CN1658202A - Large disclosed internet voting system and method - Google Patents

Large disclosed internet voting system and method Download PDF

Info

Publication number
CN1658202A
CN1658202A CN 200410004643 CN200410004643A CN1658202A CN 1658202 A CN1658202 A CN 1658202A CN 200410004643 CN200410004643 CN 200410004643 CN 200410004643 A CN200410004643 A CN 200410004643A CN 1658202 A CN1658202 A CN 1658202A
Authority
CN
China
Prior art keywords
ballot paper
voter
ballot
center
signature
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN 200410004643
Other languages
Chinese (zh)
Inventor
武传坤
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Individual filed Critical Individual
Priority to CN 200410004643 priority Critical patent/CN1658202A/en
Publication of CN1658202A publication Critical patent/CN1658202A/en
Pending legal-status Critical Current

Links

Images

Abstract

This invention discloses a method suitable for large-scale vote system by using internet. It can record the degree of the voter while make sure the security of the information. Therefore repeat vote will be checked out by system, and threatening or bribe will make no sense. The voter can also change the information during the polling day. The arithmetic which used for protecting data and for personal identification can be choosing random from open source one. The system can help to ensure the safety of the vote even if any part (the voter or the authoritative institution) cheat. Considering manual vote is adopted in many place, it will take some time for people to accept voting by internet. The invention is compatible of manual vote. So if an unexpected accident palsies the system, manual work can serve as a remedy.

Description

Large-scale the Internet ballot system and the method for signing
Technical field
The present invention relates to electronic voting system and method, more specifically relate to a kind of be applicable to large-scale election and can hold craft vote in sign the Internet electronic voting system and the method for one.
Background technology
A typical case of open ballot is exactly an obligatory voting, and wherein legal voter must participate in ballot, otherwise will be subjected to certain punishment.Large-scale obligatory voting system expends a large amount of man power and materials when using traditional manual ballot, and makes troubles to the voter, particularly live in the isolated area for those, or often go on business, or healthy ill-conditioned people is all the more so.
The develop rapidly of computer software and hardware and computer network has promoted the development of ecommerce E-Government.Present scientific and technological level is quite ripe, and the ballot that utilizes the Internet to finish extensive election is placed on the agenda by many government departments.If can utilize the Internet to finish ballot, then both made things convenient for the voter, save substantial contribution from long plan for the future again.
But for some critical elections, fears are entertained that the Internet is safety inadequately, or reliable inadequately, may have beyond thought accident to take place.For ballot, also there is the doubt of repeatedly voting and forcing or bribing ballot by network.
At present, many achievements in research have been arranged aspect network voting, had plenty of a certain particular algorithm about ballot, the invention of most related fields is managing hardware devices about how, and to the implementation of high level consider few.And those inventions of considering high-rise implementation security are all about secret ballot, force or bribe also not enough that the problem of ballot considers for solution.
Summary of the invention
To the objective of the invention is the shortcoming that exists in the above-mentioned prior art in order eliminating, following system and method to be provided for this reason:
The invention provides a kind of large-scale the Internet ballot system of signing, this system comprises: a ballot paper license distribution subsystem that is made of ballot paper license management center and a plurality of ballot paper license distribution agent unit; An electronics ballot paper signature subsystem that constitutes by electronics ballot paper signature center and a plurality of electronics ballot paper signature unit; An electronics ballot paper ticket checking subsystem that constitutes by electronics ballot paper ticket checking center and online communique and a plurality of electronics ballot paper ticket checking unit; With voter's identity data records center, it is characterized in that:
In described ballot paper license distribution subsystem: described ballot paper license distribution agent unit, the session key of the encryption that voter's identity data, described ballot paper license distribution agent identity data and voter are chosen, through digital signature with after encrypting, be sent to described ballot paper license management center in the lump; The above-mentioned data that the check of described ballot paper license management center receives, illegal or when the voter is labeled as " closing " in the database of described ballot paper administrative center when data, refuse this request, otherwise, for the voter that asked for the ballot paper licence fetches this voter's ballot paper licence from the database of described ballot paper administrative center, for the voter who never asked for the ballot paper licence signs a new ballot paper licence and is recorded in the database of described ballot paper administrative center; Described ballot paper license management center, ballot paper licence, voter's identity data and the ballot paper license distribution agent identity data that to cross with the session key that the voter chooses, through digital signature with after encrypting, be sent to described ballot paper license distribution agency in the lump; Described ballot paper license distribution agency is with above-mentioned encryption ballot paper licence;
In described electronics ballot paper signature subsystem: described electronics ballot paper signature unit after encrypting, is sent to described electronics ballot paper signature center with voter's ballot paper licence, the ballot paper that has blinded and ballot paper version number in the lump; The above-mentioned data that the check of described electronics ballot paper signature center receives, incorrect or when this ballot paper licence is labeled as " closing " in the database at described ballot paper signature center at the ballot paper licence, refuse this request, otherwise sign a ballot card for the voter according to the ballot paper license information, at the ballot paper licence is under the situation of new signature, this ballot paper licence of record in the database at described electronics ballot paper signature center; Signing to the ballot paper and the ballot paper version number that have blinded in described electronics ballot paper signature center, sends described electronics ballot paper signature unit to after encrypting together with the ballot card of signing and issuing then; The mandate ballot paper that contains version number and the ballot that obtain the described electronics ballot paper signature center signature of voter's request after above-mentioned ciphered data is deciphered in described electronics ballot paper signature unit are demonstrate,proved;
In described electronics ballot paper ticket checking subsystem: described electronics ballot paper ticket checking unit with voter's ballot card, voter's identity data of containing the mandate ballot paper of version number and having blinded, after encrypting, is sent to described electronics ballot paper ticket checking center in the lump; The above-mentioned data that the check of described electronics ballot paper ticket checking center receives, when voter illegal when data or hold this ballot card in the database at described electronics ballot paper ticket checking center is labeled as " closing ", refuse this request, otherwise ticket checking is carried out at described electronics ballot paper ticket checking center, and writes down this ballot card, ballot paper and ballot paper version number in its database; Described electronics ballot paper ticket checking center is done voter's identity data to be sent to described electronics ballot paper ticket checking unit behind the blind signature; Described electronics ballot paper ticket checking center is obtained to the digital signature of voter's identity and send it to described voter's identity data records center in described electronics ballot paper ticket checking unit from the blind signature at described electronics ballot paper ticket checking center; Described electronics ballot paper ticket checking center is published in the above-mentioned voter's identity data that has blinded on the described online communique;
Described voter's identity data records center is checked the digital signature of described electronics ballot paper ticket checking center to voter's identity, under the correct situation of check digit signature, and record voter's identity data.
The above-mentioned large-scale the Internet ballot system of signing is characterized in that:
Described ballot paper licence comprises a message that is made of voter's identity information, timestamp and the term of validity and the described ballot paper license management center digital signature to this message.
The above-mentioned large-scale the Internet ballot system of signing is characterized in that:
Described ballot paper licence comprises a message that is made of voter's identity information, a certain special election information, timestamp and the term of validity and the described ballot paper license management center digital signature to this message.
The present invention also provides a kind of large-scale the Internet voting method of signing, and uses the system of this method to comprise: a ballot paper license distribution subsystem that is made of ballot paper license management center and a plurality of ballot paper license distribution agent unit; An electronics ballot paper signature subsystem that constitutes by electronics ballot paper signature center and a plurality of electronics ballot paper signature unit; An electronics ballot paper ticket checking subsystem that constitutes by electronics ballot paper ticket checking center, online communique and a plurality of electronics ballot paper ticket checking unit; With voter's identity data records center, it is characterized in that:
The step of obtaining the ballot paper licence comprises:
The described ballot paper license distribution of a agent unit uses the public-key cryptography at described ballot paper license management center that the session key that the voter chooses is encrypted, and obtains an encrypted session key;
The described ballot paper license distribution of b agent unit carries out digital signature to voter's identity data, described ballot paper license distribution agent identity data and above-mentioned encrypted session key;
The described ballot paper license distribution of c agent unit sends described ballot paper license management center to after with the above-mentioned data encryption of carrying out digital signature, described ballot paper license management center compares the data that receive and the related data of its database, the judgement that the legitimacy of the identity data of voter's identity data and described ballot paper license distribution agent unit is or denys;
D is being judged as under the situation of "Yes", and described ballot paper license management center utilizes above-mentioned session key that one ballot paper licensc e data is encrypted, and sends described ballot paper license distribution agent unit to;
After utilizing above-mentioned session key to the ballot paper licence deciphering of encrypting, the described ballot paper license distribution of e agent unit obtains the ballot paper licence of voter's request;
Electronics ballot paper signature step comprises:
The ballot paper version number that a specific ballot paper and that the voter chooses produces is at random accepted in the described electronics ballot paper of f signature unit;
The described electronics ballot paper of g signature unit is sent to electronics ballot paper signature center after voter's ballot paper licence, the ballot paper that has blinded and ballot paper version number are encrypted, to obtain the blind signed data of described ballot paper signature center to above-mentioned ballot paper and ballot paper version number;
H is being verified as under the situation of "Yes", demonstrate,proves according to ballot paper licence signature one ballot, passes to described electronics ballot paper signature unit after encrypting in the lump together with the data behind the above-mentioned signature;
After deciphering above-mentioned enciphered data, the described electronics ballot paper signature of i unit obtains mandate ballot paper, ballot paper version number and the ballot card of the described electronics ballot paper signature center signature of voter's request;
The step of electronics ballot paper ticket checking comprises:
The described electronics ballot paper of j ticket checking unit is sent to electronics ballot paper ticket checking center after voter's mandate ballot paper, ballot card and voter's identity data of having blinded are encrypted;
The described electronics ballot paper of k ticket checking center is to the ballot card and authorize ballot paper to carry out the validity judgement;
L is being judged as under the situation of "Yes", and ticket checking is carried out at described electronics ballot paper ticket checking center, and the blind signature of voter's identity data is sent to described electronics ballot paper ticket checking unit;
Described electronics ballot paper ticket checking center is obtained to the digital signature of voter's identity and send it to described voter's identity data records center in the described electronics ballot paper of m ticket checking unit from the blind signature at described electronics ballot paper ticket checking center; Described electronics ballot paper ticket checking center is published in the above-mentioned voter's identity data that has blinded on the described online communique;
The step of voter's identity record comprises:
The described voter's identity data of n records center is checked the digital signature of described electronics ballot paper ticket checking center to voter's identity, under the correct situation of check digit signature, and record voter's identity data.
The above-mentioned large-scale the Internet voting method of signing is characterized in that:
Further comprise in the described step of obtaining the ballot paper licence:
In ballot paper license distribution processing procedure, described ballot paper license management center checks this voter whether to ask for the ballot paper licence, if then take out original ballot paper licence of this voter from the database of described ballot paper administrative center; Otherwise, for this voter signs a new ballot paper licence and is recorded in the database of described ballot paper administrative center.
The above-mentioned a kind of large-scale the Internet voting method of signing is characterized in that:
Further comprise in the step of described electronics ballot paper ticket checking:
If ballot card data are under the situation about using for the first time, described electronics ballot paper ticket checking center in its database, write down this ballot demonstrate,prove data, the ballot paper of throwing and ballot paper version number, and the voter's identity data that blinds is published on the described online communique;
If ballot card data are not under the situation about using for the first time, whether described electronics ballot paper ticket checking center new ballot paper version number and the master this shop of checking satisfies predefined numerical relation, be judged as under the situation that is, upgrade the ballot paper of throwing, more ballot paper data in the new record and ballot paper version number, otherwise will not adopt new ballot.
The above-mentioned a kind of large-scale the Internet voting method of signing is characterized in that:
When licensc e data administrative center, or electronics ballot paper signature center, or electronics ballot paper ticket checking center, when receiving a request, and find that the corresponding data of this request have been labeled as when closing, just directly this request of refusal.
The present invention also provides another large-scale the Internet ballot system of signing, and this system comprises: a ballot paper license distribution subsystem that is made of ballot paper license management center and a plurality of ballot paper license distribution agent unit; An electronics ballot paper signature subsystem that constitutes by electronics ballot paper signature center and a plurality of electronics ballot paper signature unit; An electronics ballot paper ticket checking subsystem that constitutes by electronics ballot paper ticket checking center, online communique and a plurality of electronics ballot paper ticket checking unit; With voter's identity data records center, it is characterized in that:
When the voter carries out electronic voting:
In described ballot paper license distribution subsystem: described ballot paper license distribution agent unit, the session key of the encryption that voter's identity data, described ballot paper license distribution agent identity data and voter are chosen, through digital signature with after encrypting, be sent to described ballot paper license management center in the lump; The above-mentioned data that the check of described ballot paper license management center receives, illegal or when the voter is labeled as " closing " in the database of described ballot paper administrative center when data, refuse this request, otherwise, for the voter that asked for the ballot paper licence fetches this voter's ballot paper licence from the database of described ballot paper administrative center, for the voter who never asked for the ballot paper licence signs a new ballot paper licence and is recorded in the database of described ballot paper administrative center; Described ballot paper license management center, ballot paper licence, voter's identity data and the ballot paper license distribution agent identity data that to cross with the session key that the voter chooses, through digital signature with after encrypting, be sent to described ballot paper license distribution agency in the lump; Described ballot paper license distribution agency delivers the voter with the ballot paper licence of above-mentioned encryption, obtains the ballot paper licence after voter's deciphering;
In described electronics ballot paper signature subsystem: described electronics ballot paper signature unit after encrypting, is sent to described electronics ballot paper signature center with voter's ballot paper licence, the ballot paper that has blinded and ballot paper version number in the lump; The above-mentioned data that the check of described electronics ballot paper signature center receives, incorrect or when this ballot paper licence is labeled as " closing " in the database at described ballot paper signature center at the ballot paper licence, refuse this request, otherwise sign a ballot card for the voter according to the ballot paper license information, at the ballot paper licence is under the situation of new signature, this ballot paper licence of record in the database at described electronics ballot paper signature center; Signing to the ballot paper and the ballot paper version number that have blinded in described electronics ballot paper signature center, sends described electronics ballot paper signature unit to after encrypting together with the ballot card of signing and issuing then; The mandate ballot paper that contains version number and the ballot that obtain the described electronics ballot paper signature center signature of voter's request after above-mentioned ciphered data is deciphered in described electronics ballot paper signature unit are demonstrate,proved;
In described electronics ballot paper ticket checking subsystem: described electronics ballot paper ticket checking unit with voter's ballot card, voter's identity data of containing the mandate ballot paper of version number and having blinded, after encrypting, is sent to described electronics ballot paper ticket checking center in the lump; The above-mentioned data that the check of described electronics ballot paper ticket checking center receives, when voter illegal when data or hold this ballot card in the database at described electronics ballot paper ticket checking center is labeled as " closing ", refuse this request, otherwise normal ticket checking and record this ballot card, ballot paper and ballot paper version number in the database at described electronics ballot paper ticket checking center; Described electronics ballot paper ticket checking center is done voter's identity data to be sent to described electronics ballot paper ticket checking unit behind the blind signature; Described electronics ballot paper ticket checking center is obtained to the digital signature of voter's identity and send it to described voter's identity data records center in described electronics ballot paper ticket checking unit from the blind signature at described electronics ballot paper ticket checking center; Described electronics ballot paper ticket checking center is published in the above-mentioned voter's identity data that has blinded on the described online communique;
Described voter's identity data records center is checked the digital signature of described electronics ballot paper ticket checking center to voter's identity, under the correct situation of check digit signature, and record voter's identity data.
When the voter carries out the craft ballot:
Described ballot paper license distribution agent unit, the identity data that utilizes the voter is to the manual ballot permission of described ballot paper license management center requests, described ballot paper license management center is confirming that the voter is allowed under the situation of manual ballot, in the database at described ballot paper license management center, the voter is labeled as " closing ", and incites somebody to action the ballot paper licence of described thereafter ballot paper license management center signature successively by described electronics ballot paper signature center and described electronics ballot paper ticket checking center, the ballot card of described electronics ballot paper signature center signature is labeled as " closing " successively; Under the registered situation of described ballot card, deduct the ballot of last time.
The above-mentioned large-scale the Internet ballot system of signing is characterized in that:
Described ballot paper licence comprises a message that is made of voter's identity information, timestamp and the term of validity and the described ballot paper license management center digital signature to this message.
The above-mentioned large-scale the Internet ballot system of signing is characterized in that:
Described ballot paper licence comprises a message that is made of voter's identity information, a certain special election information, timestamp and the term of validity and the described ballot paper license management center digital signature to this message.
The present invention also provides another large-scale the Internet voting method of signing, and uses the system of this method to comprise: a ballot paper license distribution subsystem that is made of ballot paper license management center and a plurality of ballot paper license distribution agent unit; An electronics ballot paper signature subsystem that constitutes by electronics ballot paper signature center and a plurality of electronics ballot paper signature unit; An electronics ballot paper ticket checking subsystem that constitutes by electronics ballot paper ticket checking center, online communique and a plurality of electronics ballot paper ticket checking unit; With voter's identity data records center, it is characterized in that:
When the voter carries out electronic voting:
The step of obtaining the ballot paper licence comprises:
The described ballot paper license distribution of a agent unit uses the public-key cryptography at described ballot paper license management center that the session key that the voter chooses is encrypted, and obtains an encrypted session key;
The described ballot paper license distribution of b agent unit carries out digital signature to voter's identity data, described ballot paper license distribution agent identity data and above-mentioned encrypted session key;
The described ballot paper license distribution of c agent unit sends described ballot paper license management center to after with the above-mentioned data encryption of carrying out digital signature, described ballot paper license management center compares the data that receive and the related data of its database, the judgement that the legitimacy of the identity data of voter's identity data and described ballot paper license distribution agent unit is or denys;
D is being judged as under the situation of "Yes", and described ballot paper license management center utilizes above-mentioned session key that one ballot paper licensc e data is encrypted, and sends described ballot paper license distribution agent unit to;
After utilizing above-mentioned session key to the ballot paper licence deciphering of encrypting, the described ballot paper license distribution of e agent unit obtains the ballot paper licence of voter's request;
Electronics ballot paper signature step comprises:
The ballot paper version number that a specific ballot paper and that the voter chooses produces is at random accepted in the described electronics ballot paper of f signature unit;
The described electronics ballot paper of g signature unit is sent to electronics ballot paper signature center after voter's ballot paper licence, the ballot paper that has blinded and ballot paper version number are encrypted, to obtain the blind signed data of described ballot paper signature center to above-mentioned ballot paper and ballot paper version number;
H is being verified as under the situation of "Yes", demonstrate,proves according to ballot paper licence signature one ballot, passes to described electronics ballot paper signature unit after encrypting in the lump together with the data behind the above-mentioned signature;
After deciphering above-mentioned enciphered data, the described electronics ballot paper signature of i unit obtains mandate ballot paper, ballot paper version number and the ballot card of the described electronics ballot paper signature center signature of voter's request;
The step of electronics ballot paper ticket checking comprises:
The described electronics ballot paper of j ticket checking unit is sent to electronics ballot paper ticket checking center after voter's mandate ballot paper, ballot card and voter's identity data of having blinded are encrypted;
The described electronics ballot paper of k ticket checking center is to the ballot card and authorize ballot paper to carry out the validity judgement;
L is being judged as under the situation of "Yes", will allow the instruction of ticket checking and the blind signature of voter's identity data to be sent to described electronics ballot paper ticket checking unit;
The described electronics ballot paper of m ticket checking unit extracts the digital signature of described electronics ballot paper ticket checking center to voter's identity with above-mentioned enciphered data deciphering back from blind signature, and sends it to described voter's identity data records center; Described electronics ballot paper ticket checking center is published in the above-mentioned voter's identity data that has blinded on the described online communique;
The step of voter's identity record comprises:
The described voter's identity data of n records center is checked the digital signature of described electronics ballot paper ticket checking center to voter's identity, under the correct situation of check digit signature, and record voter's identity data.
When the voter carries out the craft ballot:
The described ballot paper license distribution of a agent unit is passed to described ballot paper license management center after with voter's identity data encrypted signature;
Under the situation that the described ballot paper license management of b center affirmation voter allows to vote, notify described ballot paper license distribution agent unit, and will in its database, the voter be labeled as " closing ";
If this voter of c had thrown the electronics ballot paper, the electronics ballot paper that described ballot paper license management center notifies described electronics ballot paper ticket checking center to deduct this voter by described electronics ballot paper signature center, and the data markers that this voter is relevant is for closing; Described voter's identity record center is passed to after this voter's identity data is signed in this licence broker unit.
The above-mentioned large-scale the Internet voting method of signing is characterized in that:
Further comprise in the described step of obtaining the ballot paper licence:
In ballot paper license distribution processing procedure, described ballot paper license management center checks this voter whether to ask for the ballot paper licence, if then take out original ballot paper licence of this voter from the database of described ballot paper administrative center; Otherwise, for this voter signs a new ballot paper licence and is recorded in the database of described ballot paper administrative center.
The above-mentioned large-scale the Internet voting method of signing is characterized in that:
Further comprise in the step of described electronics ballot paper ticket checking:
If ballot card data are under the situation about using for the first time, described electronics ballot paper ticket checking center in its database, write down this ballot demonstrate,prove data, the ballot paper of throwing and ballot paper version number, and the voter's identity data that blinds is published on the described online communique;
If ballot card data are not under the situation about using for the first time, whether described electronics ballot paper ticket checking center new ballot paper version number and the master this shop of checking satisfies predefined numerical relation, be judged as under the situation that is, upgrade the ballot paper of throwing, more ballot paper data in the new record and ballot paper version number, otherwise will not adopt new ballot.
The above-mentioned large-scale the Internet voting method of signing is characterized in that:
When licensc e data administrative center, or electronics ballot paper signature center, or electronics ballot paper ticket checking center, when receiving a request, and find that the corresponding data of this request have been labeled as when closing, just directly this request of refusal.
The advantage of system and method provided by the invention is:
One, the voter can repeat to revise the ballot paper of throwing in the election of once signing.
Its two, adopt the Internet electronic voting, can make wider that ballot relates to, conveniently live in remote districts, or often go on business, or healthyly ill-conditionedly be not easy to various personages such as trip and participate in voting.
Its three, by to the transmission data encryption, guaranteed the security that vote information is transmitting on the Internet.
Its four, electronic voting that this system and method is compatible simultaneously and manual ballot.Solved the problem that former manual ballot expends a large amount of man power and materials.Simultaneously, can make again and be unfamiliar with electronic voting or be unwilling to use electronic voting or be inconvenient to use the people of electronic voting under the monitoring of native system and method, to finish ballot equally.Be convenient to finish transition from the manual electronic voting of voting.And, when breaking down, can not influence normally carrying out of election in system.In addition, take a long view and to save substantial contribution.
Description of drawings
A preferred embodiment of the present invention is via infinite example and as follows with reference to description of drawings.In the accompanying drawings:
The ballot paper licence that Figure 1 shows that ballot paper license distribution subsystem obtains process flow diagram;
Figure 2 shows that the electronics ballot paper signature process flow diagram of electronics ballot paper signature subsystem;
Figure 3 shows that the electronics ballot paper ticket checking process flow diagram of electronics ballot paper ticket checking subsystem;
Figure 4 shows that voter's identity data record process flow diagram of voter's identity data records center;
Figure 5 shows that manual ballot process flow diagram; With
Figure 6 shows that the overview flow chart of the large-scale the Internet ballot system of signing of the present invention.
Embodiment
Below with reference to the accompanying drawings, to a preferred embodiment of the present invention will be described in detail.
The acquisition process of the ballot paper licence of a ballot paper license distribution subsystem that is made of ballot paper license management center and a plurality of ballot paper license distribution agent unit as shown in Figure 1, specifies as follows:
When a voter (U) comes the ballot paper license distribution agent unit (AG) that any is built up in ballot paper license distribution agent point, when obtaining a ballot paper licence, at first this voter need propose voter's identity data (U to ballot paper license distribution agent unit Id), can comprise effective personal identity card and ballot certification etc.; This voter chooses a session key (k1) then, and ballot paper license distribution agent unit is encrypted this session key with the public-key cryptography at ballot paper license management center (CA), obtains an encrypted session key ([k1] CA).Said process can be expressed as:
U→AG:U id,[k1] CA
Then, ballot paper license distribution agent unit (AG) is to agent identity data (AG Id), voter's identity data (U Id) and above-mentioned encrypted session key ([k1] CA) carry out digital signature, be sent to ballot paper license management center (CA) after encrypting again.Said process can be expressed as:
AG→CA:[{AG id,U id,[k1] CA} AG] CA
Ballot paper license management center judges by the check to above-mentioned agency's digital signature whether the voter is legal.If the voter does not possess the ballot qualification, then beam back instruction refusal agency's request; Otherwise carry out following step;
Self database is checked at ballot paper license management center, sees whether this voter is labeled as " closing ", if, then notify above-mentioned agency, log off; Otherwise carry out following step;
Self database is checked at ballot paper license management center, sees whether this voter had asked for licence, if then use same licence to carry out following step; Otherwise a new ballot paper licence will be signed for this voter in this ballot paper license management center, and the ballot paper license information that voter, ballot paper license distribution are acted on behalf of and signed adds the database of this administrative center to then;
Encrypt the ballot paper licence with the session key that above-mentioned voter chooses at ballot paper license management center, carries out sending above-mentioned ballot paper license distribution agency to after the digital signature together with voter's identity information and ballot paper license distribution agent identity information then;
Above-mentioned ballot paper license distribution agency will add close ballot paper licence and hand to above-mentioned voter; Can obtain the ballot paper licence after voter's deciphering.
Above-mentioned is the process of obtaining the ballot paper licence of a preferred embodiment of the present invention, and the formation step of this process can in the light of actual conditions increase and decrease.
Preferably, ballot paper licence of the present invention comprises one by voter's identity information, and message that the timestamp and the term of validity constitute and ballot paper license management center are to the digital signature of this message.
In preferred another program, ballot paper licence of the present invention comprises one by voter's identity information, a certain special election information, and message that the timestamp and the term of validity constitute and ballot paper license management center are to the digital signature of this message.
Electronics ballot paper by the electronics ballot paper signature subsystem that electronics ballot paper signature center and a plurality of electronics ballot paper signature unit constitute is signed process, as shown in Figure 2, specifies as follows:
Choose the signature unit at electronics, the voter chooses a certain special ballot paper and a ballot paper version number that produces at random; This voter chooses a random number, utilizes blind signature technology to obtain the blind signature that be connected of ballot paper signature center to above-mentioned ballot paper and ballot paper version number; This voter chooses a random session key;
This voter passes to electronics ballot paper signature center with his ballot paper licence after the blind signature of ballot paper and the above-mentioned session password encryption;
The correctness of the ballot paper licence that electronics ballot paper signature center is transmitted the voter etc. is verified.If being arranged, any evidence can not then refuse voter's request by checking; Otherwise continue following step;
The database of oneself is checked at electronics ballot paper signature center, utilizes the ballot paper license information to see whether above-mentioned voter is labeled as " closing ".If refusal voter's request also logs off; Otherwise continue following step;
Electronics ballot paper signature center is according to ballot card of ballot paper license information signature, then selected ballot paper of this voter and version number are carried out blind signature, it is connected with this ballot card, pass to electronics ballot paper signature unit after then the data after connecting being encrypted with above-mentioned session key, this voter is handed to these ciphered data again in electronics ballot paper signature unit; This voter extracts blind signature from above-mentioned ciphered data, therefrom can obtain to have signed through ballot paper signature center the mandate ballot paper and the ballot card of name;
Electronics ballot paper signature center is the information such as ballot paper licence and service ticket of noting under the news at the ballot paper licence that this voter provides.
In the above-mentioned steps, data are before being sent to electronics ballot paper signature center, data to be transmitted are the session key with voter's picked at random, this session key is encrypted with the public-key cryptography at electronics ballot paper signature center again, and ciphered data and encrypted session key together send electronics ballot paper signature center to.Encryption method of the present invention is the common practise of this area, and those of ordinary skill in the art can know that in addition much other mode can replace this encryption method.The present invention does not limit the use of encryption method.
Above-mentioned is the process of the electronics ballot paper signature of a preferred embodiment of the present invention, and the order of operation of this process may in the light of actual conditions be adjusted to some extent, comprises the change of order and the increase and decrease of step.
The electronics ballot paper ticket checking process of an electronics ballot paper ticket checking subsystem that is made of electronics ballot paper ticket checking center, online communique and a plurality of electronics ballot paper ticket checking unit as shown in Figure 3, specifies as follows:
Electronics ballot paper ticket checking unit is encrypted with the session key that the voter selects voter's mandate ballot paper, ballot card and the user ID data that blinded, PKI with electronics ballot paper ticket checking center is encrypted this session key, and sends the ciphertext after two kinds of encryptions to electronics ballot paper ticket checking center.
Ballot card that receives and the correctness of authorizing ballot paper are checked in electronics ballot paper ticket checking center.As mistake takes place, then refuse ticket checking; Otherwise, step below continuing;
Electronics ballot paper ticket checking center checks from the database of oneself whether the voter who has mountain upslide ticket is marked as " closing ", if then refuse ticket checking and log off; Otherwise the step below continuing;
Electronics ballot paper ticket checking center checks whether above-mentioned ballot card has been recorded in the database at electronics ballot paper ticket checking center.If not, then this ballot card information is recorded in the database together with ballot paper version number; Otherwise select version number and the ballot paper version number of newly receiving to compare with what write down in the database.If new ballot paper version number then continues following step than big 1 in database or other a certain fixed number (under meaning under the mould B); Otherwise the refusal ticket checking also logs off;
The ticket checking in a conventional manner of electronics ballot paper ticket checking center, and the above-mentioned user ID data of receiving that has blinded made blind signature, this blind front is connected same timestamp pass to electronics ballot paper ticket checking unit after by above-mentioned session key, the voter is handed to above-mentioned ciphered data again in this unit;
Electronics ballot paper ticket checking center is published in the above-mentioned subscriber identity information that has blinded on the online communique;
Obtain the blind signature at ticket checking center after the voter deciphers from the information of receiving, therefrom can calculate the signature of ticket checking center this voter's identity.
Preferably, electronics ballot paper ticket checking center user ID data and this election information to having blinded, as the time etc., the timestamp and the term of validity in being included in as required send electronics ballot paper ticket checking unit to after together encrypting.
Above-mentioned is the electronics ballot paper ticket checking process of a preferred embodiment of the present invention, and the formation step of this process can in the light of actual conditions increase and decrease.
Voter's identity data records center as shown in Figure 4, specifies as follows to the process of voter's identity data record:
The voter will obtain digital signature in electronics ballot paper ticket checking unit and send electronic voting people identity data records center to from the blind signature of electronics ballot paper ticket checking center to its identity;
The legitimacy of described voter's identity data records center check digit signature is if can not then refuse voter's request by check; Otherwise, with voter's true identity data recording in database.
Data transfer in the said process will be encrypted, and encryption method can also can adopt this area other encryption method commonly used with the method for introducing previously.
Also dissolve in traditional manual ballot in the system and method for the present invention and handled, not only can realize electronic voting, also can accept manual ballot simultaneously.
The process and the system handles method of manual ballot are as follows:
The voter goes to carry out manual ballot to a ballot paper license distribution agent unit place, and this agency checks voter's identity and ballot qualification.The people who does not have corresponding ballot qualification is refused then and there;
This ballot paper license distribution agent unit sends ballot paper license management center to after voter's identity data and this agency's identity data is encrypted together with " closing " request;
The legitimacy of this ballot paper license management center check request is refused illegal request, and legal request is handled; This ballot paper license management center checks from the database of oneself whether this voter is labeled as " closing ".If then notify above-mentioned distribution agent unit refusal voter's request; Otherwise, the voter is labeled as " closing ", notify this agency to allow voter's ballot, and send electronics ballot paper signature center and request " closing " simultaneously to after the ballot paper license information encryption with this voter;
Above-mentioned distribution agent unit allows the voter finish voting process after receiving that administrative center allows the instruction of voter's ballot, and will send voter's identity data records center to after the encryption of voter's identity data;
A ballot card is signed in electronics ballot paper signature center after examining correct request, be sent to electronics ballot paper ticket checking center and request " closing " simultaneously after this ballot card is encrypted, and simultaneously the ballot paper licence is labeled as " closing "; If this ballot paper licence is labeled as " closing ", then do not carry out any operation.
Electronics ballot paper ticket checking center is labeled as " closing " with the card of the ballot in the request after examining correct request, and under the situation of the registered mistake of this ballot card, deducts the ballot of last time;
After voter's identity data records center is examined correct request, record voter identity information.
So why after the manual ballot of voter, the relevant information in the database of voter at each center is labeled as " closing ", be in order to guarantee only to allow once manual ballot.The voter can repeat to revise electronic voting, and after the voter carried out electronic voting, he still can carry out unique once manual ballot, but after manual ballot, just cannot carry out electronic voting again.
The invention has the advantages that the voter can repeat to revise electronic voting in the election of once signing.
The present invention be advantageous in that, adopt the Internet electronic voting, can make wider that ballot relates to, conveniently live in remote districts, or often go on business, or healthyly ill-conditionedly be not easy to various personages such as trip and participate in voting.
The present invention be advantageous in that the encryption by to the transmission data has guaranteed the security that vote information is transmitting on the Internet.
The present invention be advantageous in that electronic voting that this system and method is compatible simultaneously and manual ballot.Solved the problem that former manual ballot expends a large amount of man power and materials.Simultaneously, can make again and be unfamiliar with electronic voting or be unwilling to use electronic voting or be inconvenient to use the people of electronic voting under the monitoring of native system and method, to finish ballot equally.Be convenient to finish transition from the manual electronic voting of voting.And, when breaking down, can not influence normally carrying out of election in system.In addition, take a long view and to save substantial contribution.
Those skilled in the art will appreciate that under the prerequisite that does not break away from spirit of the present invention or inner characteristic, the present invention can be embodied in various ways, and unless otherwise indicated, the foregoing description is not subjected to the restriction of any aforementioned details.For example, the order of method step is to adjust and concrete steps can increase and decrease according to actual conditions, and encryption method can be used other known technology arbitrarily.Broadly explain in its spirit and scope that the present invention should define in appended claims, therefore, in all changes in the equivalent in every boundary line that falls into this claim or these boundary lines and revising all are included in by claims.

Claims (14)

1, a kind of large-scale the Internet ballot system of signing, this system comprises: a ballot paper license distribution subsystem that is made of ballot paper license management center and a plurality of ballot paper license distribution agent unit; An electronics ballot paper signature subsystem that constitutes by electronics ballot paper signature center and a plurality of electronics ballot paper signature unit; An electronics ballot paper ticket checking subsystem that constitutes by electronics ballot paper ticket checking center and online communique and a plurality of electronics ballot paper ticket checking unit; With voter's identity data records center, it is characterized in that:
In described ballot paper license distribution subsystem: described ballot paper license distribution agent unit, the session key of the encryption that voter's identity data, described ballot paper license distribution agent identity data and voter are chosen, through digital signature with after encrypting, be sent to described ballot paper license management center in the lump; The above-mentioned data that the check of described ballot paper license management center receives, illegal or when the voter is labeled as " closing " in the database of described ballot paper administrative center when data, refuse this request, otherwise, for the voter that asked for the ballot paper licence fetches this voter's ballot paper licence from the database of described ballot paper administrative center, for the voter who never asked for the ballot paper licence signs a new ballot paper licence and is recorded in the database of described ballot paper administrative center; Described ballot paper license management center, ballot paper licence, voter's identity data and the ballot paper license distribution agent identity data that to cross with the session key that the voter chooses, through digital signature with after encrypting, be sent to described ballot paper license distribution agency in the lump; Described ballot paper license distribution agency is with above-mentioned encryption ballot paper licence;
In described electronics ballot paper signature subsystem: described electronics ballot paper signature unit after encrypting, is sent to described electronics ballot paper signature center with voter's ballot paper licence, the ballot paper that has blinded and ballot paper version number in the lump; The above-mentioned data that the check of described electronics ballot paper signature center receives, incorrect or when this ballot paper licence is labeled as " closing " in the database at described ballot paper signature center at the ballot paper licence, refuse this request, otherwise sign a ballot card for the voter according to the ballot paper license information, at the ballot paper licence is under the situation of new signature, this ballot paper licence of record in the database at described electronics ballot paper signature center; Signing to the ballot paper and the ballot paper version number that have blinded in described electronics ballot paper signature center, sends described electronics ballot paper signature unit to after encrypting together with the ballot card of signing and issuing then; The mandate ballot paper that contains version number and the ballot that obtain the described electronics ballot paper signature center signature of voter's request after above-mentioned ciphered data is deciphered in described electronics ballot paper signature unit are demonstrate,proved;
In described electronics ballot paper ticket checking subsystem: described electronics ballot paper ticket checking unit with voter's ballot card, voter's identity data of containing the mandate ballot paper of version number and having blinded, after encrypting, is sent to described electronics ballot paper ticket checking center in the lump; The above-mentioned data that the check of described electronics ballot paper ticket checking center receives, when voter illegal when data or hold this ballot card in the database at described electronics ballot paper ticket checking center is labeled as " closing ", refuse this request, otherwise ticket checking is carried out at described electronics ballot paper ticket checking center, and writes down this ballot card, ballot paper and ballot paper version number in its database; Described electronics ballot paper ticket checking center is done voter's identity data to be sent to described electronics ballot paper ticket checking unit behind the blind signature; Described electronics ballot paper ticket checking center is obtained to the digital signature of voter's identity and send it to described voter's identity data records center in described electronics ballot paper ticket checking unit from the blind signature at described electronics ballot paper ticket checking center; Described electronics ballot paper ticket checking center is published in the above-mentioned voter's identity data that has blinded on the described online communique;
Described voter's identity data records center is checked the digital signature of described electronics ballot paper ticket checking center to voter's identity, under the correct situation of check digit signature, and record voter's identity data.
2, according to a kind of large-scale the Internet ballot system of signing of claim 1, it is characterized in that:
Described ballot paper licence comprises a message that is made of voter's identity information, timestamp and the term of validity and the described ballot paper license management center digital signature to this message.
3, according to a kind of large-scale the Internet ballot system of signing of claim 1, it is characterized in that:
Described ballot paper licence comprises a message that is made of voter's identity information, a certain special election information, timestamp and the term of validity and the described ballot paper license management center digital signature to this message.
4, a kind of large-scale the Internet voting method of signing uses the system of this method to comprise: a ballot paper license distribution subsystem that is made of ballot paper license management center and a plurality of ballot paper license distribution agent unit; An electronics ballot paper signature subsystem that constitutes by electronics ballot paper signature center and a plurality of electronics ballot paper signature unit; An electronics ballot paper ticket checking subsystem that constitutes by electronics ballot paper ticket checking center, online communique and a plurality of electronics ballot paper ticket checking unit; With voter's identity data records center, it is characterized in that:
The step of obtaining the ballot paper licence comprises:
The described ballot paper license distribution of a agent unit uses the public-key cryptography at described ballot paper license management center that the session key that the voter chooses is encrypted, and obtains an encrypted session key;
The described ballot paper license distribution of b agent unit carries out digital signature to voter's identity data, described ballot paper license distribution agent identity data and above-mentioned encrypted session key;
The described ballot paper license distribution of c agent unit sends described ballot paper license management center to after with the above-mentioned data encryption of carrying out digital signature, described ballot paper license management center compares the data that receive and the related data of its database, the judgement that the legitimacy of the identity data of voter's identity data and described ballot paper license distribution agent unit is or denys;
D is being judged as under the situation of "Yes", and described ballot paper license management center utilizes above-mentioned session key that one ballot paper licensc e data is encrypted, and sends described ballot paper license distribution agent unit to;
After utilizing above-mentioned session key to the ballot paper licence deciphering of encrypting, the described ballot paper license distribution of e agent unit obtains the ballot paper licence of voter's request;
Electronics ballot paper signature step comprises:
The ballot paper version number that a specific ballot paper and that the voter chooses produces is at random accepted in the described electronics ballot paper of f signature unit;
The described electronics ballot paper of g signature unit is sent to electronics ballot paper signature center after voter's ballot paper licence, the ballot paper that has blinded and ballot paper version number are encrypted, to obtain the blind signed data of described ballot paper signature center to above-mentioned ballot paper and ballot paper version number;
H is being verified as under the situation of "Yes", demonstrate,proves according to ballot paper licence signature one ballot, passes to described electronics ballot paper signature unit after encrypting in the lump together with the data behind the above-mentioned signature;
After deciphering above-mentioned enciphered data, the described electronics ballot paper signature of i unit obtains mandate ballot paper, ballot paper version number and the ballot card of the described electronics ballot paper signature center signature of voter's request;
The step of electronics ballot paper ticket checking comprises:
The described electronics ballot paper of j ticket checking unit is sent to electronics ballot paper ticket checking center after voter's mandate ballot paper, ballot card and voter's identity data of having blinded are encrypted;
The described electronics ballot paper of k ticket checking center is to the ballot card and authorize ballot paper to carry out the validity judgement;
L is being judged as under the situation of "Yes", and ticket checking is carried out at described electronics ballot paper ticket checking center, and the blind signature of voter's identity data is sent to described electronics ballot paper ticket checking unit;
Described electronics ballot paper ticket checking center is obtained to the digital signature of voter's identity and send it to described voter's identity data records center in the described electronics ballot paper of m ticket checking unit from the blind signature at described electronics ballot paper ticket checking center; Described electronics ballot paper ticket checking center is published in the above-mentioned voter's identity data that has blinded on the described online communique;
The step of voter's identity record comprises:
The described voter's identity data of n records center is checked the digital signature of described electronics ballot paper ticket checking center to voter's identity, under the correct situation of check digit signature, and record voter's identity data.
5, according to a kind of large-scale the Internet voting method of signing of claim 4, it is characterized in that:
Further comprise in the described step of obtaining the ballot paper licence:
In ballot paper license distribution processing procedure, described ballot paper license management center checks this voter whether to ask for the ballot paper licence, if then take out original ballot paper licence of this voter from the database of described ballot paper administrative center; Otherwise, for this voter signs a new ballot paper licence and is recorded in the database of described ballot paper administrative center.
6, according to a kind of large-scale the Internet voting method of signing of claim 4, it is characterized in that:
Further comprise in the step of described electronics ballot paper ticket checking:
If ballot card data are under the situation about using for the first time, described electronics ballot paper ticket checking center in its database, write down this ballot demonstrate,prove data, the ballot paper of throwing and ballot paper version number, and the voter's identity data that blinds is published on the described online communique;
If ballot card data are not under the situation about using for the first time, whether described electronics ballot paper ticket checking center new ballot paper version number and the master this shop of checking satisfies predefined numerical relation, be judged as under the situation that is, upgrade the ballot paper of throwing, more ballot paper data in the new record and ballot paper version number, otherwise will not adopt new ballot.
7, according to a kind of large-scale the Internet voting method of signing of claim 4, it is characterized in that:
When licensc e data administrative center, or electronics ballot paper signature center, or electronics ballot paper ticket checking center, when receiving a request, and find that the corresponding data of this request have been labeled as when closing, just directly this request of refusal.
8, a kind of large-scale the Internet ballot system of signing, this system comprises: a ballot paper license distribution subsystem that is made of ballot paper license management center and a plurality of ballot paper license distribution agent unit; An electronics ballot paper signature subsystem that constitutes by electronics ballot paper signature center and a plurality of electronics ballot paper signature unit; An electronics ballot paper ticket checking subsystem that constitutes by electronics ballot paper ticket checking center, online communique and a plurality of electronics ballot paper ticket checking unit; With voter's identity data records center, it is characterized in that:
When the voter carries out electronic voting:
In described ballot paper license distribution subsystem: described ballot paper license distribution agent unit, the session key of the encryption that voter's identity data, described ballot paper license distribution agent identity data and voter are chosen, through digital signature with after encrypting, be sent to described ballot paper license management center in the lump; The above-mentioned data that the check of described ballot paper license management center receives, illegal or when the voter is labeled as " closing " in the database of described ballot paper administrative center when data, refuse this request, otherwise, for the voter that asked for the ballot paper licence fetches this voter's ballot paper licence from the database of described ballot paper administrative center, for the voter who never asked for the ballot paper licence signs a new ballot paper licence and is recorded in the database of described ballot paper administrative center; Described ballot paper license management center, ballot paper licence, voter's identity data and the ballot paper license distribution agent identity data that to cross with the session key that the voter chooses, through digital signature with after encrypting, be sent to described ballot paper license distribution agency in the lump; Described ballot paper license distribution agency delivers the voter with the ballot paper licence of above-mentioned encryption, obtains the ballot paper licence after voter's deciphering;
In described electronics ballot paper signature subsystem: described electronics ballot paper signature unit after encrypting, is sent to described electronics ballot paper signature center with voter's ballot paper licence, the ballot paper that has blinded and ballot paper version number in the lump; The above-mentioned data that the check of described electronics ballot paper signature center receives, incorrect or when this ballot paper licence is labeled as " closing " in the database at described ballot paper signature center at the ballot paper licence, refuse this request, otherwise sign a ballot card for the voter according to the ballot paper license information, at the ballot paper licence is under the situation of new signature, this ballot paper licence of record in the database at described electronics ballot paper signature center; Signing to the ballot paper and the ballot paper version number that have blinded in described electronics ballot paper signature center, sends described electronics ballot paper signature unit to after encrypting together with the ballot card of signing and issuing then; The mandate ballot paper that contains version number and the ballot that obtain the described electronics ballot paper signature center signature of voter's request after above-mentioned ciphered data is deciphered in described electronics ballot paper signature unit are demonstrate,proved;
In described electronics ballot paper ticket checking subsystem: described electronics ballot paper ticket checking unit with voter's ballot card, voter's identity data of containing the mandate ballot paper of version number and having blinded, after encrypting, is sent to described electronics ballot paper ticket checking center in the lump; The above-mentioned data that the check of described electronics ballot paper ticket checking center receives, when voter illegal when data or hold this ballot card in the database at described electronics ballot paper ticket checking center is labeled as " closing ", refuse this request, otherwise normal ticket checking and record this ballot card, ballot paper and ballot paper version number in the database at described electronics ballot paper ticket checking center; Described electronics ballot paper ticket checking center is done voter's identity data to be sent to described electronics ballot paper ticket checking unit behind the blind signature; Described electronics ballot paper ticket checking center is obtained to the digital signature of voter's identity and send it to described voter's identity data records center in described electronics ballot paper ticket checking unit from the blind signature at described electronics ballot paper ticket checking center; Described electronics ballot paper ticket checking center is published in the above-mentioned voter's identity data that has blinded on the described online communique;
Described voter's identity data records center is checked the digital signature of described electronics ballot paper ticket checking center to voter's identity, under the correct situation of check digit signature, and record voter's identity data.
When the voter carries out the craft ballot:
Described ballot paper license distribution agent unit, the identity data that utilizes the voter is to the manual ballot permission of described ballot paper license management center requests, described ballot paper license management center is confirming that the voter is allowed under the situation of manual ballot, in the database at described ballot paper license management center, the voter is labeled as " closing ", and incites somebody to action the ballot paper licence of described thereafter ballot paper license management center signature successively by described electronics ballot paper signature center and described electronics ballot paper ticket checking center, the ballot card of described electronics ballot paper signature center signature is labeled as " closing " successively; Under the registered situation of described ballot card, deduct the ballot of last time.
9, a kind of large-scale the Internet ballot system of signing according to Claim 8 is characterized in that:
Described ballot paper licence comprises a message that is made of voter's identity information, timestamp and the term of validity and the described ballot paper license management center digital signature to this message.
10, a kind of large-scale the Internet ballot system of signing according to Claim 8 is characterized in that:
Described ballot paper licence comprises a message that is made of voter's identity information, a certain special election information, timestamp and the term of validity and the described ballot paper license management center digital signature to this message.
11, a kind of large-scale the Internet voting method of signing uses the system of this method to comprise: a ballot paper license distribution subsystem that is made of ballot paper license management center and a plurality of ballot paper license distribution agent unit; An electronics ballot paper signature subsystem that constitutes by electronics ballot paper signature center and a plurality of electronics ballot paper signature unit; An electronics ballot paper ticket checking subsystem that constitutes by electronics ballot paper ticket checking center, online communique and a plurality of electronics ballot paper ticket checking unit; With voter's identity data records center, it is characterized in that:
When the voter carries out electronic voting:
The step of obtaining the ballot paper licence comprises:
The described ballot paper license distribution of a agent unit uses the public-key cryptography at described ballot paper license management center that the session key that the voter chooses is encrypted, and obtains an encrypted session key;
The described ballot paper license distribution of b agent unit carries out digital signature to voter's identity data, described ballot paper license distribution agent identity data and above-mentioned encrypted session key;
The described ballot paper license distribution of c agent unit sends described ballot paper license management center to after with the above-mentioned data encryption of carrying out digital signature, described ballot paper license management center compares the data that receive and the related data of its database, the judgement that the legitimacy of the identity data of voter's identity data and described ballot paper license distribution agent unit is or denys;
D is being judged as under the situation of "Yes", and described ballot paper license management center utilizes above-mentioned session key that one ballot paper licensc e data is encrypted, and sends described ballot paper license distribution agent unit to;
After utilizing above-mentioned session key to the ballot paper licence deciphering of encrypting, the described ballot paper license distribution of e agent unit obtains the ballot paper licence of voter's request;
Electronics ballot paper signature step comprises:
The ballot paper version number that a specific ballot paper and that the voter chooses produces is at random accepted in the described electronics ballot paper of f signature unit;
The described electronics ballot paper of g signature unit is sent to electronics ballot paper signature center after voter's ballot paper licence, the ballot paper that has blinded and ballot paper version number are encrypted, to obtain the blind signed data of described ballot paper signature center to above-mentioned ballot paper and ballot paper version number;
H is being verified as under the situation of "Yes", demonstrate,proves according to ballot paper licence signature one ballot, passes to described electronics ballot paper signature unit after encrypting in the lump together with the data behind the above-mentioned signature;
After deciphering above-mentioned enciphered data, the described electronics ballot paper signature of i unit obtains mandate ballot paper, ballot paper version number and the ballot card of the described electronics ballot paper signature center signature of voter's request;
The step of electronics ballot paper ticket checking comprises:
The described electronics ballot paper of j ticket checking unit is sent to electronics ballot paper ticket checking center after voter's mandate ballot paper, ballot card and voter's identity data of having blinded are encrypted;
The described electronics ballot paper of k ticket checking center is to the ballot card and authorize ballot paper to carry out the validity judgement;
L is being judged as under the situation of "Yes", will allow the instruction of ticket checking and the blind signature of voter's identity data to be sent to described electronics ballot paper ticket checking unit;
The described electronics ballot paper of m ticket checking unit extracts the digital signature of described electronics ballot paper ticket checking center to voter's identity with above-mentioned enciphered data deciphering back from blind signature, and sends it to described voter's identity data records center; Described electronics ballot paper ticket checking center is published in the above-mentioned voter's identity data that has blinded on the described online communique;
The step of voter's identity record comprises:
The described voter's identity data of n records center is checked the digital signature of described electronics ballot paper ticket checking center to voter's identity, under the correct situation of check digit signature, and record voter's identity data.
When the voter carries out the craft ballot:
The described ballot paper license distribution of a agent unit is passed to described ballot paper license management center after with voter's identity data encrypted signature;
Under the situation that the described ballot paper license management of b center affirmation voter allows to vote, notify described ballot paper license distribution agent unit, and will in its database, the voter be labeled as " closing ";
If this voter of c had thrown the electronics ballot paper, the electronics ballot paper that described ballot paper license management center notifies described electronics ballot paper ticket checking center to deduct this voter by described electronics ballot paper signature center, and the data markers that this voter is relevant is for closing; Described voter's identity record center is passed to after this voter's identity data is signed in this licence broker unit.
12, according to a kind of large-scale the Internet voting method of signing of claim 11, it is characterized in that:
Further comprise in the described step of obtaining the ballot paper licence:
In ballot paper license distribution processing procedure, described ballot paper license management center checks this voter whether to ask for the ballot paper licence, if then take out original ballot paper licence of this voter from the database of described ballot paper administrative center; Otherwise, for this voter signs a new ballot paper licence and is recorded in the database of described ballot paper administrative center.
13, according to a kind of large-scale the Internet voting method of signing of claim 11, it is characterized in that:
Further comprise in the step of described electronics ballot paper ticket checking:
If ballot card data are under the situation about using for the first time, described electronics ballot paper ticket checking center in its database, write down this ballot demonstrate,prove data, the ballot paper of throwing and ballot paper version number, and the voter's identity data that blinds is published on the described online communique;
If ballot card data are not under the situation about using for the first time, whether described electronics ballot paper ticket checking center new ballot paper version number and the master this shop of checking satisfies predefined numerical relation, be judged as under the situation that is, upgrade the ballot paper of throwing, more ballot paper data in the new record and ballot paper version number, otherwise will not adopt new ballot.
14, according to a kind of large-scale the Internet voting method of signing of claim 11, it is characterized in that:
When licensc e data administrative center, or electronics ballot paper signature center, or electronics ballot paper ticket checking center, when receiving a request, and find that the corresponding data of this request have been labeled as when closing, just directly this request of refusal.
CN 200410004643 2004-02-20 2004-02-20 Large disclosed internet voting system and method Pending CN1658202A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 200410004643 CN1658202A (en) 2004-02-20 2004-02-20 Large disclosed internet voting system and method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 200410004643 CN1658202A (en) 2004-02-20 2004-02-20 Large disclosed internet voting system and method

Publications (1)

Publication Number Publication Date
CN1658202A true CN1658202A (en) 2005-08-24

Family

ID=35007684

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 200410004643 Pending CN1658202A (en) 2004-02-20 2004-02-20 Large disclosed internet voting system and method

Country Status (1)

Country Link
CN (1) CN1658202A (en)

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104392534A (en) * 2014-11-21 2015-03-04 西南交通大学 Electronic voting system based on finger vein feature recognition
CN101340278B (en) * 2007-07-03 2015-05-27 三星电子株式会社 License management system and method
CN107025713A (en) * 2016-11-09 2017-08-08 阿里巴巴集团控股有限公司 The implementation method and device of electronic voting in instant messaging group chat scene
CN108616362A (en) * 2018-04-16 2018-10-02 广州杰赛科技股份有限公司 Vote information generation method and device
CN109272631A (en) * 2017-07-17 2019-01-25 卡巴斯基实验室股份制公司 The system and method for determining the ballot paper of the voter collected by electronic voting
CN111177774A (en) * 2019-12-11 2020-05-19 浙江工商大学 Full-anonymity feedback method based on block chain
CN112598843A (en) * 2020-12-04 2021-04-02 光大科技有限公司 Voting data processing method and device and storage medium

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101340278B (en) * 2007-07-03 2015-05-27 三星电子株式会社 License management system and method
CN104392534A (en) * 2014-11-21 2015-03-04 西南交通大学 Electronic voting system based on finger vein feature recognition
CN104392534B (en) * 2014-11-21 2017-04-12 西南交通大学 Electronic voting method and device based on finger vein feature recognition
CN107025713A (en) * 2016-11-09 2017-08-08 阿里巴巴集团控股有限公司 The implementation method and device of electronic voting in instant messaging group chat scene
CN107025713B (en) * 2016-11-09 2019-09-17 阿里巴巴集团控股有限公司 The implementation method and device of electronic voting in instant messaging group chat scene
CN109272631A (en) * 2017-07-17 2019-01-25 卡巴斯基实验室股份制公司 The system and method for determining the ballot paper of the voter collected by electronic voting
CN108616362A (en) * 2018-04-16 2018-10-02 广州杰赛科技股份有限公司 Vote information generation method and device
CN108616362B (en) * 2018-04-16 2022-03-29 广州杰赛科技股份有限公司 Voting information generation method and device
CN111177774A (en) * 2019-12-11 2020-05-19 浙江工商大学 Full-anonymity feedback method based on block chain
CN112598843A (en) * 2020-12-04 2021-04-02 光大科技有限公司 Voting data processing method and device and storage medium
CN112598843B (en) * 2020-12-04 2022-11-29 光大科技有限公司 Voting data processing method and device and storage medium

Similar Documents

Publication Publication Date Title
CN1271485C (en) Device and method for proceeding encryption and identification of network bank data
CN1829144A (en) Cryptographic communication system and method
CN1225711C (en) Digital content issuing system and digital content issuing method
CN1266875C (en) Content issuing/receiving method
CN1251069C (en) Method of security recognition, its system and appts., first authentication appts. and computer program products
CN100337478C (en) A private key acquiring method for use in set-top box
CN1918526A (en) Information management device and information management method
CN1445707A (en) Service submitting system for supplying service to user equipment from service submitting equipment
CN1790359A (en) Method and system for using a portable computing device as a smart key device
CN1961370A (en) Method and apparatus for playing back content based on digital rights management, and portable storage
CN1647442A (en) Secure electonic messqging system requiring key retrieval for deriving decryption keys
CN1682490A (en) System and method for electronic transmission, storage and retrieval of authenticated documents
CN1554053A (en) Service providing system and method
CN1992767A (en) Information processing apparatus
CN1902561A (en) Method and system for establishing a trust framework based on smart key devices
CN1950776A (en) Certificate validity checking
CN1829950A (en) Method for determining use permission of information and content distribution system using the method
CN1921395A (en) Method and system for improving security of network software
CN1929369A (en) Method and apparatus for securely transmitting and receiving data in peer-to-peer manner
CN1574740A (en) Personal authentication device and method thereof
CN1921384A (en) Public key infrastructure system, local safety apparatus and operation method
CN1898624A (en) Preserving privacy while using authorization certificates
CN1263669A (en) Digital AV data transmitting unit, receiving unit, transmitting/receiving unit and medium
CN1547142A (en) A dynamic identity certification method and system
CN1146184C (en) Process for group-based cryptographic code management between a first computer unit and group computer units

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Open date: 20050824