Discuss data.
6th aspect, provides a kind of protocol data managing device, is applied in first terminal, described device includes:
Display module, the protocol data administration interface provided for management server;
Detection module, for by protocol data administration interface detection publication operation, the publication operate include to The protocol data of publication, the protocol data be used to provide belonging to ISP's clothes when providing service for personal user The behavior of business supplier and the personal user;
Sending module, for sending protocol data posting request to the management server, the protocol data publication is asked It asks and carries the protocol data, generate second according to the characteristic value of the Data Identification and the first block by the management server Second block is added in the block chain by block, obtains updated block chain, in the updated block chain First block is a upper block for second block, and second block is for recording the Data Identification.
7th aspect, provides a kind of protocol data managing device, is applied in application server, described device includes:
Receiving module, for receiving the protocol data signature request of second terminal transmission, the protocol data signature request Personal user's mark that the Data Identification and the second terminal for carrying data to be subscribed to the agreement log in;
Sending module, for sending protocol data signature request to the management server, the protocol data signature is asked It asks and carries the Data Identification and personal user mark, by the management server according to the Data Identification and the firstth area The characteristic value of block generates the second block, and second block is added in the block chain, updated block chain is obtained, and The corresponding relationship of the personal user mark and second block, the updated block chain are established in the first concordance list Described in the first block be second block a upper block, second block is for recording the Data Identification, institute Stating the first concordance list includes the data mark that personal user identifies with identifies signed protocol data for recording the personal user Corresponding relationship between the block of knowledge.
Eighth aspect provides a kind of protocol data managing device, is applied in second terminal, described device includes:
Display module, the application interface provided for showing application server;
Sending module, for when detecting to the confirmation operation of protocol data in the application interface, to the application Server sends protocol data signature request, and the protocol data signature request carries the Data Identification of the protocol data and steps on The personal user of record identifies, and protocol data signature request is sent from the application server to the management server, by described Management server generates the second block according to the characteristic value of the Data Identification and the first block, and second block is added to In the block chain, updated block chain is obtained, the first block described in the updated block chain is secondth area A upper block for block, second block is for recording the Data Identification;The personal use is established in the first concordance list The corresponding relationship of family mark and second block, first concordance list include that personal user identifies and for recording described Corresponding relationship between the block of the Data Identification of people's user identifier signed protocol data.
9th aspect, provides a kind of protocol data managing device, the protocol data managing device include processor and Memory is stored at least one instruction, at least a Duan Chengxu, code set or instruction set, described instruction, institute in the memory Program, the code set or described instruction collection is stated to be loaded by the processor and had to realize above-mentioned first aspect, second party Possessed operation in protocol data management method described in face, the third aspect or fourth aspect.
Tenth aspect, provides a kind of computer readable storage medium, is stored in the computer readable storage medium At least one instruction, at least a Duan Chengxu, code set or instruction set, described instruction, described program, the code set or the finger Collection is enabled to be loaded as processor and had to realize above-mentioned first aspect, second aspect, association described in the third aspect or fourth aspect Discuss possessed operation in data managing method.
Method, apparatus, storage medium and system provided in an embodiment of the present invention, the protocol data sent based on first terminal Posting request stores protocol data in the form of block into block chain, and the spy that the data of block chain can not distort is utilized Property, the mode of record protocol data can be avoided malice and be used in block chain with the safety and reliability of guarantee agreement data The protocol data that protocol data is distorted at family or denial is issued, a possibility that greatly reducing ISP's black-box operation, The data transparency and degree of belief for being conducive to be promoted ISP, are also convenient for looking into protocol data subsequently through block chain The management such as inquiry operation.
Also, the record protocol data in the block chain of block chain network, when personal user and ISP sign and assist When discussing data, request is signed based on the protocol data that application server is sent, by the Data Identification of the protocol data of signature with area The form of block is stored into block chain, and establishes the corresponding relationship between personal user's mark and block.Under in block chain One block is generated according to the characteristic value of a upper block, has incidence relation between the block of front and back, therefore there are data can not usurp The characteristic changed, the mode that Data Identification is recorded in block chain can guarantee to subscribe to the agreement the safety of event of data and reliable Property, it avoids malicious user and distorts or deny the signature event, be also convenient for looking into signature event subsequently through block chain The management such as inquiry operation.
Also, management server and the data of specified node-node transmission are encrypted according to the public key of specified node, according to finger The private key for determining node is decrypted, and specified node carries out default operation, the feature that will be obtained by the data obtained to decryption Information carries out characteristic information obtained from default operation to data with management server and matches, and avoids number in transmission process According to the possibility being tampered, the safe and reliable of data ensure that.
Also, the not direct storing data mark in block chain, but the public key logarithm that storage is identified according to personal user The first encryption data obtained after being encrypted according to mark, can not decrypt other users steal first encryption data Success, can not know which protocol data personal user endorsed, may further ensure that the safe and reliable of Data Identification.
Also, once protocol data registers cochain, and the equipment of any access protocol data management system can be to block Protocol data in chain is managed, therefore has very strong scalability and opening.
Detailed description of the invention
To describe the technical solutions in the embodiments of the present invention more clearly, make required in being described below to embodiment Attached drawing is briefly described, it should be apparent that, the accompanying drawings in the following description is only some implementations of the embodiment of the present invention Example, for those of ordinary skill in the art, without creative efforts, can also obtain according to these attached drawings Obtain other attached drawings.
Fig. 1 is a kind of structural schematic diagram of protocol data management system provided in an embodiment of the present invention;
Fig. 2 is a kind of structural schematic diagram of protocol data management system provided in an embodiment of the present invention;
Fig. 3 is a kind of schematic diagram of implementation environment provided in an embodiment of the present invention;
Fig. 4 A is a kind of initialization process schematic diagram of protocol data management system provided in an embodiment of the present invention;
Fig. 4 B is the log-in protocol data management system of a kind of ISP and personal user provided in an embodiment of the present invention The flow diagram of system;
Fig. 5 is a kind of schematic diagram of protocol data management method provided in an embodiment of the present invention;
Fig. 6 is a kind of operating process schematic diagram of distribution protocol data provided in an embodiment of the present invention;
Fig. 7 is a kind of schematic diagram of protocol data management method provided in an embodiment of the present invention;
Fig. 8 is a kind of schematic diagram of application interface provided in an embodiment of the present invention;
Fig. 9 is a kind of operating process schematic diagram of data that subscribe to the agreement provided in an embodiment of the present invention;
Figure 10 is a kind of schematic diagram of protocol data management method provided in an embodiment of the present invention;
Figure 11 is a kind of schematic diagram of first query option provided in an embodiment of the present invention;
Figure 12 is a kind of schematic diagram of second query option provided in an embodiment of the present invention;
Figure 13 is a kind of operating process schematic diagram for inquiring distribution protocol data provided in an embodiment of the present invention;
Figure 14 is a kind of operating process schematic diagram for inquiring signed protocol data provided in an embodiment of the present invention;
Figure 15 is a kind of structural schematic diagram of protocol data managing device provided in an embodiment of the present invention;
Figure 16 is a kind of structural schematic diagram of protocol data managing device provided in an embodiment of the present invention;
Figure 17 is a kind of structural schematic diagram of protocol data managing device provided in an embodiment of the present invention;
Figure 18 is a kind of structural schematic diagram of protocol data managing device provided in an embodiment of the present invention;
Figure 19 is a kind of structural schematic diagram of server provided in an embodiment of the present invention;
Figure 20 is a kind of structural schematic diagram of terminal provided in an embodiment of the present invention.
Specific embodiment
In order to make the object, technical scheme and advantages of the embodiment of the invention clearer, below in conjunction with attached drawing to the present invention Embodiment is described in further detail.
Before the embodiment of the present invention is described in detail, first to the present embodiments relate to block chain and agreement Data are introduced as follows:
1, block chain:
For narrow sense, block chain is that one kind combines data block to be formed in such a way that sequence is connected sequentially in time Linked data structure, and the distributed account book that can not be distorted He can not forge guaranteed in a manner of cryptography.
Broadly, block chain technology is to verify to save with storing data, using distribution using block linked data structure Point common recognition algorithm is guaranteed the safety of data transmission and access with more new data, in the way of cryptography to generate, utilizes intelligence Contract carrys out a kind of completely new the distributed basis framework and calculation of operation data.
The data stored on multiple nodes in block chain network are synchronous, and each node stores number in the form of block chain According to, and the adjacent block associations in front and back in block chain are got up, based on the incidence relation between the adjacent block of front and back, so that block Middle any data can be transferred through next block and detect when being tampered, be tampered so as to avoid data, ensure that the peace of data Full property and reliability.Also, between each node in block chain network, between other equipment and the node of block chain network into When row data are transmitted, encrypting and decrypting is carried out using cryptological technique, further ensures the safety and reliability of data.
2, protocol data: referring to User Agreement, includes the multiple types such as user service agreement, user license agreement.
Most ISP can include a User Agreement when providing service to personal user, for constraining individual Every rights and duties of user or ISP.The User Agreement has legal effect, is substantially a contract, personal User and ISP need the regulation in accordance with User Agreement.For example it can be assisted comprising e-payment user in e-payment application In view or cell phone system agreement can be used comprising user.
Fig. 1 is a kind of structural schematic diagram of protocol data management system provided in an embodiment of the present invention.As shown in Figure 1, should Protocol data management system is for being managed protocol data.The user of the protocol data management system may include that service mentions Donor and personal user, ISP can such as enterprise customer, bank-user, organization users.For ISP, The protocol data management system can provide distribution protocol data, vlan query protocol VLAN data, subscribe to the agreement data etc. with personal user Function.For personal user, which can provide inquiry some or multiple ISPs publication The functions such as protocol data, the signed protocol data of inquiry.
The protocol data management system includes management server 101 and block chain network 102, is wrapped in block chain network 102 Multiple nodes 1021 are included, multiple node 1021 may include multiple servers, can also be including gateway etc., multiple server For the protocol data based on block chain network technical management user, gateway is for providing between user terminal and block chain network Access service, server is interacted by gateway and user terminal, to manage the protocol data of user.
Each node 1021 configures identical block chain, which is made of multiple blocks, the area on a block chain Block is stored sequentially in time, and as continuing on for block chain can add new block.Each block is for remembering Record once trade the data being related to, and the event information of protocol data, the data that subscribe to the agreement as issued or is had with protocol data Other data closed.
When the protocol data management system and user interact, which can be used as user and block Medium between chain network 102 is managed the data in block chain network 102 according to the request of user, and anti-to user Present the data in block chain network 102.
In a kind of possible implementation, referring to fig. 2, which may include authentication module 1011, service Protocol module 1012 and enquiry module 1013, service agreement module 1012 and enquiry module 1013 connect with authentication module 1011 It connects.
Wherein, authentication module 1011 is for carrying out verifying authorization to the identity of user on line or under line.It is provided for service Person provides the certificate of authority after service provider registers success online, it is subsequent using the certificate of authority to the identity of ISP into Row verifying, so that uncommitted ISP be prevented to use the function of system.For personal user, pass through personal user's Unique subscriber identification verifies the identity of user, to protect the privacy of the protocol data of personal user.
Service agreement module 1012 is connect with the terminal of ISP or application server, when ISP needs to send out Cloth or subscribe to the agreement data when, service agreement module 1012 is by interacting to service for checking credentials supplier with authentication module 1011 Identity, confirmation ISP identity after, the block chain network of rear end be written this publication protocol data or The protocol data that person arrives to ISP's feedback query.
Enquiry module 1013 is connect with the terminal of user (ISP or personal user), when user needs to inquire correlation When protocol data, enquiry module 1013 by with authentication module 1011 interact to verifying user identity, confirmation user Identity after, by access rear end block chain network, the protocol data inquired to user feedback.
Based on above-mentioned Fig. 1 and protocol data management system shown in Fig. 2, the embodiment of the invention also provides a kind of implementation rings Border.Fig. 3 is a kind of schematic diagram of implementation environment provided in an embodiment of the present invention, and referring to Fig. 3, which includes protocol data Management system 301, first terminal 302, application server 303 and second terminal 304, wherein first terminal 302, application service Device 303 and second terminal 304 are connect by network with protocol data management system 301.
First terminal 302 is the terminal of ISP's configuration, and application server 303 is the service of ISP's configuration Device, first terminal 302 are connect by network with application server 303, and first terminal 302 is associated with application server 303, can be with Application server 303 is managed.For example, application server 303 can be arranged by first terminal 302 in ISP Function, such as on application server 303 be arranged electronic payment function and electronic payment function protocol data.
Second terminal 304 is the terminal of personal user's configuration, and second terminal 304 is connected by network and application server 303 It connects, by interacting to the service provided using application server 303 with application server 303.For example, second terminal 304 The associated e-payment application of application server 303, the electricity provided by e-payment using application server 303 are installed Sub- payment function.
In addition, first terminal 302 and second terminal 303 are interacted with protocol data management system, distribution protocol is realized The operation of the management agreements data such as data, the data that subscribe to the agreement, vlan query protocol VLAN data.
Current protocol data is stored at each ISP in the related technology, and personal user can only agree to or refuse Absolutely, know the publication situation or signature situation of protocol data a kind of easy mode, ISP be easy into Row black-box operation, the part clause for such as modifying protocol data in the dark carry out risk in fraud of law, influence the legitimate rights and interests of personal user, Personal user can not also know when oneself is agreeing to or having rejected protocol data, a when subsequent generation dispute It is very difficult that people user, which wants evidence obtaining,.
The embodiment of the present invention realizes a kind of protocol data management system based on block chain, will respectively close in the related technology Publication, update, the signature of protocol data in platform are put on block chain, using the decentralization of block chain, opening, it is transparent, Anti-tamper feature ensure that the publication, more of protocol data from technological layer on the basis of not depending on specific trusted subjects Newly, the safety and reliability of process is signed.And based on the protocol data on block chain, provide the function of vlan query protocol VLAN data Can, it ensure that the trackability of protocol data, ISP and personal user allowed to inquire relevant agreement number at any time According to reducing personal user and use the risk of service, moreover it is possible to be entangled in generation to effectively constrain the behavior of ISP Strong evidence is provided to legal department when confused.
The embodiment of the present invention is applied under the scene of management agreement data, and ISP stores the protocol data of publication In block chain, personal user and ISP subscribe to the agreement data when, the logout for the data that subscribe to the agreement can also be existed In block chain.Then personal user can check the protocol data of each ISP publication by inquiring block chain, can be with It checks oneself signed protocol data, realizes the safety management to protocol data.
In a kind of possible implementation, the management process of protocol data can be realized by specified management application, it should Specified management application is associated with protocol data management system.ISP can be infused by the specified management application of installation The operation such as volume, distribution protocol data or the data that subscribe to the agreement, personal user can be infused by the specified management application of installation The operation such as volume, vlan query protocol VLAN data.
Below by the protocol data management system initialization process and register flow path be illustrated:
1, initialization process:
When initialization, configuration management server, and block chain network is created based on multiple nodes.Management server structure later The certificate of authority is built, so as to the subsequent user for being issued to request authorization, it is private also to distribute public key for each node in block chain network Key pair, setting common recognition algorithm, which defines processing mode of the node to data of block chain network, including calculates number According to the mode of characteristic information, verification mode, mode, the storage mode of choosing verifying node etc., public key private is issued to each node Key to common recognition algorithm.
Based on above-mentioned implementation environment shown in Fig. 2, the initialization process of protocol data management system can be as shown in Figure 4 A.
2, register flow path:
The user of the protocol data management system can be ISP or personal user, and user can be based on user Mark logs in management server, to be managed by the protocol data management system to protocol data, which is used It can be user's name, Customs Assigned Number etc. in the identity for indicating user.
In order to ensure the safety of protocol data, either ISP or personal user, real name can be used System is registered, and provides true identity information when registering the protocol data management system, and e.g., personal user can provide certainly The identification card number of body, enterprise customer can provide the business code etc. of itself.Also, it can be mentioned using on-line off-line when registering It hands over the mode of identity information to be registered, while submitting identity information on line, provides the testimonial material of identity information under line, Such as the Copy of ID Card of personal user, the identity information that the industrial and commercial registration of enterprise customer proves, public security organ provides veritify card It is bright etc..
When service provider registers success, management server can provide the certificate of authority for ISP, subsequent to adopt With the certificate of authority come the identity of service for checking credentials supplier.When personal user succeeds in registration, management server can be used to be personal Family generates a pair of of public, private key, the subsequent identity that user is verified using public, private key.
Based on above-mentioned implementation environment shown in Fig. 2, the register flow path of ISP and personal user can be such as Fig. 4 B institutes Show.
Fig. 5 is a kind of schematic diagram of protocol data management method provided in an embodiment of the present invention.The embodiment of the present invention is held Row main body is the first terminal and protocol data management system of ISP, and the embodiment of the present invention is issued ISP and assisted The process of view data is illustrated, referring to Fig. 5, this method comprises:
501, the protocol data administration interface that first terminal management server provides, passes through protocol data administration interface Detection publication operation.
In the embodiment of the present invention, which can be the equipment such as mobile phone, computer, tablet computer, the first terminal It is identified based on ISP and logs in management server, which identifies the identity for indicating ISP, should ISP refers to any ISP in protocol data management system registration, such as enterprise customer, bank-user, group Organization user etc., the ISP access management server using first terminal, which mentions The protocol data administration interface of confession can be managed protocol data by the protocol data administration interface.
When ISP wants distribution protocol data, the triggering publication operation on the protocol data administration interface, and select Fixed protocol data to be released, to initiate the process of distribution protocol data.And this protocol data issued can be new hair The protocol data of cloth, or the protocol data to be updated on the basis of the protocol data issued in the past.
Optionally, for ISP, publication option, ISP can be provided in the protocol data administration interface When clicking the publication option, first terminal detects that the publication operates, and provides file directory, by ISP from file mesh The protocol data to be issued is selected in record.
Wherein, the protocol data for regulation ISP provide service for other users when ISP and other The behavior of user, such as the ISP are to provide the ISP of electronic payment service, in the protocol data of publication It contains the ISP and has during electronic payment service is provided and for payment process provide the obligation of safety guarantee With the obligation to maintain secrecy to payment record, and using electronic payment service user due to leakage electronic payment secret code and lead to wealth Voluntarily responsible obligation etc. is needed when producing loss.
502, first terminal to management server send protocol data posting request, the protocol data posting request carry to The protocol data of publication.
In addition, the protocol data posting request can also carry ISP's mark, to show to issue the agreement number According to be which ISP.The protocol data posting request can also carry the Data Identification of protocol data, the data Mark can be the title of protocol data for determining unique protocol data, or can be the title and version of protocol data This number, so as to show this publication protocol data version, and distinguished with the protocol data of other versions.
For example, carrying the particular content of protocol data in the protocol data posting request, the service of protocol data is also carried The title " XX e-payment 2.0 editions " of supplier " XX company " and protocol data.
In the protocol data management system, block chain network includes multiple nodes, and each node configures identical block Chain, block chain network are used for the record protocol data in block chain, to realize that the protocol data on multiple nodes is synchronous.Cause This is based on the protocol data posting request, according to protocol data when management server receives the protocol data posting request The 4th block is generated with the characteristic value of third block, the 4th block is added in block chain, obtains updated block chain, more Third block is a upper block for the 4th block in block chain after new, and the 4th block is used for record protocol data, thus will Protocol data is stored into block chain.
For example, protocol data is sent to each node in block chain network by management server, the agreement number is received According to each node determine in block chain the last one block generated, i.e. third block, obtain the characteristic value of the third block, The 4th block is generated according to the characteristic value of protocol data and third block, the 4th block is added in block chain, is updated Block chain afterwards, then in block chain in the updated third block be the 4th block a upper block.
Since the characteristic value of the 4th newly-generated block is related to the characteristic value of a upper block, realizing will be in block chain The purpose that block is together in series, can be by chasing after the characteristic value stored in block to distorting for any information in block chain It traces back and detects, ensure that the safety of data.Wherein, this feature value can be cryptographic Hash or other are related to block data Characteristic value.
In a kind of possible implementation, in order to guarantee safety, before storing protocol data, need by block link network Node in network is verified.Therefore, when management server receives the protocol data posting request, in following step 503- It is verified in 506 by specified node.
503, management server receives the protocol data posting request that first terminal is sent, from multiple sections of block chain network Specified node is chosen in point.
504, management server sends data publishing request to specified node, and data publishing request carries protocol data and association Discuss the characteristic information of data.
This feature information and protocol data correspond, by obtaining after carrying out default calculate to protocol data, such as the spy Reference breath can be the cryptographic Hash for obtain after Hash operation to protocol data, or for using MD5 (Message Digest Algorithm 5, Message Digest Algorithm 5) the MD5 value etc. that is obtained after calculating protocol data of algorithm, according to the spy Whether reference breath can correct with indentification protocol data, if is tampered.Then management server obtains protocol data and protocol data Characteristic information, be sent to specified node, specify node according to the characteristic information of protocol data, whether can determine protocol data It is tampered with.
505, node is specified to be verified according to the characteristic information of protocol data and protocol data, according to association after being verified The characteristic value for discussing data and third block generates the 4th block, the 4th block is added in the block chain of specified node configuration, Obtain updated block chain.
506, other node broadcasts protocol datas of node to block chain network are specified, make other nodes according to protocol data The 4th block is generated with the characteristic value of third block and the 4th block is added in the block chain of configuration, obtains updated area Block chain.
In a kind of possible implementation, management server can carry out default operation to protocol data, obtain agreement number According to characteristic information, and protocol data is encrypted according to the public key of specified node, obtains cryptographic protocol data, then manage clothes The protocol data posting request that business device is sent to specified node can carry cryptographic protocol data and characteristic information.When specified node When receiving data publishing request, it is decrypted according to the private key pair encryption protocol data of specified node, obtains protocol data, and Default operation is carried out to protocol data, the characteristic information of protocol data is obtained, when obtained characteristic information and data publishing request When the characteristic information matching of middle carrying, presentation protocol data are correct, then are generated according to the characteristic value of protocol data and third block 4th block is added in the block chain of specified node configuration, obtains updated block chain by the 4th block.Also, it is specified Node makes other nodes according to the feature of protocol data and third block to other node broadcasts protocol datas of block chain network Value generates the 4th block, the 4th block is added in the block chain of specified node configuration, obtains updated block chain, to protect The data on the different nodes in block chain network are demonstrate,proved to keep synchronizing.
Wherein, public, private key can be pre-generated in block chain network for each node, and open give of public key is managed into clothes Business device and other nodes, when so as to carry out data transmission between different devices, encrypt data according to public key, root Data are decrypted according to private key, guarantee the safety of data using cryptological technique.
In addition, specified node after the 4th block is added to block chain, can also send agreement number to management server According to publication as a result, management server can send protocol data publication as a result, by first terminal in protocol data to first terminal Be shown on administration interface, so as to ISP know protocol data issue successfully or verify not by etc. due to Publication failure.
In a kind of possible implementation, management server can randomly select specified node from multiple nodes, or It presets the specified node defaulted in a lot of node or management server can be to multiple node in block chain network Broadcast data posting request receives the response results of the part of nodes or whole node feeding backs in multiple nodes, the response results In may include the current load capacity of node or current processing capacity parameter etc., management server can be according to receiving Response results choose the less node of present load or the stronger node of current processing capabilities as specified from multiple nodes Node.
It should be noted that management server can choose a specified node, or choose multiple specified nodes.One In the possible implementation of kind, management server only chooses a specified node, which is verified i.e. protocol data It allows to store protocol data into block chain, and in alternatively possible implementation, management server can be chosen more A specified node verifies protocol data by multiple specified nodes, in sufficient amount or the specified node of enough ratios To protocol data when being verified, determine that multiple specified nodes have reached common recognition to protocol data, it at this time could be by agreement number According to being stored in block chain.
It needs to illustrate on the other hand, management server can be established after distribution protocol data in the second concordance list The corresponding relationship of ISP mark and the 4th block, to indicate that ISP's mark has issued the association in the 4th block Discuss data.It is subsequent that the corresponding block of any ISP's mark can be inquired according to the second concordance list, and then get block In protocol data.
Method provided in an embodiment of the present invention, based on the protocol data posting request that first terminal is sent, by protocol data It is stored in the form of block into block chain, since next block is preceding according to the generation of the characteristic value of a upper block in block chain There is between block incidence relation, therefore the characteristic that can not be distorted with data, the side of record protocol data in block chain afterwards Formula can avoid that malicious user distorts protocol data or denial issued with the safety and reliability of guarantee agreement data Protocol data, a possibility that greatly reducing ISP's black-box operation, are conducive to the data transparency for promoting ISP Degree and degree of belief are also convenient for carrying out the management operation such as inquiring to protocol data subsequently through block chain.
Also, management server and the protocol data of specified node-node transmission are encrypted according to the public key of specified node, root It is decrypted according to the private key of specified node, and specified node carries out default operation by the protocol data obtained to decryption, will To characteristic information and management server characteristic information obtained from default operation carried out to protocol data match, avoid The possibility that protocol data is tampered in transmission process ensure that the safe and reliable of protocol data in transmission process.
Also, once protocol data registers cochain, and the equipment of any access protocol data management system can be to block Protocol data in chain network is managed, therefore has very strong scalability and opening.For example, protocol data management system It can open to relevant departments such as public security organ, procuratorates, these departments are based on need of work can be with vlan query protocol VLAN data management The protocol data that system is stored plays positive effect to the related right-safeguarding dispute of some protocol datas.
Based on implementation environment shown in Fig. 2, Fig. 6 is a kind of operation stream of distribution protocol data provided in an embodiment of the present invention Cheng Tu, referring to Fig. 6, which includes:
Step 1, ISP to authentication module verify the certificate of authority, and verification is ISP by rear authentication module Authorized certificate is provided, verification is not by returning to failure then.
Step 2: after ISP obtains authorized certificate, to service agreement module request distribution protocol data, service association Module is discussed to the authorized certificate of authentication module verification ISP, verification by being serviced later.
Step 3: node broadcasts data publishing request of the service agreement module into block chain network receives multiple nodes After response results, one of node (node 2 in Fig. 6) is therefrom chosen as specified node.
Step 4: service agreement module carries out Hash operation according to the content of protocol data, obtains the abstract of protocol data, And the content of protocol data is encrypted with the public key of specified node, Xiang Zhiding node requests distribution protocol data.
Step 5: after specified node receives request, be decrypted with the private key of oneself, and to the protocol data after decryption into Row Hash operation is made a summary, and is then compared with the abstract in request, if it does, then according to protocol data and Shang Yiqu The characteristic value of block generates new block, and new block is added in block chain and obtains updated block chain.
Step 6: specified node returns to service agreement module for result is issued.
Step 7: service agreement module returns to publication result to ISP.
Step 8: specified node is broadcasted to other block chain link points, new block is generated on other nodes, by new district Block, which is added in block chain, obtains updated block chain, realizes the publication of protocol data.
Fig. 7 is a kind of schematic diagram of protocol data management method provided in an embodiment of the present invention.The embodiment of the present invention is held Row main body is the second terminal and protocol data management system of the application server of ISP, personal user, and the present invention is real Example is applied to be illustrated the subscribe to the agreement process of data of ISP and personal user, referring to Fig. 7, this method comprises:
701, second terminal shows the application interface that application server provides, when detecting to protocol data in application interface Confirmation operation when, to application server send protocol data signature request, the protocol data signature request carry second terminal The personal user of login identifies and the Data Identification of protocol data to be signed.
In the embodiment of the present invention, which can be the equipment such as mobile phone, computer, tablet computer, the second terminal It is identified based on personal user and logs in management server, personal user identifies the identity for indicating personal user.
Wherein, ISP is any ISP registered in protocol data management system, and ISP matches It is equipped with application server, provides service for personal user, and personal user is in either one or two of protocol data management system registration People user.
When the service that personal user will use ISP to provide, second terminal shows the application that application server provides Interface includes protocol data in the application interface, and personal user is prompted to subscribe to the agreement data, when second terminal detects When people user is to the confirmation operation of protocol data, protocol data signature request is sent to application server.
For example, second terminal shows the application interface that e-payment application provides, as shown in figure 8, the application interface includes Confirmation signature button " Agreement Protocol simultaneously opens XX service ", personal user clicks confirmation signature button and can request and electronics branch Electronic payment function is opened after paying provider's signature electronic payment function agreement.Also, the application interface further includes protocol data Entrance " user service agreement ", personal user, which clicks the entrance, can check the particular content of user service agreement.
702, when application server receives protocol data signature request, protocol data signature is sent to management server and is asked It asks.
Management server can call the interface to application server open interface, application server, to management server Send protocol data signature request, thus by ISP and personal user subscribe to the agreement data logout in block chain In network.
In addition, the protocol data signature request that application server is sent to management server can also carry application server ISP mark, to indicate which ISP the protocol data to be signed belongs to.
In the protocol data management system, block chain network includes multiple nodes, and each node configures identical block Chain, block chain network are used for the record protocol data in block chain, and personal user and clothes can also be recorded in block chain Business supplier subscribes to the agreement the events of data.When management server receives protocol data signature request, it is based on the agreement number It is requested according to signature, the second block is generated according to the characteristic value of Data Identification and the first block, the second block is added to block chain In, updated block chain is obtained, and the corresponding relationship of personal user's mark and the second block is established in the first concordance list.
Wherein, the first block is a upper block for the second block in updated block chain, and the second block is for recording The Data Identification of protocol data, the first concordance list include that personal user identifies and is used to record personal user's mark signed agreement Corresponding relationship between the block of the Data Identification of data, the corresponding relationship can indicate personal user's signed Data Identification Corresponding protocol data, to have recorded personal user and ISP signs the event of the protocol data, it is subsequent can be with The block where the signed protocol data of querying individual user is identified according to the first concordance list and personal user.
Optionally, which may include personal user's mark and corresponding block-identified, this it is block-identified can be with The storage location etc. of the number or block that are block in block chain block-identified can index corresponding block according to this And obtain the data recorded in block.
For example, Data Identification and personal user are identified each node being sent in block chain network by management server, The each node for receiving the Data Identification and personal user's mark determines in block chain the last one block generated, i.e., first Block obtains the characteristic value of first block, the second block is generated according to the characteristic value of Data Identification and the first block, by second Block is added in block chain, obtains updated block chain, then the first block is the second block in block chain in the updated A upper block, and establish in the first concordance list the corresponding relationship of personal user's mark and the second block.
Since the characteristic value of the second newly-generated block is related to the characteristic value of a upper block, realizing will be in block chain The purpose that block is together in series, can be by chasing after the characteristic value stored in block to distorting for any information in block chain It traces back and detects, ensure that the safety of data.Wherein, this feature value can be cryptographic Hash or other are related to block data Characteristic value.
In a kind of possible implementation, in order to guarantee safety, before storing data mark, need by block link network Node in network is verified.Therefore, when management server receives protocol data signature request, in following step 703- It is verified in 706 by specified node.
703, it when management server receives protocol data signature request, from multiple nodes of block chain network, chooses Specified node.
704, management server sends data signing request to specified node, and data signing request carries Data Identification, number It is identified according to the characteristic information of mark and personal user.
This feature information and date mark corresponds, by obtaining after carrying out default calculate to Data Identification, such as the spy Reference breath can carry out the cryptographic Hash obtained after Hash operation for logarithm according to mark, or be using MD5 algorithm to Data Identification MD5 value obtained after being calculated etc. can be identified whether correctly, if be tampered according to this feature information with verify data.Then Management server obtains the characteristic information of Data Identification and Data Identification, is sent to specified node, specifies node according to data mark The characteristic information of knowledge, can determine whether Data Identification is tampered with.
705, node is specified to be verified according to the characteristic information of Data Identification and Data Identification, according to number after being verified The second block is generated according to mark and the characteristic value of the first block, the second block is added in block chain, updated area is obtained Block chain establishes the corresponding relationship of personal user's mark and the second block in the first concordance list.
706, it specifies node to identify to other node broadcasts Data Identifications of block chain network and personal user, makes other sections Point generates the second block according to the characteristic value of Data Identification and the first block, and the second block is added in block chain, is obtained more Block chain after new establishes the corresponding relationship of personal user's mark and the second block in the first concordance list.
In a kind of possible implementation, the public key that management server is identified according to personal user carries out Data Identification Encryption, obtains the first encryption data, is encrypted according to the public key of specified node to the first encryption data, obtain the second encryption number According to carrying out default operation to the first encryption data, obtain the characteristic information of the first encryption data, then management server is to specified section The data signing request that point is sent can carry the second encryption data, the characteristic information of the first encryption data and personal user's mark Know.When specified node receives data signing request, the second encryption data is decrypted according to the private key of specified node, is obtained Default operation is carried out to the first encryption data, and to the first encryption data, obtains the characteristic information of the first encryption data, when obtaining Characteristic information and data signing request in the characteristic information that carries when match, expression Data Identification is correct, then according to data mark Know and the characteristic value of the first block generate the second block, the second block is added in block chain, updated block chain is obtained, The corresponding relationship of personal user's mark and the second block is established in the first concordance list, and the second block is for recording the first encryption Data.Later, it is identified to other node broadcasts Data Identifications of block chain network and personal user, makes other nodes according to data Mark and the characteristic value of the first block generate the second block, and the second block is added in block chain, updated block is obtained Chain establishes the corresponding relationship of personal user's mark and the second block, in the first concordance list to guarantee in block chain network not It keeps synchronizing with the data on node.
Wherein, public, private key can be pre-generated in block chain network for each node, and open give of public key is managed into clothes Business device and other nodes, when so as to carry out data transmission between different devices, encrypt data according to public key, root Data are decrypted according to private key, guarantee the safety of data using cryptological technique.
In a kind of possible implementation, management server can randomly select specified node from multiple nodes, or It presets the specified node defaulted in a lot of node or management server can be to multiple node in block chain network Broadcast data signature request receives the response results of the part of nodes or whole node feeding backs in multiple nodes, the response results In may include the current load capacity of node or current processing capacity parameter etc., management server can be according to receiving Response results choose the less node of present load or the stronger node of current processing capabilities as specified from multiple nodes Node.
It should be noted that management server can choose a specified node, or choose multiple specified nodes.One In the possible implementation of kind, management server only chooses a specified node, which will be signed by allowing The Data Identification of the protocol data of administration is stored into block chain, and in alternatively possible implementation, and management server can be with Multiple specified nodes are chosen, protocol data is verified by multiple specified nodes, in sufficient amount or the finger of enough ratios When determining node verification and passing through, determine that multiple specified nodes have reached common recognition, it at this time could be by the data mark of the protocol data of signature Knowledge is stored in block chain.
Method provided in an embodiment of the present invention, the record protocol data in the block chain of block chain network, works as personal user With ISP subscribe to the agreement data when, based on application server send protocol data sign request, by the agreement of signature The Data Identification of data is stored in the form of block into block chain, and establishes personal user's mark pass corresponding between block System.Since next block is generated according to the characteristic value of a upper block in block chain, there is incidence relation between the block of front and back, because This characteristic that can not be distorted with data, the mode that Data Identification is recorded in block chain can guarantee to subscribe to the agreement the thing of data The safety and reliability of part avoids malicious user and distorts or deny the signature event, is also convenient for subsequently through block chain Signature event is carried out the management operation such as to inquire.
Also, management server and the Data Identification of specified node-node transmission are encrypted according to the public key of specified node, root The data for being decrypted according to the private key of specified node, and obtaining to decryption carry out default operation, by obtained characteristic information and pipe Reason server carries out characteristic information obtained from default operation and is matched, and avoids what Data Identification in transmission process was tampered May, it ensure that the safe and reliable of Data Identification.
Also, the not direct storing data mark in block chain, but the public key logarithm that storage is identified according to personal user The first encryption data obtained after being encrypted according to mark, can not decrypt other users steal first encryption data Success, can not know which protocol data personal user endorsed, may further ensure that the safe and reliable of Data Identification.
Based on implementation environment shown in Fig. 2, Fig. 9 is a kind of operation stream of data that subscribe to the agreement provided in an embodiment of the present invention Cheng Tu, referring to Fig. 9, which includes:
Step 1, ISP to authentication module verify the certificate of authority, and verification is ISP by rear authentication module Authorized certificate is provided, verification is not by returning to failure then.
Step 2: after ISP obtains authorized certificate, to service agreement module request distribution protocol data, service association Module is discussed to the authorized certificate of authentication module verification ISP, verification by being serviced later.
Step 3: node broadcasts data signing request of the service agreement module into block chain network receives multiple nodes After response results, one of node (node 2 in Fig. 9) is therefrom chosen as specified node.
Step 4: service agreement module encrypts the Data Identification of protocol data according to the public key of corresponding user, is formed Then encryption data carries out Hash operation to encryption data, obtains the abstract of Data Identification, and with specify the public key of node to adding Ciphertext data is encrypted, and Xiang Zhiding node requests the data that subscribe to the agreement.
Step 5: after specified node receives request, being decrypted with the private key of oneself, and the content after decryption is breathed out Uncommon operation is made a summary, and is then compared with the abstract in request, if it does, then according to encryption data and a upper block Characteristic value generates new block, and new block is added in block chain and obtains updated block chain.
Step 6: specified node returns to service agreement module for result is signed.
Step 7: service agreement module returns to signature result to ISP.
Step 8: specified node is broadcasted to other block chain link points, and block is generated on other nodes and stores encryption Data.
Figure 10 is a kind of schematic diagram of protocol data management method provided in an embodiment of the present invention.The embodiment of the present invention is held Row main body is the second terminal and protocol data management system of personal user, and the embodiment of the present invention is to personal user's vlan query protocol VLAN number According to process be illustrated, referring to Figure 10, this method comprises:
1001, the protocol data administration interface that second terminal management server provides, passes through protocol data management field Inquiry operation is detected in face, which includes querying condition.
1002, second terminal sends inquiry request to management server, and inquiry request carries querying condition.
Second terminal is based on personal user and identifies login management server, obtains the protocol data pipe that management server provides Reason interface is simultaneously shown that personal user can trigger a variety of management operations on protocol data administration interface, thus realization pair The management of protocol data.
The inquiry operation is used to indicate inquiry and the matched protocol data of querying condition, when personal user is in protocol data pipe When triggering inquiry operation on reason interface and setting querying condition, inquired by management server.Wherein, which can It is a variety of with the ISP comprising distribution protocol data, the issuing time section of protocol data, the more new version of protocol data etc. The condition of type, the protocol data or the querying condition for meeting querying condition with instruction inquiry may be empty condition, to refer to Show the protocol data for inquiring all publications.
In a kind of possible implementation, which is to select the operation of the first query option, the first query option The matched protocol data of querying condition for being used to indicate inquiry and determining, then when second terminal detects the first query option of selection Operation when, to management server send the first inquiry request, the first inquiry request carry querying condition.Referring to Figure 11, assisting Discussing includes the first query option " checking protocol list " in data management interface, and user can show after clicking the first query option The profile information of announced all protocol datas, ISP, issuing time, version letter including distribution protocol data Breath, entrance of detail information etc., and can be with the detail information of display protocol data after the entrance of user's click detail information.
In alternatively possible implementation, which is to select the operation of the second query option, the second inquiry choosing Item be used to indicate querying individual user identifier signed and with the determining matched protocol data of querying condition, then work as second terminal When detecting the operation of the second query option of selection, the second inquiry request is sent to management server, the second inquiry request carries Querying condition and personal user's mark.Referring to Figure 12, " signature is checked comprising the second query option in protocol data administration interface List ", user can show the profile information of the signed all protocol datas of user after clicking the second query option, including send out ISP, issuing time, version information, signature situation, entrance of detail information of cloth protocol data etc., and user's point Hitting after the entrance of detail information can be with the detail information of display protocol data.
1003, when management server receives inquiry request, inquiry and the matched agreement number of querying condition in block chain According to the protocol data inquired is sent to second terminal.
In a kind of possible implementation, management server receives the first inquiry request that second terminal is sent, based on the One inquiry request, inquiry and the matched protocol data of querying condition in block chain.
Optionally, management server chooses specified node from multiple nodes of block chain network, and Xiang Zhiding node is sent First data inquiry request, the first data inquiry request carry the characteristic information of querying condition and querying condition, by specifying node It is verified according to the characteristic information of querying condition and querying condition, is returned and the matched agreement number of querying condition after being verified According to.Wherein, the mode of the mode and acquisition characteristic information of choosing specified node is similar to the above embodiments, and details are not described herein.
Further, management server can choose specified node from multiple nodes of block chain network, to inquiry item Part carries out default operation, obtains the characteristic information of querying condition, is encrypted, obtained to querying condition according to the public key of specified node To encrypted query condition, Xiang Zhiding node sends the first data inquiry request, and the first data inquiry request carries encrypted query item The characteristic information of part and querying condition is obtained by specifying node to be decrypted according to the private key pair encryption querying condition of specified node Carry out default operation to querying condition, and to querying condition, obtain the characteristic information of querying condition, when obtained characteristic information with When the characteristic information matching carried in data inquiry request, inquiry and the matched protocol data of querying condition.
In alternatively possible implementation, management server receives the second inquiry request that second terminal is sent, and is based on Second inquiry request, according to the corresponding block of the first concordance list querying individual user identifier in block chain network, according to determination Block obtain with the matched protocol data of querying condition.
Wherein, it is identified in the first concordance list comprising personal user and identifies signed agreement number with for recording personal user According to the corresponding relationship of block of Data Identification obtained according to the corresponding block of the first concordance list querying individual user identifier The Data Identification recorded in the block, the corresponding protocol data of the Data Identification are that personal user identifies signed agreement number According to.
Optionally, management server receives the second inquiry request, and specified section is chosen from multiple nodes of block chain network Point, Xiang Zhiding node send the second data inquiry request, and the second data inquiry request carries the feature of querying condition, querying condition Information and personal user's mark are verified by specified node according to the characteristic information of querying condition and querying condition, and verifying is logical Later it according to the corresponding block of the first concordance list querying individual user identifier, is returned according to determining block and is matched with querying condition Protocol data.Wherein, the mode of the mode and acquisition characteristic information of choosing specified node is similar to the above embodiments, herein not It repeats again.
Further, management server can choose specified node from multiple nodes of block chain network, to inquiry item Part carries out default operation, obtains the characteristic information of querying condition, is encrypted, obtained to querying condition according to the public key of specified node To encrypted query condition, then management server is sent to specified node the second data inquiry request carry encrypted query condition and The characteristic information of querying condition is looked by specifying node to be decrypted according to the private key pair encryption querying condition of specified node Inquiry condition, and default operation is carried out to querying condition, the characteristic information of querying condition is obtained, when obtained characteristic information and data When the characteristic information matching carried in inquiry request, according to the corresponding block of the first concordance list querying individual user identifier.
Also, based in above-mentioned embodiment illustrated in fig. 7, block is used to record the public key according to personal user's mark to data When the first encryption data that mark encryption obtains, arrived and the matched encryption number of querying condition according to determining block is available According to, return to management server, then when management server receives encryption data, according to personal user identify private key pair encryption Data are decrypted, and obtain Data Identification, to get the corresponding protocol data of Data Identification, as personal user is identified The protocol data of signature.
1004, it when second terminal receives the protocol data inquired, is shown and is inquired by protocol data administration interface Protocol data.Personal user can check protocol data on protocol data administration interface.
In a kind of possible implementation, second terminal can the first not detail information of display protocol data, but show The profile information of protocol data, title, the ISP of distribution protocol data, issuing time, version including protocol data Information etc., when second terminal detects the operation for clicking protocol data, then the detail information of display protocol data.
It should be noted that the embodiment of the present invention is inquired with the second terminal of personal user by protocol data management system For protocol data, and in another embodiment, ISP can also pass through protocol data management system vlan query protocol VLAN number According to.It that is to say, first terminal detects inquiry operation by protocol data administration interface, and inquiry operation includes querying condition, Xiang Guan It manages server and sends inquiry request, inquiry request carries querying condition and ISP's mark, alternatively, application server is to pipe It manages server and sends inquiry request, inquiry request carries querying condition and ISP's mark.Then management server is in block In chain query service supplier identify publication with the matched protocol data of querying condition, shown by protocol data administration interface The protocol data inquired.
In a kind of possible implementation, when first terminal distribution protocol data, generates the 4th block and be added to block chain In, and the corresponding relationship of ISP's mark and the 4th block is established in the second concordance list, to indicate that ISP marks Know the protocol data issued in the 4th block.Wherein, the second concordance list includes that ISP identifies and is used to record clothes Business supplier identifies the corresponding relationship between the block of distribution protocol data.Then when first terminal vlan query protocol VLAN data, management Server can identify corresponding block according to the second concordance list query service supplier, and then obtain the agreement number in block According to as ISP identifies the protocol data issued.
Protocol data is stored in block chain by method provided in an embodiment of the present invention, and the data of block chain are utilized not The characteristic that can be distorted ensure that the safety and reliability of protocol data, avoids malicious user and distorts or deny and is issued Protocol data, and provide the function of user query protocol data, check protocol data convenient for user, understand the clothes of oneself It is engaged in service condition, in time to having a question or vicious protocol data is raised an objection, facilitates and subsequent carried out using protocol data It puts to the proof, has effectively ensured the equity of user, reduced the legal risk of user's right-safeguarding.
Also, management server and the Data Identification of specified node-node transmission are encrypted according to the public key of specified node, root The data for being decrypted according to the private key of specified node, and obtaining to decryption carry out default operation, by obtained characteristic information and pipe Reason server carries out characteristic information obtained from default operation and is matched, and is able to verify that the identity of inquiry user, avoids agreement Data are stolen by malicious user, ensure that the safe and reliable of protocol data.
Based on implementation environment shown in Fig. 2, Figure 13 is a kind of announced agreement number of inquiry provided in an embodiment of the present invention According to operational flowchart, referring to Figure 13, which includes:
Step 1, personal user to authentication module verify the certificate of authority, and verification is personal user's granting by rear authentication module Authorized certificate, verification is not by returning to failure then.
Step 2: after personal user obtains authorized certificate, inquiring announced protocol data, inquiry to enquiry module request Module is to the authorized certificate of authentication module verification personal user, and verification by being serviced later.
Step 3: enquiry module chooses one of node as specified node from block chain network.
Step 4: enquiry module carries out Hash operation to querying condition, forms abstract, and with specify the public key of node to looking into Inquiry condition is encrypted, and announced protocol data is inquired in the request of Xiang Zhiding node.
Step 5: after specified node receives request, be decrypted with the private key of oneself, and to the querying condition after decryption into Row Hash operation is made a summary, and is then compared with the abstract in request, if it does, then returning to the protocol data inquired List.
Step 6: enquiry module returns to the protocol data list inquired to personal user.
Based on implementation environment shown in Fig. 2, Figure 14 is a kind of signed agreement number of inquiry provided in an embodiment of the present invention According to operational flowchart, referring to Figure 14, which includes:
Step 1, personal user to authentication module verify the certificate of authority, and verification is personal user's granting by rear authentication module Authorized certificate, verification is not by returning to failure then.
Step 2: after personal user obtains authorized certificate, inquiring signed protocol data, inquiry to enquiry module request Module is to the authorized certificate of authentication module verification personal user, and verification by being serviced later.
Step 3: enquiry module chooses one of node as specified node from block chain network.
Step 4: enquiry module carries out Hash operation to querying condition, forms abstract, and with specify the public key of node to looking into Inquiry condition is encrypted, and signed protocol data is inquired in the request of Xiang Zhiding node.
Step 5: after specified node receives request, be decrypted with the private key of oneself, and to the querying condition after decryption into Row Hash operation is made a summary, and is then compared with the abstract in request, if it does, then returning to the personal user inquired Signed protocol data list (encryption).
Step 6: enquiry module is decrypted protocol data list using the private key of personal user, returns to personal user Protocol data list after decryption.
Figure 15 is a kind of structural schematic diagram of protocol data managing device provided in an embodiment of the present invention, is applied to above-mentioned reality It applies in the management server in example.Referring to Figure 15, which includes:
Receiving module 1501, for executing the protocol data signature request for receiving application server in above-described embodiment and sending The step of;
Processing module 1502, generates the second block for executing in above-described embodiment, the second block is added to block chain In, the step of obtaining updated block chain;
Processing module 1502 is also used to execute in above-described embodiment and establishes personal user's mark and the in the first concordance list The step of corresponding relationship of two blocks.
Optionally, processing module 1502 includes:
Selection unit, for executing the step of choosing specified node in above-described embodiment from multiple nodes;
Transmission unit sends the step of data signing is requested to specified node for executing in above-described embodiment.
Optionally, processing module 1502 further include:
First encryption unit, for execute in above-described embodiment according to personal user identify public key, to Data Identification into The step of row encrypts, and obtains the first encryption data;
Second encryption unit carries out the first encryption data according to the public key of specified node for executing in above-described embodiment The step of encrypting, obtaining the second encryption data;
Feature acquiring unit carries out default operation to the first encryption data for executing in above-described embodiment, obtains first The step of characteristic information of encryption data.
Optionally, receiving module 1501, which is also used to execute, receives the protocol data hair that first terminal is sent in above-described embodiment The step of cloth is requested;
Processing module 1502 is also used to execute the 4th block of generation in above-described embodiment, and the 4th block is added to block chain In, the step of obtaining updated block chain.
Optionally, processing module 1502 includes:
Selection unit, for executing the step of choosing specified node in above-described embodiment from multiple nodes;
Transmission unit, for executing the step of sending data publishing request to specified node in above-described embodiment.
Optionally, processing module 1502 further include:
Feature acquiring unit carries out default operation to protocol data in above-described embodiment and obtains protocol data for executing The step of characteristic information;
Encryption unit is obtained for executing in above-described embodiment according to specifying the public key of node to encrypt protocol data The step of to cryptographic protocol data.
Optionally, device further include:
Receiving module 1501 is also used to execute the inquiry that first terminal or application server transmission are received in above-described embodiment The step of request;
Enquiry module determines that ISP identifies corresponding area according to the second concordance list for executing in above-described embodiment Block, the step of protocol data matched with querying condition is obtained according to determining block in block chain;
Sending module, the protocol data for being sent a query to first terminal or application server.
Optionally, device further include:
Receiving module 1501, for executing the step for receiving the first inquiry request that second terminal is sent in above-described embodiment Suddenly;
Enquiry module is inquired and the matched protocol data of querying condition for executing in above-described embodiment in block chain Step;
Sending module, for the step of executing the protocol data sent a query in above-described embodiment to second terminal.
Optionally, enquiry module, comprising:
Selection unit, for executing the step of choosing specified node in above-described embodiment from multiple nodes;
Transmission unit, for executing the step of sending the first data inquiry request to specified node in above-described embodiment;
Receiving unit, for executing the step of receiving the protocol data for specifying querying node to arrive in above-described embodiment.
Optionally, enquiry module further include:
Feature acquiring unit carries out default operation to querying condition for executing in above-described embodiment, obtains querying condition Characteristic information the step of;
Encryption unit is obtained for executing in above-described embodiment according to specifying the public key of node to encrypt querying condition The step of to encrypted query condition.
Optionally, device further include:
Receiving module 1501 is also used to execute the step that the second inquiry request that second terminal is sent is received in above-described embodiment Suddenly;
Enquiry module determines that personal user identifies corresponding area according to the first concordance list for executing in above-described embodiment Block, the step of protocol data matched with querying condition is obtained according to determining block in block chain;
Sending module, the protocol data for being sent a query to second terminal.
Optionally, enquiry module, comprising:
Selection unit, for the step of executing in above-described embodiment from multiple nodes, choosing specified node;
Transmission unit, for executing the step of sending the second data inquiry request to specified node in above-described embodiment;
Receiving unit, for executing the step of receiving the protocol data for specifying querying node to arrive in above-described embodiment.
Optionally, enquiry module further include:
Feature acquiring unit carries out default operation to querying condition for executing in above-described embodiment, obtains querying condition Characteristic information the step of;
Encryption unit is obtained for executing in above-described embodiment according to specifying the public key of node to encrypt querying condition The step of to encrypted query condition;
Decryption unit is solved for executing in above-described embodiment according to the private key pair encryption data that personal user identifies It is close, the step of obtaining Data Identification.
All the above alternatives can form the alternative embodiment of the embodiment of the present invention using any combination, This is no longer repeated one by one.
Figure 16 is a kind of structural schematic diagram of protocol data managing device provided in an embodiment of the present invention, is applied to above-mentioned reality It applies in first terminal shown in example.Referring to Figure 16, which includes:
Display module 1601, for executing the protocol data administration interface that management server provides in above-described embodiment The step of;
Detection module 1602, for executing in above-described embodiment through the step of protocol data administration interface detection publication operation Suddenly;
Sending module 1603, for executing the step for sending protocol data posting request in above-described embodiment to management server Suddenly.
Optionally, detection module 1602 is also used to execute in above-described embodiment through the detection inquiry of protocol data administration interface The step of operation;
Sending module 1603 is also used to execute in above-described embodiment the step of sending inquiry request to management server;
Display module 1601 is also used to execute in above-described embodiment and shows the association inquired by protocol data administration interface The step of discussing data.
All the above alternatives can form the alternative embodiment of the embodiment of the present invention using any combination, This is no longer repeated one by one.
Figure 17 is a kind of structural schematic diagram of protocol data managing device provided in an embodiment of the present invention, is applied to above-mentioned reality It applies in application server shown in example.Referring to Figure 17, which includes:
Receiving module 1701 receives what the protocol data signature that second terminal is sent was requested for executing in above-described embodiment Step;
Sending module 1702, for executing the step for sending protocol data signature request in above-described embodiment to management server Suddenly.
Optionally, receiving module 1701 are also used to execute the inquiry request that first terminal transmission is received in above-described embodiment The step of;
Sending module 1702 is also used to execute in above-described embodiment the step of sending inquiry request to management server;
Sending module 1702, is also used to execute and is sent to first when receiving the protocol data inquired in above-described embodiment The step of terminal.
Figure 18 is a kind of structural schematic diagram of protocol data managing device provided in an embodiment of the present invention, is applied to above-mentioned reality It applies in second terminal shown in example.Referring to Figure 18, which includes:
Display module 1801, for the step of executing the application interface for showing application server offer in above-described embodiment;
Sending module 1802, for execute in above-described embodiment when detect in application interface protocol data confirmation behaviour When making, the step of protocol data signature is requested is sent to application server.
Optionally, the device further include:
Display module 1801, for executing the protocol data administration interface that management server provides in above-described embodiment The step of;
Detection module, for executing the step of detecting inquiry operation by protocol data administration interface in above-described embodiment;
Sending module 1802, for executing the step of sending inquiry request to management server in above-described embodiment;
Display module 1801 is also used to execute in above-described embodiment and shows the association inquired by protocol data administration interface The step of discussing data.
It should be understood that protocol data managing device provided by the above embodiment is in management agreement data, only more than The division progress of each functional module is stated for example, can according to need and in practical application by above-mentioned function distribution by difference Functional module complete, i.e., the internal structure of management server, terminal or application server is divided into different functional modules, To complete all or part of the functions described above.In addition, protocol data managing device provided by the above embodiment and agreement Data managing method embodiment belongs to same design, and specific implementation process is detailed in embodiment of the method, and which is not described herein again.
Figure 19 is a kind of structural schematic diagram of server provided in an embodiment of the present invention, the server 1900 can because of configuration or Performance is different and generates bigger difference, may include one or more processors (central processing Units, CPU) 1901 and one or more memory 1902, wherein at least one is stored in the memory 1902 Item instruction, at least one instruction are loaded by the processor 1901 and are executed to realize that above-mentioned each embodiment of the method provides Method.Certainly, which can also have the components such as wired or wireless network interface, keyboard and input/output interface, To carry out input and output, which can also include other for realizing the component of functions of the equipments, and this will not be repeated here.
Server 1900 can be used for executing management server or application server institute in above-mentioned protocol data management method The step of execution.
Figure 20 shows the structural block diagram of the terminal 2000 of an illustrative embodiment of the invention offer, and terminal 2000 is used for Execute step performed by first terminal or second terminal in above method embodiment.
The terminal 2000 can be portable mobile termianl, such as: smart phone, tablet computer, MP3 player (Moving Picture Experts Group Audio Layer III, dynamic image expert's compression standard audio level 3), MP4 (Moving Picture Experts Group Audio Layer IV, dynamic image expert's compression standard audio level 4) player, laptop or desktop computer are also possible to the AR equipment such as AR glasses, the AR helmet.Terminal 2000 be also possible to by Referred to as other titles such as user equipment, portable terminal, laptop terminal, terminal console.
In general, terminal 2000 includes: processor 2001 and memory 2002.
Processor 2001 may include one or more processing cores, such as 4 core processors, 5 core processors etc..Place Reason device 2001 can use DSP (Digital Signal Processing, Digital Signal Processing), FPGA (Field- Programmable Gate Array, field programmable gate array), PLA (Programmable Logic Array, may be programmed Logic array) at least one of example, in hardware realize.Processor 2001 also may include primary processor and coprocessor, master Processor is the processor for being handled data in the awake state, also referred to as CPU (Central Processing Unit, central processing unit);Coprocessor is the low power processor for being handled data in the standby state.? In some embodiments, processor 2001 can be integrated with GPU (Graphics Processing Unit, image processor), GPU is used to be responsible for the rendering and drafting of content to be shown needed for display screen.In some embodiments, processor 2001 can also be wrapped AI (Artificial Intelligence, artificial intelligence) processor is included, the AI processor is for handling related machine learning Calculating operation.
Memory 2002 may include one or more computer readable storage mediums, which can To be non-transient.Memory 2002 may also include high-speed random access memory and nonvolatile memory, such as one Or multiple disk storage equipments, flash memory device.In some embodiments, the non-transient computer in memory 2002 can Storage medium is read for storing at least one instruction, at least one instruction by processor 2001 for being had to realize this Shen Please in embodiment of the method provide protocol data management method.
In some embodiments, terminal 2000 is also optional includes: peripheral device interface 2003 and at least one periphery are set It is standby.It can be connected by bus or signal wire between processor 2001, memory 2002 and peripheral device interface 2003.It is each outer Peripheral equipment can be connected by bus, signal wire or circuit board with peripheral device interface 2003.Specifically, peripheral equipment includes: In radio circuit 2004, touch display screen 2005, camera 2006, voicefrequency circuit 2007, positioning component 2008 and power supply 2009 At least one.
Peripheral device interface 2003 can be used for I/O (Input/Output, input/output) is relevant outside at least one Peripheral equipment is connected to processor 2001 and memory 2002.In some embodiments, processor 2001, memory 2002 and periphery Equipment interface 2003 is integrated on same chip or circuit board;In some other embodiments, processor 2001, memory 2002 and peripheral device interface 2003 in any one or two can be realized on individual chip or circuit board, this implementation Example is not limited this.
Radio circuit 2004 is for receiving and emitting RF (Radio Frequency, radio frequency) signal, also referred to as electromagnetic signal. Radio circuit 2004 is communicated by electromagnetic signal with communication network and other communication equipments.Radio circuit 2004 is by telecommunications Number being converted to electromagnetic signal is sent, alternatively, the electromagnetic signal received is converted to electric signal.Optionally, radio circuit 2004 include: antenna system, RF transceiver, one or more amplifiers, tuner, oscillator, digital signal processor, volume solution Code chipset, user identity module card etc..Radio circuit 2004 can by least one wireless communication protocol come with it is other Terminal is communicated.The wireless communication protocol includes but is not limited to: Metropolitan Area Network (MAN), each third generation mobile communication network (2G, 3G, 4G and 13G), WLAN and/or WiFi (Wireless Fidelity, Wireless Fidelity) network.In some embodiments, radio frequency Circuit 2004 can also include NFC (Near Field Communication, wireless near field communication) related circuit, this Shen Please this is not limited.
Display screen 2005 is for showing UI (User Interface, user interface).The UI may include figure, text, Icon, video and its their any combination.When display screen 2005 is touch display screen, display screen 2005 also there is acquisition to exist The ability of the touch signal on the surface or surface of display screen 2005.The touch signal can be used as control signal and be input to place Reason device 2001 is handled.At this point, display screen 2005 can be also used for providing virtual push button and/or dummy keyboard, it is also referred to as soft to press Button and/or soft keyboard.In some embodiments, display screen 2005 can be one, and the front panel of terminal 2000 is arranged;Another In a little embodiments, display screen 2005 can be at least two, be separately positioned on the different surfaces of terminal 2000 or in foldover design; In still other embodiments, display screen 2005 can be flexible display screen, is arranged on the curved surface of terminal 2000 or folds On face.Even, display screen 2005 can also be arranged to non-rectangle irregular figure, namely abnormity screen.Display screen 2005 can be with Using LCD (Liquid Crystal Display, liquid crystal display), OLED (Organic Light-Emitting Diode, Organic Light Emitting Diode) etc. materials preparation.
CCD camera assembly 2006 is for acquiring image or video.Optionally, CCD camera assembly 2006 includes front camera And rear camera.In general, the front panel of terminal 2000 is arranged in front camera, the back of terminal is arranged in rear camera Face.In some embodiments, rear camera at least two, be respectively main camera, depth of field camera, wide-angle camera, Any one in focal length camera, to realize that main camera and the fusion of depth of field camera realize background blurring function, main camera shooting Head and wide-angle camera fusion realize pan-shot and VR (Virtual Reality, virtual reality) shooting function or its It merges shooting function.In some embodiments, CCD camera assembly 2006 can also include flash lamp.Flash lamp can be monochrome Warm flash lamp is also possible to double-colored temperature flash lamp.Double-colored temperature flash lamp refers to the combination of warm light flash lamp and cold light flash lamp, can For the light compensation under different-colour.
Voicefrequency circuit 2007 may include microphone and loudspeaker.Microphone is used to acquire the sound wave of user and environment, and It converts sound waves into electric signal and is input to processor 2001 and handled, or be input to radio circuit 2004 to realize that voice is logical Letter.For stereo acquisition or the purpose of noise reduction, microphone can be separately positioned on the different parts of terminal 2000 to be multiple. Microphone can also be array microphone or omnidirectional's acquisition type microphone.Loudspeaker is then used to that processor 2001 or radio frequency will to be come from The electric signal of circuit 2004 is converted to sound wave.Loudspeaker can be traditional wafer speaker, be also possible to piezoelectric ceramics loudspeaking Device.When loudspeaker is piezoelectric ceramic loudspeaker, the audible sound wave of the mankind can be not only converted electrical signals to, can also be incited somebody to action Electric signal is converted to the sound wave that the mankind do not hear to carry out the purposes such as ranging.In some embodiments, voicefrequency circuit 2007 may be used also To include earphone jack.
Positioning component 2008 is used for the current geographic position of positioning terminal 2000, to realize navigation or LBS (Location Based Service, location based service).Positioning component 2008 can be the GPS (Global based on the U.S. Positioning System, global positioning system), the dipper system of China, Russia Gray receive this system or European Union The positioning component of Galileo system.
Power supply 2009 is used to be powered for the various components in terminal 2000.Power supply 2009 can be alternating current, direct current Electricity, disposable battery or rechargeable battery.When power supply 2009 includes rechargeable battery, which can support wired Charging or wireless charging.The rechargeable battery can be also used for supporting fast charge technology.
In some embodiments, terminal 2000 further includes having one or more sensors 2010.One or more sensing Device 2010 includes but is not limited to: acceleration transducer 2011, gyro sensor 2012, pressure sensor 2013, fingerprint sensing Device 2014, optical sensor 2015 and proximity sensor 2016.
Acceleration transducer 2011 can detecte the acceleration in three reference axis of the coordinate system established with terminal 2000 Size.For example, acceleration transducer 2011 can be used for detecting component of the acceleration of gravity in three reference axis.Processor The 2001 acceleration of gravity signals that can be acquired according to acceleration transducer 2011, control touch display screen 2005 with transverse views Or longitudinal view carries out the display of user interface.Acceleration transducer 2011 can be also used for game or the exercise data of user Acquisition.
Gyro sensor 2012 can detecte body direction and the rotational angle of terminal 2000, gyro sensor 2012 Acquisition user can be cooperateed with to act the 3D of terminal 2000 with acceleration transducer 2011.Processor 2001 is according to gyro sensors The data that device 2012 acquires, following function may be implemented: action induction (for example changing UI according to the tilt operation of user) is clapped Image stabilization, game control and inertial navigation when taking the photograph.
The lower layer of side frame and/or touch display screen 2005 in terminal 2000 can be set in pressure sensor 2013.When When the side frame of terminal 2000 is arranged in pressure sensor 2013, user can detecte to the gripping signal of terminal 2000, by Reason device 2001 carries out right-hand man's identification or prompt operation according to the gripping signal that pressure sensor 2013 acquires.Work as pressure sensor 2013 when being arranged in the lower layer of touch display screen 2005, is grasped by processor 2001 according to pressure of the user to touch display screen 2005 Make, realization controls the operability control on the interface UI.Operability control include button control, scroll bar control, At least one of icon control, menu control.
Fingerprint sensor 2014 is used to acquire the fingerprint of user, is collected by processor 2001 according to fingerprint sensor 2014 Fingerprint recognition user identity, alternatively, by fingerprint sensor 2014 according to the identity of collected fingerprint recognition user.Knowing Not Chu user identity be trusted identity when, by processor 2001 authorize the user have relevant sensitive operation, sensitivity grasp Make to include solving lock screen, checking encryption information, downloading software, payment and change setting etc..Fingerprint sensor 2014 can be set Set the front, the back side or side of terminal 2000.When being provided with physical button or manufacturer Logo in terminal 2000, fingerprint sensor 2014 can integrate with physical button or manufacturer's mark.
Optical sensor 2015 is for acquiring ambient light intensity.In one embodiment, processor 2001 can be according to light The ambient light intensity that sensor 2015 acquires is learned, the display brightness of touch display screen 2005 is controlled.Specifically, work as ambient light intensity When higher, the display brightness of touch display screen 2005 is turned up;When ambient light intensity is lower, the aobvious of touch display screen 2005 is turned down Show brightness.In another embodiment, the ambient light intensity that processor 2001 can also be acquired according to optical sensor 2015, is moved The acquisition parameters of state adjustment CCD camera assembly 2006.
Proximity sensor 2016, also referred to as range sensor are generally arranged at the front panel of terminal 2000.Proximity sensor 2016 for acquiring the distance between the front of user Yu terminal 2000.In one embodiment, when proximity sensor 2016 is examined When measuring the distance between the front of user and terminal 2000 and gradually becoming smaller, by processor 2001 control touch display screen 2005 from Bright screen state is switched to breath screen state;When proximity sensor 2016 detect the distance between front of user and terminal 2000 by When gradual change is big, touch display screen 2005 is controlled by processor 2001 and is switched to bright screen state from breath screen state.
It, can be with it will be understood by those skilled in the art that the restriction of the not structure paired terminal 2000 of structure shown in Figure 20 Including than illustrating more or fewer components, perhaps combining certain components or being arranged using different components.
The embodiment of the invention also provides a kind of protocol data managing devices, which includes processor And memory, at least one instruction, at least a Duan Chengxu, code set or instruction set, instruction, program, generation are stored in memory Code collection or instruction set are loaded by processor and are had possessed behaviour in the protocol data management method to realize above-described embodiment Make.
The embodiment of the invention also provides a kind of computer readable storage medium, stored in the computer readable storage medium Have at least one instruction, at least a Duan Chengxu, code set or instruction set, the instruction, the program, the code set or the instruction set by Processor loads and has possessed operation in the protocol data management method to realize above-described embodiment.
Those of ordinary skill in the art will appreciate that realizing that all or part of the steps of above-described embodiment can pass through hardware It completes, relevant hardware can also be instructed to complete by program, the program can store in a kind of computer-readable In storage medium, storage medium mentioned above can be read-only memory, disk or CD etc..
The foregoing is merely the preferred embodiments of the embodiment of the present invention, are not intended to limit the invention embodiment, all at this Within the spirit and principle of inventive embodiments, any modification, equivalent replacement, improvement and so on be should be included in of the invention Within protection scope.

Claims (15)

1. a kind of protocol data management method, which is characterized in that be applied in protocol data management system, the protocol data pipe Reason system includes management server and block chain network, and the block chain network includes multiple nodes, and each node configuration is identical Block chain, the block chain network be used in the block chain record protocol data, which comprises
The management server receives the protocol data posting request that first terminal is sent, and the protocol data posting request carries The protocol data;
Based on the protocol data posting request, the 4th block is generated according to the characteristic value of the protocol data and third block, 4th block is added in the block chain, updated block chain is obtained, described in the updated block chain Third block is a upper block for the 4th block, and the 4th block is for recording the protocol data.
2. the method according to claim 1, wherein described be based on the protocol data posting request, according to institute The characteristic value for stating protocol data and third block generates the 4th block, and the 4th block is added in the block chain, is obtained To updated block chain, comprising:
The management server chooses specified node from the multiple node;
The management server sends data publishing request to the specified node, and the data publishing request carries the agreement The characteristic information of data and the protocol data;
The specified node is verified according to the characteristic information of the protocol data and the protocol data, is verified rear root The 4th block is generated according to the characteristic value of the protocol data and the third block, the 4th block is added to described In the block chain of specified node configuration, updated block chain is obtained;
Protocol data described in other node broadcasts of the specified node to the block chain network, make other described nodes according to The characteristic value of the protocol data and the third block generates the 4th block and the 4th block is added to configuration The block chain in, obtain updated block chain.
3. according to the method described in claim 2, it is characterized in that, the method also includes:
The management server carries out default operation to the protocol data, obtains the characteristic information of the protocol data;
The management server encrypts the protocol data according to the public key of the specified node, obtains cryptographic protocol number According to;
The data publishing request carries the cryptographic protocol data and the characteristic information;The specified node is according to the association The characteristic information of view data and the protocol data is verified, according to the protocol data and the third area after being verified The characteristic value of block generates the 4th block, and the 4th block is added to the block chain of the specified node configuration In, obtain updated block chain, comprising:
The specified node is decrypted the cryptographic protocol data according to the private key of the specified node, obtains the agreement Data, and the default operation is carried out to the protocol data, obtain the characteristic information of the protocol data;
When being matched when the characteristic information carried in obtained characteristic information and the data publishing request, according to the protocol data The 4th block is generated with the characteristic value of the third block, the 4th block is added to the specified node configuration In the block chain, updated block chain is obtained.
4. the method according to claim 1, wherein the method also includes:
The management server receives the inquiry request that the first terminal is sent, and the inquiry request carries querying condition kimonos Business supplier identifies, and the inquiry request is for requesting the inquiry ISP to identify the announced and querying condition Matched protocol data;
Based on the inquiry request, determine that the ISP identifies corresponding block according to the second concordance list, in the area It is obtained in block chain according to determining block and is mentioned with the matched protocol data of the querying condition, second concordance list comprising service Donor mark and for recording corresponding relationship of the ISP mark between the block of distribution protocol data;
The protocol data sent a query to the first terminal or the application server.
5. method according to claim 1-4, which is characterized in that the method also includes:
The management server receives the first inquiry request that second terminal is sent, and first inquiry request carries inquiry item Part, first inquiry request is for requesting inquiry and the matched protocol data of the querying condition;
Based on first inquiry request, inquiry and the matched protocol data of the querying condition in the block chain;
The protocol data sent a query to the second terminal.
6. according to the method described in claim 5, it is characterized in that, described be based on first inquiry request, in the block Inquiry and the matched protocol data of the querying condition in chain, comprising:
The management server chooses specified node from the multiple node;
The management server sends the first data inquiry request to the specified node, and first data inquiry request carries The characteristic information of the querying condition and the querying condition;
The specified node is verified according to the characteristic information of the querying condition and the querying condition, after being verified Inquiry and the matched protocol data of the querying condition in the block chain, and return to the management server;
The management server receives the protocol data that the specified querying node arrives.
7. according to the method described in claim 6, it is characterized in that, the method also includes:
The management server carries out default operation to the querying condition, obtains the characteristic information of the querying condition;
The management server encrypts the querying condition according to the public key of the specified node, obtains encrypted query item Part;
First data inquiry request carries the encrypted query condition and the characteristic information, and the specified node is according to institute The characteristic information for stating querying condition and the querying condition is verified, after being verified in the block chain inquiry with it is described The matched protocol data of querying condition, comprising:
The specified node is decrypted the encrypted query condition according to the private key of the specified node, obtains the inquiry Condition, and the default operation is carried out to the querying condition, obtain the characteristic information of the querying condition;
When being matched when the characteristic information carried in obtained characteristic information and the data inquiry request, looked into the block chain It askes and the matched protocol data of the querying condition.
8. method according to claim 1-4, which is characterized in that the method also includes:
The management server receives the second inquiry request that second terminal is sent, and second inquiry request carries querying condition The personal user's mark logged in the second terminal, second inquiry request inquire personal user's mark for requesting The signed and matched protocol data of the querying condition;
Based on second inquiry request, determine that the personal user identifies corresponding block according to the first concordance list, described It is obtained in block chain according to determining block and includes individual with the matched protocol data of the querying condition, first concordance list Corresponding pass between user identifier and the block for recording the Data Identification that the personal user identifies signed protocol data System;
The protocol data sent a query to the second terminal.
9. according to the method described in claim 10, it is characterized in that, described be based on second inquiry request, according to the first rope Draw table and determine that the personal user identifies corresponding block, is obtained and the inquiry in the block chain according to determining block The matched protocol data of condition, comprising:
The management server chooses specified node from the multiple node;
The management server sends the second data inquiry request to the specified node, and second data inquiry request carries The querying condition, the characteristic information of the querying condition and personal user mark;
The specified node is verified according to the characteristic information of the querying condition and the querying condition, is verified rear root It determines that the personal user identifies corresponding block according to first concordance list, is obtained in the block chain according to determining block It takes and the matched protocol data of the querying condition and returns to the management server;
The management server receives the protocol data that the specified querying node arrives.
10. a kind of protocol data management method, which is characterized in that be applied in first terminal, which comprises
The protocol data administration interface that management server provides;
Publication operation is detected by the protocol data administration interface, the publication operation includes protocol data to be released, institute It is the ISP and described a when personal user provides service that protocol data, which is stated, for the ISP belonging to providing The behavior of people user;
Protocol data posting request is sent to the management server, the protocol data posting request carries the agreement number According to by the management server according to the characteristic value of the Data Identification and the first block the second block of generation, by described second Block is added in the block chain, obtains updated block chain, and the first block described in the updated block chain is A upper block for second block, second block is for recording the Data Identification.
11. a kind of protocol data managing device, which is characterized in that applied in the management server of protocol data management system, The protocol data management system includes the management server and block chain network, and the block chain network includes multiple sections Point, each node configure identical block chain, and the block chain network is used for the record protocol data in the block chain, described Device includes:
Receiving module, for receiving the protocol data posting request of first terminal transmission, the protocol data posting request is carried The protocol data;
Processing module, for being based on the protocol data posting request, according to the characteristic value of the protocol data and third block The 4th block is generated, the 4th block is added in the block chain, obtains updated block chain, it is described updated Third block described in block chain is a upper block for the 4th block, and the 4th block is for recording the agreement number According to.
12. a kind of protocol data managing device, which is characterized in that be applied in first terminal, described device includes:
Display module, the protocol data administration interface provided for management server;
Detection module, for by protocol data administration interface detection publication operation, the publication operation to include to be released Protocol data, the protocol data be used to provide belonging to ISP when providing service for personal user the service mention The behavior of donor and the personal user;
Sending module, for sending protocol data posting request to the management server, the protocol data posting request is taken With the protocol data, the secondth area is generated according to the characteristic value of the Data Identification and the first block by the management server Second block is added in the block chain by block, obtains updated block chain, institute in the updated block chain The upper block that the first block is second block is stated, second block is for recording the Data Identification.
13. a kind of protocol data managing device, which is characterized in that the protocol data managing device includes processor and storage Device is stored at least one instruction, at least a Duan Chengxu, code set or instruction set, described instruction, the journey in the memory Sequence, the code set or described instruction collection are loaded by the processor and are had to realize as any right of claim 1 to 9 is wanted Ask possessed operation in the protocol data management method;
Alternatively, possessed operation in protocol data management method as claimed in claim 10.
14. a kind of computer readable storage medium, which is characterized in that be stored at least one in the computer readable storage medium Item instruction, at least a Duan Chengxu, code set or instruction set, described instruction, described program, the code set or described instruction collection by Processor is loaded and is had to realize in the protocol data management method as described in claim 1 to 9 any claim and have Some operations;
Alternatively, possessed operation in protocol data management method as claimed in claim 10.
15. a kind of protocol data management system, which is characterized in that the protocol data management system includes management server and area Block chain network, the block chain network include multiple nodes, and each node configures identical block chain, and the block chain network is used In the record protocol data in the block chain;
The management server, for executing in the protocol data management method as described in claim 1 to 9 any claim Operation.
CN201910681718.4A 2018-04-27 2018-04-27 Protocol data management method, device, storage medium and system Active CN110245144B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201910681718.4A CN110245144B (en) 2018-04-27 2018-04-27 Protocol data management method, device, storage medium and system

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201810392315.3A CN108614878B (en) 2018-04-27 2018-04-27 Protocol data management method, device, storage medium and system
CN201910681718.4A CN110245144B (en) 2018-04-27 2018-04-27 Protocol data management method, device, storage medium and system

Related Parent Applications (1)

Application Number Title Priority Date Filing Date
CN201810392315.3A Division CN108614878B (en) 2018-04-27 2018-04-27 Protocol data management method, device, storage medium and system

Publications (2)

Publication Number Publication Date
CN110245144A true CN110245144A (en) 2019-09-17
CN110245144B CN110245144B (en) 2022-02-22

Family

ID=63661240

Family Applications (2)

Application Number Title Priority Date Filing Date
CN201810392315.3A Active CN108614878B (en) 2018-04-27 2018-04-27 Protocol data management method, device, storage medium and system
CN201910681718.4A Active CN110245144B (en) 2018-04-27 2018-04-27 Protocol data management method, device, storage medium and system

Family Applications Before (1)

Application Number Title Priority Date Filing Date
CN201810392315.3A Active CN108614878B (en) 2018-04-27 2018-04-27 Protocol data management method, device, storage medium and system

Country Status (1)

Country Link
CN (2) CN108614878B (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111131474A (en) * 2019-12-27 2020-05-08 山东爱城市网信息技术有限公司 Method, device and medium for managing user protocol based on block chain
CN111241092A (en) * 2019-12-31 2020-06-05 中国科学院昆明植物研究所 Block chain based species publishing system and method
CN111314172A (en) * 2020-01-19 2020-06-19 腾讯科技(深圳)有限公司 Data processing method, device and equipment based on block chain and storage medium
CN113507480A (en) * 2021-07-23 2021-10-15 北京众享比特科技有限公司 Network equipment, network gate equipment and system, and data transmission and reporting method between networks
CN115348262A (en) * 2021-04-27 2022-11-15 腾讯科技(深圳)有限公司 Cross-link operation execution method based on cross-link protocol and network system

Families Citing this family (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109218116A (en) * 2018-11-27 2019-01-15 谭秉逸 A kind of block catenary system and block chain update method
CN109587132B (en) * 2018-11-29 2021-03-26 南京苏宁软件技术有限公司 Data transmission method and device based on alliance chain
TWI665895B (en) * 2018-12-11 2019-07-11 中華電信股份有限公司 Bulletin system and method thereof
JP7235941B2 (en) 2019-03-18 2023-03-09 株式会社野村総合研究所 Information management system and method
CN110099108B (en) * 2019-04-26 2022-04-01 深圳前海微众银行股份有限公司 Block chain event duplicate removal method and device, computer equipment and storage medium
CN110545190B (en) * 2019-09-06 2021-08-13 腾讯科技(深圳)有限公司 Signature processing method, related device and equipment
CN110602222B (en) * 2019-09-18 2022-06-28 腾讯科技(深圳)有限公司 Joint monitoring method and device based on block chain and computer storage medium
CN110597864A (en) * 2019-09-26 2019-12-20 腾讯科技(深圳)有限公司 Block chain-based personal information management method and device
CN111339203B (en) * 2020-02-28 2023-07-14 北京金和网络股份有限公司 Block chain data acquisition method, device and system
CN111310137B (en) * 2020-03-23 2022-08-26 杭州溪塔科技有限公司 Block chain associated data evidence storing method and device and electronic equipment

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140156613A1 (en) * 2012-09-18 2014-06-05 Squash Compression, LLC Methods and Apparatus for Increasing the Efficiency of Electronic Data Storage and Transmission
CN106875303A (en) * 2016-11-15 2017-06-20 阿里巴巴集团控股有限公司 The method and apparatus for realizing electronic protocol signing
CN107579958A (en) * 2017-08-15 2018-01-12 中国联合网络通信集团有限公司 Data managing method, apparatus and system
CN107612695A (en) * 2017-07-31 2018-01-19 深圳市科迈爱康科技有限公司 Knowledge management method, terminal and server based on block chain

Family Cites Families (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20160098723A1 (en) * 2014-10-01 2016-04-07 The Filing Cabinet, LLC System and method for block-chain verification of goods
KR20170045928A (en) * 2015-10-20 2017-04-28 삼성에스디에스 주식회사 Method for managing data using In-Memory Database and Apparatus thereof
CN106022775A (en) * 2016-05-13 2016-10-12 邓迪 File signature method and system based on block chains
CN106504008B (en) * 2016-10-24 2017-12-29 中山大学 A kind of fair contract signature method based on block chain
CN106779385A (en) * 2016-12-07 2017-05-31 北京信任度科技有限公司 The method and system of electronic evidence and user identity are fixed using block chain
CN107181765A (en) * 2017-07-25 2017-09-19 光载无限(北京)科技有限公司 Network digital identity identifying method based on block chain technology

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140156613A1 (en) * 2012-09-18 2014-06-05 Squash Compression, LLC Methods and Apparatus for Increasing the Efficiency of Electronic Data Storage and Transmission
CN106875303A (en) * 2016-11-15 2017-06-20 阿里巴巴集团控股有限公司 The method and apparatus for realizing electronic protocol signing
CN107612695A (en) * 2017-07-31 2018-01-19 深圳市科迈爱康科技有限公司 Knowledge management method, terminal and server based on block chain
CN107579958A (en) * 2017-08-15 2018-01-12 中国联合网络通信集团有限公司 Data managing method, apparatus and system

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111131474A (en) * 2019-12-27 2020-05-08 山东爱城市网信息技术有限公司 Method, device and medium for managing user protocol based on block chain
CN111241092A (en) * 2019-12-31 2020-06-05 中国科学院昆明植物研究所 Block chain based species publishing system and method
CN111241092B (en) * 2019-12-31 2023-05-05 中国科学院昆明植物研究所 Species publishing system and method based on blockchain
CN111314172A (en) * 2020-01-19 2020-06-19 腾讯科技(深圳)有限公司 Data processing method, device and equipment based on block chain and storage medium
CN111314172B (en) * 2020-01-19 2023-12-12 腾讯科技(深圳)有限公司 Block chain-based data processing method, device, equipment and storage medium
CN115348262A (en) * 2021-04-27 2022-11-15 腾讯科技(深圳)有限公司 Cross-link operation execution method based on cross-link protocol and network system
CN115348262B (en) * 2021-04-27 2024-02-20 腾讯科技(深圳)有限公司 Cross-link operation execution method and network system based on cross-link protocol
CN113507480A (en) * 2021-07-23 2021-10-15 北京众享比特科技有限公司 Network equipment, network gate equipment and system, and data transmission and reporting method between networks
CN113507480B (en) * 2021-07-23 2023-10-27 北京众享比特科技有限公司 Network equipment, gateway equipment and system and inter-network data transmission and reporting method

Also Published As

Publication number Publication date
CN108614878B (en) 2023-01-10
CN110245144B (en) 2022-02-22
CN108614878A (en) 2018-10-02

Similar Documents

Publication Publication Date Title
CN110245144A (en) Protocol data management method, device, storage medium and system
CN110602089B (en) Block chain-based medical data storage method, device, equipment and storage medium
CN108696514B (en) Resource collection task management method, device, storage medium and system
CN105721413B (en) Method for processing business and device
WO2021208615A1 (en) User invitation method and apparatus, computer device, and computer readable storage medium
CN109472166A (en) A kind of electronic signature method, device, equipment and medium
CN112711774B (en) Data processing method, device, equipment and storage medium
CN110598482A (en) Block chain-based digital certificate management method, device, equipment and storage medium
CN111475841A (en) Access control method, related device, equipment, system and storage medium
CN110555780B (en) Insurance data processing method, device and equipment based on block chain and storage medium
CN108964903A (en) password storage method and device
CN109146470A (en) Generate the method and device of payment code
CN111355732B (en) Link detection method and device, electronic equipment and storage medium
CN110597924B (en) Block chain-based user identification processing method, device, equipment and storage medium
CN112765684B (en) Block chain node terminal management method, device, equipment and storage medium
CN111404991A (en) Method, device, electronic equipment and medium for acquiring cloud service
CN110401648A (en) Obtain method, apparatus, electronic equipment and the medium of cloud service
CN110826103A (en) Block chain-based document authority processing method, device, equipment and storage medium
CN107959727A (en) The method and device communicated between webpage and client
CN111212074B (en) Blockchain-based qualification identification method, device, equipment and storage medium
CN111970298B (en) Application access method and device, storage medium and computer equipment
CN110727894A (en) Target material setting method, device, equipment and storage medium
CN113630405A (en) Network access authentication method and device, electronic equipment and storage medium
CN114722262A (en) Order information query system, and query method, device and equipment of order information
CN111277608A (en) Block chain-based security risk information management method, device, equipment and medium

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
REG Reference to a national code

Ref country code: HK

Ref legal event code: DE

Ref document number: 40009329

Country of ref document: HK

GR01 Patent grant
GR01 Patent grant