Disclosure of Invention
The embodiment of the application provides a method and a system for authorizing a legal person by a personal certificate based on a block chain, which are used for solving the technical problems that the data security cannot be ensured in the process of authorizing the legal person on line by the personal certificate and the process of using the authorized personal certificate by the legal person.
In one aspect, an embodiment of the present application provides a method for authorizing a legal person based on a personal certificate of a blockchain, where the method includes: deploying a block chain platform of the individual certificate authorized legal person based on the block chain framework; wherein, the individual certificate authorizes legal person's block chain platform includes: personal nodes, corporate nodes, business nodes; the block chain platform of the personal certificate authorization legal person receives the personal electronic certificate sent by the personal node and stores the personal electronic certificate in an electronic certificate library; the personal certificate authorization legal system block chain platform generates a first personal electronic certificate card at a legal system node based on a personal electronic certificate, and generates a second personal electronic certificate card at the personal node; and under the condition that the legal person node triggers the first personal electronic certificate card based on the first trigger, generating an authorization code so that the service node extracts the personal electronic certificate in the electronic certificate library based on the authorization code.
The method for authorizing the legal person through the personal certificate based on the block chain is based on the block chain technology, so that after the personal certificate is electronized, the safety of scene data of the personal certificate authorized to the legal person and the authorized personal certificate used by the legal person can be ensured, and the certificate authorization process and the authorized used process of the certificate can be traced. In addition, the method for authorizing the legal person on the personal certificate based on the block chain is convenient and quick to use and high in reproducibility.
In an implementation manner of the present application, the method for authorizing a personal certificate by a corporate blockchain platform receives a personal electronic certificate sent by a personal node, and stores the personal electronic certificate in an electronic certificate library, specifically including: after passing through a first preset verification mode in the personal certificate authorization legal block chain platform, the personal node sends a personal certificate authorization application and a personal electronic certificate to the personal certificate authorization legal block chain platform; the personal certificate authorization legal block chain platform sends first confirmation information to legal person nodes according to personal certificate authorization application; after receiving second confirmation information sent by the legal person node based on the first confirmation information, the personal certificate authorization legal person block chain platform stores the personal electronic certificate in an electronic certificate library; the first confirmation information is used for the legal person node to confirm the personal certificate authorization application, and the second confirmation information is used for the personal certificate authorization legal person block chain platform to confirm that the legal person node agrees with the personal certificate authorization application.
In one implementation of the present application, after storing the personal electronic certificate in the electronic certificate repository, the method further comprises: and the block chain platform of the personal certificate authorization legal person generates a first authorization record and sends the first authorization record to the personal node.
In an implementation manner of the present application, the block chain platform for authorizing a legal person based on a personalized electronic certificate generates a first personalized electronic certificate card at a legal person node and a second personalized electronic certificate card at the legal person node, which specifically includes: the block chain platform of the personal certificate authorization legal person encrypts the personal electronic certificate and generates an encrypted identifier; the encrypted identification is used for determining the personal electronic certificate and decrypting the personal electronic certificate; based on the encrypted identification, a first personal electronic credential card is generated at the legal node and a second personal electronic credential card is generated at the personal node.
In one implementation manner of the present application, after generating the first personal electronic certificate card at the legal node based on the encrypted identifier, the method further includes: displaying the related information of the personal certificate under the condition that the legal person node triggers the first personal electronic certificate card based on the second trigger; wherein the related information of the personalized document comprises any one or more of the following items: personal information, registration information of the personalized certificate, and authorization information of the personalized certificate.
In an implementation manner of the present application, in a case that a legal person node triggers a first personal electronic certificate card based on a first trigger, an authorization code is generated, so that a service node extracts a personal electronic certificate in an electronic certificate library based on the authorization code, which specifically includes: generating an authorization code under the condition that the legal person node triggers the first personal electronic certificate card based on the first trigger; the service node sends a verification application to the service node based on the authorization code; and after the legal person node authorizes a second preset verification mode in the legal person block chain platform through the personal certificate, the service node extracts the personal electronic certificate in the electronic certificate library.
In an implementation manner of the present application, after the legal person node authorizes the second preset verification manner in the legal person blockchain platform through the personal certificate, the service node extracts the personal electronic certificate in the electronic certificate library, which specifically includes: after authorizing a second preset verification mode in the legal block chain platform through the personal certificate, the legal node sends the encrypted identification in the first personal electronic certificate card to the service node; and the service node determines the personal electronic certificate in the electronic certificate library based on the encrypted identifier, and decrypts and extracts the personal electronic certificate.
In one implementation manner of the present application, after the service node extracts the personal electronic certificate in the electronic certificate library, the method further includes: and the personal certificate authorization legal block chain platform generates a second authorization record and sends the second authorization record to the personal node and the legal node.
In one implementation of the present application, the method further comprises: and under the condition that the personal node triggers a second personal electronic certificate card based on the third trigger, revoking the authority of the legal node on the personal electronic certificate.
On the other hand, the embodiment of the present application further provides a system for authorizing a legal person based on a block chain through a personal certificate, where the system includes: the deployment module is used for deploying the individual certificate authorized legal block chain platform based on the block chain framework; wherein, the individual certificate authorizes legal person's block chain platform includes: personal nodes, corporate nodes, business nodes; the receiving module is used for receiving the personal electronic certificate sent by the personal node by the personal certificate authorization legal system block chain platform and storing the personal electronic certificate in an electronic certificate library; the generation module is used for generating a first person electronic certificate card at a legal person node based on the personal electronic certificate by the personal certificate authorization legal person block chain platform and generating a second person electronic certificate card at the personal node; and the triggering module is used for generating an authorization code under the condition that the legal person node triggers the first personal electronic certificate card based on the first trigger so as to enable the business node to extract the personal electronic certificate in the electronic certificate library based on the authorization code.
Detailed Description
In order to make the objects, technical solutions and advantages of the present application more clear, the technical solutions of the present application will be clearly and completely described below with reference to the specific embodiments of the present application and the accompanying drawings. It should be apparent that the described embodiments are only some of the embodiments of the present application, and not all of the embodiments. All other embodiments, which can be derived by a person skilled in the art from the embodiments given herein without making any creative effort, shall fall within the protection scope of the present application.
The block chain technology can just solve the problem of certificate data security, not only can ensure data security, but also can well meet the requirements of an individual authorized legal person on using the electronic certificate, inquiring authorization and using records. Therefore, it is an implementable solution to integrate blockchain technology into the process of authorizing legal use of personalized certificates.
The embodiment of the application provides a method and a system for authorizing a legal person by a personal certificate based on a block chain, which are used for solving the technical problems that the data security cannot be ensured in the process of authorizing the legal person on line by the personal certificate and the process of using the authorized personal certificate by the legal person.
The technical solutions proposed in the embodiments of the present application are described in detail below with reference to the accompanying drawings.
Fig. 1 is a flowchart of a method for authorizing a legal person based on a block chain according to an embodiment of the present application.
As shown in fig. 1, a method for authorizing a legal person based on a block chain provided in an embodiment of the present application specifically includes the following steps:
step 101, deploying a block chain platform of a personal certificate authorized legal person based on a block chain framework; wherein, the individual certificate authorizes legal person's block chain platform includes: personal nodes, corporate nodes, business nodes.
The blockchain is a novel application mode of computer technologies such as distributed data storage, point-to-point transmission, consensus mechanism, encryption algorithm and the like, and is essentially a decentralized database.
A personalized certificate authority legal blockchain platform can be deployed based on the blockchain framework. The blockchain frame may be any frame capable of implementing the corresponding functions of the embodiments of the present application, such as bitcoin, taifang, Fabric, Corda, and the like.
In one embodiment of the present application, the blockchain points in the personalized certificate authority legal blockchain platform include, but are not limited to: personal nodes, corporate nodes, business nodes. The personal node and the legal node realize the process of authorizing the legal person on line by the personal certificate, and the legal person node and the service node realize the process of using the authorized personal certificate by the legal person.
In one embodiment of the application, the personal node can be any one personal account registered on a personal certificate authority legal blockchain platform; the legal node can be any enterprise account registered on the individual certificate authorization legal blockchain platform; the service node can be various service systems, and the service systems can be connected into the block chain platform of the personal certificate authority legal person through reserved interfaces.
And 102, receiving the personal electronic certificate sent by the personal node by the personal certificate authorization legal blockchain platform, and storing the personal electronic certificate in an electronic certificate library.
In one embodiment of the application, when the personal node authorizes the personal certificate for the legal node, a personal certificate authorization application is first initiated.
Specifically, the individual node searches for a legal person to be authorized on the individual certificate authorization legal person block chain platform based on the complete name of the legal person or the social credit code of the legal person, and initiates an individual certificate authorization application to the individual certificate authorization legal person block chain platform after confirming the information of the legal person to be authorized. The personal certificate authorization application firstly requires that a personal node passes through a first preset verification mode in a personal certificate authorization legal block chain platform; the first preset verification mode comprises but is not limited to face recognition, fingerprint recognition, identification card number verification, mobile phone short message verification and the like. After passing through the first preset verification mode, the personal node sends a personal certificate authorization application to the personal certificate authorization legal block chain platform and uploads the personal electronic certificate to the personal certificate authorization legal block chain platform. The application for authorizing the personal certificate of the legal node includes but is not limited to: personal information, registration information of personal certificates, first preset authentication mode information of individuals (such as face authentication images, fingerprint images, identification card number authentication records, short message authentication records and the like), complete names of legal persons to be authorized, social credit codes of the legal persons to be authorized, authorization time limits of the personal certificates and the like; the personal electronic certificate can be an official authorized anti-counterfeiting electronic certificate, and can also be an electronic scanning piece or an electronic photo of the personal certificate.
In one embodiment of the application, after the personalized node sends the personalized certificate authorization application and the personalized electronic certificate to the personalized certificate authorization legal blockchain platform, the personalized certificate authorization legal blockchain platform determines the legal person node according to the complete name of the legal person or the social credit code of the legal person contained in the personalized certificate authorization application, and sends first confirmation information to the confirmed legal person node. The first confirmation information includes but is not limited to personal information for initiating a personal certificate authorization application and registration information of the personal certificate. The legal person node can determine to approve the personal certificate authorization application or reject the personal certificate authorization application according to the first confirmation information. It should be noted that, the method of agreeing to or rejecting the application for personal certificate authorization may be to directly set a trigger button capable of triggering agreement or rejection on the first confirmation information interface; in addition, when the personal certificate authorization application is approved or refused, the reason of the approval or the refusal can be noted.
In one embodiment of the application, in the case that the legal node approves the personal certificate authorization application, the legal node sends second confirmation information (i.e., information approving the personal certificate authorization application) to the personal certificate authorization legal blockchain platform and the personal node. And after the personal certificate authority legal system blockchain platform receives the second confirmation information, storing the personal electronic certificate in an electronic certificate library. And under the condition that the legal person node rejects the personal certificate authorization application, the legal person node sends third confirmation information (namely information for rejecting the personal certificate authorization application) to the block chain platform of the legal person authorized by the personal certificate and the personal node. And after the block chain platform of the personal certificate authorization legal receives the second confirmation information, ending the personal certificate authorization application.
In one embodiment of the application, after the personal certificate authority legal blockchain platform stores the personal electronic certificate in the electronic certificate library, a first authorization record is generated, archived and sent to the personal node. The first authorization record includes, but is not limited to, each process record and time record of the personal certificate authorization application.
And 103, generating a first personal electronic certificate card at a legal person node and a second personal electronic certificate card at the personal node by the personal certificate authorization legal person blockchain platform based on the personal electronic certificate.
In one embodiment of the present application, the pin authorization corporate blockchain platform also encrypts the pin after it is stored in the electronic certificate repository.
Specifically, when the personal electronic certificate is an officially authorized anti-counterfeiting electronic certificate, only encryption processing needs to be carried out on the personal electronic certificate so as to avoid adverse effects caused by extraction of the personal electronic certificate by unauthorized legal nodes or business nodes; when the personal electronic certificate is an electronic scanning piece or an electronic photo, the electronic scanning piece or the electronic photo of the personal certificate needs to be authenticated before the personal electronic certificate is encrypted, so that the personal electronic certificate is prevented from being falsely used. The authentication processing mode of the electronic scanning piece or the electronic photo of the personal certificate can be to add anti-counterfeiting watermark or anti-counterfeiting identification code and the like to the electronic scanning piece or the electronic photo. In the pair, an encrypted identification is generated for the personal electronic certificate. Wherein the encrypted identification is used for determining the personal electronic certificate and decrypting the personal electronic certificate; the encrypted identifier and the encrypted electronic personalized certificate may be stored in an electronic certificate repository together.
In one embodiment of the application, after the electronic personalized certificate is encrypted, the electronic personalized certificate authorization corporate blockchain platform generates a first electronic personalized certificate card at a corporate node and a second electronic personalized certificate card at a personal node based on the encrypted identifier. The first personal electronic certificate card and the second personal electronic certificate card are both in the form of personal electronic certificates (such as electronic bus cards), the first personal electronic certificate card is used for displaying authorized personal electronic certificates at the legal node and is used for the legal node to use the first personal electronic certificate card, and the second personal electronic certificate card is used for displaying personal electronic certificates of authorized legal persons at the personal node. The first personal electronic certificate card can be displayed in a legal person node in a list form; it is understood that one legal node may be authorized with several first personal electronic credential cards; wherein, several first personal electronic certificate cards can come from one personal node or several personal nodes. The second personal electronic certificate card can also be displayed in a personal node in a list form; it is understood that one personalized node may authorize several personal electronic documents to one legal node, several personal electronic documents to several legal nodes, and one personal electronic document to several legal nodes.
In an embodiment of the application, a personal certificate related information trigger button can be arranged on the first personal electronic certificate card, and when the legal node triggers the personal certificate related information trigger button (namely, under the condition that the legal node triggers the first personal electronic certificate card based on the second trigger), the related information of the personal certificate can be displayed and displayed; wherein the related information of the personalized document comprises any one or more of the following items: personal information, registration information of the personalized document, authorization information of the personalized document, and the like.
In one embodiment of the application, the personal node can also revoke the personal electronic certificate still within the authorization period after authorizing the legal person with the personal electronic certificate.
Specifically, an authorization revocation trigger button may be provided on the second personal electronic certificate card, and when the personal node triggers the authorization trigger button (that is, in a case where the personal node triggers the second personal electronic certificate card based on the third trigger), the personal electronic certificate still in the authorization deadline may be directly revoked. And after the personal certificate authorization legal block chain platform receives a revocation signal sent by the personal node, sending a personal certificate authorization revocation notice to the legal node. In addition, the block chain platform of the personal certificate authority legal person can delete the corresponding encrypted identification stored in the first personal electronic certificate card or directly delete the first personal electronic certificate card.
And 104, under the condition that the legal person node triggers the first personal electronic certificate card based on the first trigger, generating an authorization code based on the first personal electronic certificate card so that the business node extracts the personal electronic certificate in the electronic certificate library based on the authorization code.
In an embodiment of the application, an authorization code trigger button is disposed on the first personal electronic certificate card, and the authorization code is generated when the authorization code trigger button is triggered by the legal person node (i.e., when the first personal electronic certificate card is triggered by the legal person node based on the first trigger). The service node can enter a personal electronic certificate verification application interface of the personal certificate authorized legal system blockchain platform by scanning the authorization code, and the service node can submit a personal electronic certificate verification application to the personal certificate authorized legal system blockchain platform at the personal electronic certificate verification application interface.
After the service node submits a personal electronic certificate verification application to the personal certificate authorized legal system block chain platform, the personal electronic certificate authorized legal system block chain platform firstly initiates personal electronic certificate verification to the legal system node, and the personal electronic certificate verification of the legal system node is a second preset verification mode in the personal certificate authorized legal system block chain platform; the second preset verification mode includes but is not limited to face recognition verification, fingerprint recognition verification, identity card number verification, mobile phone short message verification, social credit code verification and the like.
In one embodiment of the application, since the first personal electronic certificate card is generated based on the encrypted identification, the first personal electronic certificate card stores the corresponding encrypted identification. Therefore, after the legal person node passes through the second preset verification mode, the legal person node can send the encrypted identifier in the first personal electronic certificate card to the service node. And the service node determines the personal electronic certificate corresponding to the encrypted identifier in the electronic certificate library based on the encrypted identifier sent by the legal person node, and decrypts and extracts the personal electronic certificate, thereby completing the verification of the personal electronic certificate.
In an embodiment of the application, after the legal person node passes the second preset verification mode, the legal person node may further send a storage address of the encrypted identifier corresponding to the electronic certificate card in the electronic certificate library to the service node, and the service node obtains the encrypted identifier of the to-be-verified personal electronic certificate based on the storage address. Then, the personal electronic certificate corresponding to the encrypted identification is determined in the electronic certificate library through the encrypted identification, and the personal electronic certificate is decrypted and extracted to complete the verification of the personal electronic certificate.
In one embodiment of the application, after the service node verifies the personalized electronic document, the personalized document authorization method blockchain platform also generates a second authorization record, archives the second authorization record and sends the second authorization record to the personal node. The second authorization record includes but is not limited to all process records and time records of triggering the first personal electronic certificate card by the legal node, all process records and time records of verifying the personal electronic certificate by the service node.
Based on the same inventive concept, the embodiment of the application also provides a system for authorizing a legal person based on the personal certificate of the blockchain, and the schematic structural diagram of the system is shown in fig. 2.
Fig. 2 is a schematic structural diagram of a system for authorizing a legal person based on a block chain according to an embodiment of the present application. As shown in fig. 2, a system 200 for authorizing a legal person based on a block chain according to an embodiment of the present application includes: a deployment module 201, a receiving module 202, a generating module 203, and a triggering module 204.
Those skilled in the art will appreciate that the system architecture of the blockchain-based personal certificate authority shown in FIG. 2 does not constitute a limitation to the system of blockchain-based personal certificate authority, and in fact, the blockchain-based system of the blockchain-based personal certificate authority may include more or fewer components than shown in FIG. 2, or some components in combination, or an arrangement of different components.
In an embodiment of the present application, the deployment module 201 is configured to deploy a personal certificate authority legal blockchain platform based on a blockchain framework; wherein, the individual certificate authorizes legal person's block chain platform includes: personal nodes, corporate nodes, business nodes; the receiving module 202 is used for the block chain platform of the individual certificate authority legal person to receive the individual electronic certificate sent by the individual node and store the individual electronic certificate in the electronic certificate library; the generating module 203 is used for the personal certificate authorization legal block chain platform to generate a first personal electronic certificate card at a legal node based on the personal electronic certificate and generate a second personal electronic certificate card at the personal node; the triggering module 204 is configured to generate an authorization code when the first personal electronic certificate card is triggered by the legal person node based on the first trigger, so that the service node extracts the personal electronic certificate in the electronic certificate repository based on the authorization code.
The embodiments in the present application are described in a progressive manner, and the same and similar parts among the embodiments can be referred to each other, and each embodiment focuses on the differences from the other embodiments. In particular, as for the apparatus embodiment, since it is substantially similar to the method embodiment, the description is relatively simple, and for the relevant points, reference may be made to the partial description of the method embodiment.
It should also be noted that the terms "comprises," "comprising," or any other variation thereof, are intended to cover a non-exclusive inclusion, such that a process, method, article, or apparatus that comprises a list of elements does not include only those elements but may include other elements not expressly listed or inherent to such process, method, article, or apparatus. Without further limitation, an element defined by the phrase "comprising an … …" does not exclude the presence of other like elements in a process, method, article, or apparatus that comprises the element.
The above description is only an example of the present application and is not intended to limit the present application. Various modifications and changes may occur to those skilled in the art. Any modification, equivalent replacement, improvement, etc. made within the spirit and principle of the present application should be included in the scope of the claims of the present application.