TWI569154B - Cloud storage control system and operating method thereof - Google Patents

Cloud storage control system and operating method thereof Download PDF

Info

Publication number
TWI569154B
TWI569154B TW104123738A TW104123738A TWI569154B TW I569154 B TWI569154 B TW I569154B TW 104123738 A TW104123738 A TW 104123738A TW 104123738 A TW104123738 A TW 104123738A TW I569154 B TWI569154 B TW I569154B
Authority
TW
Taiwan
Prior art keywords
hard disk
address
webpage
cloud hard
file
Prior art date
Application number
TW104123738A
Other languages
Chinese (zh)
Other versions
TW201705014A (en
Inventor
蔡宜霖
Original Assignee
精品科技股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 精品科技股份有限公司 filed Critical 精品科技股份有限公司
Priority to TW104123738A priority Critical patent/TWI569154B/en
Priority to CN201510660500.2A priority patent/CN106371760B/en
Application granted granted Critical
Publication of TWI569154B publication Critical patent/TWI569154B/en
Publication of TW201705014A publication Critical patent/TW201705014A/en

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F3/00Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
    • G06F3/06Digital input from, or digital output to, record carriers, e.g. RAID, emulated record carriers or networked record carriers
    • G06F3/0601Interfaces specially adapted for storage systems
    • G06F3/0668Interfaces specially adapted for storage systems adopting a particular infrastructure
    • G06F3/067Distributed or networked storage systems, e.g. storage area networks [SAN], network attached storage [NAS]
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F3/00Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
    • G06F3/06Digital input from, or digital output to, record carriers, e.g. RAID, emulated record carriers or networked record carriers
    • G06F3/0601Interfaces specially adapted for storage systems
    • G06F3/0602Interfaces specially adapted for storage systems specifically adapted to achieve a particular effect
    • G06F3/062Securing storage systems
    • G06F3/0622Securing storage systems in relation to access

Description

雲端硬碟控制系統及其操作方法 Cloud hard disk control system and its operation method

本發明是有關於一種資訊安全的技術,尤其是有關於一種雲端硬碟控制系統及其操作方法。 The present invention relates to an information security technology, and more particularly to a cloud hard disk control system and an operation method thereof.

由於科技的進步,電子裝置如電腦、筆記型電腦、平板電腦等皆具有強大的資料運算處理能力,因此所需儲存的資訊量也就相應增加,儲存空間的需求必然大增。然為了使電子裝置能具有更多的儲存空間,必定需要增加更多的硬碟數量,但此舉明顯會造成電子裝置的成本以及體積的增加,此外,硬碟亦不便於資料的交換。因此,近年來各家廠商即積極發展了雲端硬碟的技術,藉由雲端硬碟技術,只要在可與網際網路連線的環境,任何人皆可上傳各種類型的資料至雲端硬碟,並在其他具有網際網路的環境下載儲存於雲端硬碟的資料來使用,因此電子裝置不再需要具備極大的儲存空間,交換資訊也變得非常容易。但是對企業而言,雲端硬碟造成了機密資料管理上的困難,員工可輕易利用電子裝置將機密資料上傳至雲端硬碟,機密資料可能因此而曝光,造成企業的損失。 Due to advances in technology, electronic devices such as computers, notebook computers, and tablet computers all have powerful data processing capabilities, so the amount of information that needs to be stored increases accordingly, and the demand for storage space is inevitably increased. However, in order to enable the electronic device to have more storage space, it is necessary to increase the number of hard disks, but this obviously causes an increase in the cost and volume of the electronic device. In addition, the hard disk does not facilitate the exchange of data. Therefore, in recent years, various manufacturers have actively developed the technology of cloud hard disk. With the cloud hard disk technology, anyone can upload various types of data to the cloud hard disk in an environment that can be connected to the Internet. And in other Internet-connected environments, the data stored in the cloud hard disk is downloaded for use, so the electronic device no longer needs to have a large storage space, and the exchange of information becomes very easy. However, for enterprises, the cloud hard disk has caused difficulties in the management of confidential data. Employees can easily use the electronic device to upload confidential information to the cloud hard disk, and the confidential information may be exposed, resulting in loss of the enterprise.

為了避免機密資料被隨意上傳至雲端硬碟,造成企業的損失,本發明提出了一種雲端硬碟控制系統實施例,其包括一網頁控制模組、一網路單元以及一處理單元,網頁控制模組是用以擷取顯示螢幕上所顯示的網址欄位的一網頁地址,並將網頁地址轉換為對應之一網路協定位址,網頁控制模組並比對網頁地址或網路協定位址是否存在於一儲存單元所儲存之一禁用列表中,網頁控制模組並據以輸出一比對結果至上述的處理單元,處理單元與網頁控制模組以及網路單元電性耦接,處理單元係根據一接收訊號決定是否使網路單元透過網際網路與一雲端硬碟網頁地址連線,其中處理單元的接收訊號為上述之比對結果,雲端硬碟網頁地址為上述的網頁地址。 In order to avoid the loss of confidential data to the cloud hard disk, causing the loss of the enterprise, the present invention provides a cloud hard disk control system embodiment, which includes a webpage control module, a network unit and a processing unit, and a webpage control module. The group is used to retrieve a webpage address of the web address field displayed on the screen, and convert the webpage address into a corresponding network protocol address, the webpage control module and compare the webpage address or the network protocol address. Whether it exists in a disabled list stored in a storage unit, and the webpage control module outputs a comparison result to the processing unit, and the processing unit is electrically coupled to the webpage control module and the network unit, and the processing unit Based on a received signal, it is determined whether the network unit is connected to a cloud hard disk webpage address through the Internet. The receiving signal of the processing unit is the comparison result, and the cloud hard disk webpage address is the above webpage address.

在本發明的較佳實施例中,上述之雲端硬碟控制系統實施例更包括一同步控制模組,同步控制模組與處理單元電性耦接,同步控制模組係用以比對一同步雲端硬碟名稱是否存在於上述之禁用列表,並將比對結果傳送至處理單元,處理單元之接收訊號可為同步雲端硬碟名稱比對結果,雲端硬碟網頁地址可為同步雲端硬碟名稱對應之網頁地址。 In a preferred embodiment of the present invention, the cloud hard disk control system embodiment further includes a synchronous control module. The synchronous control module is electrically coupled to the processing unit, and the synchronous control module is used for synchronization. Whether the cloud hard disk name exists in the disabled list and transmits the comparison result to the processing unit. The receiving signal of the processing unit may be a synchronous cloud hard disk name comparison result, and the cloud hard disk web address may be a synchronous cloud hard disk name. Corresponding web address.

在本發明的較佳實施例中,上述之雲端硬碟控制系統實施例更包括一文件編輯控制模組,文件編輯控制模組與處理單元電性耦接,文件編輯控制模組係用以編輯儲存於上述之儲存單元之一文件上傳設定檔案。 In a preferred embodiment of the present invention, the cloud hard disk control system embodiment further includes a file editing control module, the file editing control module is electrically coupled to the processing unit, and the file editing control module is used for editing. A file upload setting file stored in one of the above storage units.

本發明更提出一種雲端硬碟控制系統之操作方法實施例,其步驟包括:判斷是否限制存取一雲端硬碟;以及當判斷為是,限制存取該雲端硬碟。 The present invention further provides an embodiment of an operating method of the cloud hard disk control system, the steps of which include: determining whether to restrict access to a cloud hard disk; and when determining to be, restricting access to the cloud hard disk.

在本發明的較佳實施例中,其中該雲端硬碟控制系統包括一網頁控制模組、一網路單元以及一處理單元,上述之雲端硬碟控制系統之操作方法實施例更包括:使網頁控制模組擷取一顯示螢幕顯示之一網頁地址,並將網頁地址轉換為對應之一網路協定位址,以比對網頁地址或網路協定位址是否存在於一禁用列表中;以及當網頁地址或網路協定位址存在於禁用列表中,使處理單元禁止網路單元與網頁地址連線。 In a preferred embodiment of the present invention, the cloud hard disk control system includes a webpage control module, a network unit, and a processing unit. The operating method of the cloud hard disk control system further includes: The control module captures a webpage address of a display screen and converts the webpage address into a corresponding network protocol address to compare whether the webpage address or the network protocol address exists in a disabled list; The web page address or network protocol address exists in the disabled list, causing the processing unit to disable the network unit from connecting to the web page address.

在本發明的較佳實施例中,其中該雲端硬碟控制系統包括一同步控制模組,上述之雲端硬碟控制系統之操作方法實施例更包括:使同步控制模組比對一同步雲端硬碟名稱是否存在於一禁用列表;以及當同步雲端硬碟名稱存在於禁用列表,使處理單元禁止網路單元與同步雲端硬碟名稱對應之網頁地址連線。 In a preferred embodiment of the present invention, the cloud hard disk control system includes a synchronous control module, and the operating method of the cloud hard disk control system includes: synchronizing the synchronous control module with a synchronous cloud. Whether the disc name exists in a disabled list; and when the synchronous cloud hard disk name exists in the disabled list, the processing unit prohibits the network unit from connecting to the web address corresponding to the synchronous cloud hard disk name.

在本發明的較佳實施例中,其中該雲端硬碟控制系統包括一文件編輯控制模組,文件編輯模組與處理單元電性耦接,雲端硬碟控制系統之操作方法之步驟更包括:使文件編輯控制模組編輯一文件上傳設定檔案,關閉文件上傳設定檔案對應之上傳功能。 In a preferred embodiment of the present invention, the cloud hard disk control system includes a file editing control module, and the file editing module is electrically coupled to the processing unit. The steps of the operating method of the cloud hard disk control system further include: The file editing control module edits a file upload setting file, and closes the upload function corresponding to the file upload setting file.

根據上述之內容,本發明之雲端硬碟控制系統及其操作方法實施例因可判斷電子裝置是否欲透過網頁連線至一雲端硬碟,或者直接禁止以其他方式連線至雲端硬碟,因此可有效防止資料被隨意上傳至雲端硬碟,有效保護企業重要機密資料。 According to the foregoing, the cloud hard disk control system and the method for operating the same according to the present invention can determine whether the electronic device wants to connect to a cloud hard disk through a webpage, or directly prohibits the connection to the cloud hard disk by other means. It can effectively prevent data from being uploaded to the cloud hard disk at will, effectively protecting important confidential information of the enterprise.

為讓本發明之上述和其他目的、特徵和優點能更明顯易懂,下文特舉較佳實施例並配合所附圖式做詳細說明 如下。 The above and other objects, features, and advantages of the present invention will become more apparent and understood. as follows.

10‧‧‧控制終端 10‧‧‧Control terminal

11‧‧‧使用者終端 11‧‧‧User terminal

12‧‧‧區域網路 12‧‧‧Regional Network

13‧‧‧網際網路 13‧‧‧Internet

14‧‧‧儲存單元 14‧‧‧storage unit

15‧‧‧顯示單元 15‧‧‧Display unit

16‧‧‧顯示螢幕 16‧‧‧ Display screen

17‧‧‧網路單元 17‧‧‧Network Unit

20‧‧‧雲端硬碟控制系統 20‧‧‧Cloud Hard Disk Control System

21‧‧‧接收單元 21‧‧‧ Receiving unit

22‧‧‧處理單元 22‧‧‧Processing unit

23‧‧‧網頁控制模組 23‧‧‧Web Control Module

231‧‧‧擷取單元 231‧‧‧Capture unit

232‧‧‧網頁地址/網路協定位址轉換單元 232‧‧‧Web Address/Network Protocol Address Conversion Unit

233‧‧‧比對單元233 233‧‧‧ Alignment unit 233

24‧‧‧同步控制模組 24‧‧‧Synchronous Control Module

25‧‧‧文件編輯控制模組 25‧‧‧File editing control module

301、302、303、304、305、401、402、501‧‧‧步驟 301, 302, 303, 304, 305, 401, 402, 501 ‧ ‧ steps

圖1為組織架構示意圖。 Figure 1 is a schematic diagram of the organizational structure.

圖2為本發明之雲端硬碟控制系統實施例示意圖。 2 is a schematic diagram of an embodiment of a cloud hard disk control system according to the present invention.

圖3A為本發明之雲端硬碟控制系統操作方法實施例一示意圖。 FIG. 3A is a schematic diagram of Embodiment 1 of a method for operating a cloud hard disk control system according to the present invention.

圖3B為顯示畫面實施例一示意圖。 FIG. 3B is a schematic diagram of a first embodiment of a display screen.

圖3C為顯示畫面實施例二示意圖。 FIG. 3C is a schematic diagram of the second embodiment of the display screen.

圖4為本發明之雲端硬碟控制系統操作方法實施例二示意圖。 4 is a schematic diagram of Embodiment 2 of a method for operating a cloud hard disk control system according to the present invention.

圖5為本發明之雲端硬碟控制系統操作方法實施例三示意圖。 FIG. 5 is a schematic diagram of Embodiment 3 of a method for operating a cloud hard disk control system according to the present invention.

圖1為企業或公司等大型組織中現行的組織架構示意圖,其包括至少一個控制終端10以及多個使用者終端11,控制終端10可以為桌上型電腦或筆記型電腦等電子裝置,並為資訊管理人員的使用者所使用,用以管理多個使用者終端11,而使用者終端11可以為桌上型電腦、筆記型電腦或平板電腦等電子裝置,其使用者為企業或公司中非資訊管理人員的員工,而每一個控制終端10以及使用者終端11皆與內部之區域網路12電性耦接,每一個控制終端10以及使用者終端11再透過區域網路12與外部的一網際網路13來連線。 1 is a schematic diagram of an existing organizational structure in a large organization such as a company or a company, including at least one control terminal 10 and a plurality of user terminals 11, and the control terminal 10 may be an electronic device such as a desktop computer or a notebook computer, and The user of the information management staff is used to manage a plurality of user terminals 11, and the user terminal 11 can be an electronic device such as a desktop computer, a notebook computer or a tablet computer, and the user is a company or a company. Each of the control terminal 10 and the user terminal 11 is electrically coupled to the internal area network 12, and each of the control terminal 10 and the user terminal 11 transmits the external network 12 and the external one. Internet 13 is connected.

圖2為本發明之雲端硬碟控制系統20實施例,可適用於上述之控制終端10以及使用者終端11,且資訊管理人員的使用者可透過圖1之控制終端10以及區域網路12對使用者終端11之雲端硬碟控制系統20進行設定或控制,以禁止使用者終端11透過網際網路13與Google Drive、Dropbox或OneDrive等雲端硬碟連線。接著請繼續參考圖2,雲端硬碟控制系統20包括一接收單元21、一處理單元22、一網頁控制模組23、一同步控制模組24以及一文件編輯控制模組25,處理單元22、網頁控制模組23、同步控制模組24以及文件編輯控制模組25並與一儲存單元14電性耦接,此儲存單元14可以為控制終端10以及使用者終端11之儲存裝置或儲存空間,例如硬碟。 2 is an embodiment of the cloud hard disk control system 20 of the present invention, which can be applied to the control terminal 10 and the user terminal 11 described above, and the user of the information management personnel can access the control terminal 10 and the regional network 12 of FIG. The cloud hard disk control system 20 of the user terminal 11 performs setting or control to prohibit the user terminal 11 from connecting to the cloud hard disk such as Google Drive, Dropbox or OneDrive through the Internet 13. Referring to FIG. 2, the cloud hard disk control system 20 includes a receiving unit 21, a processing unit 22, a webpage control module 23, a synchronization control module 24, and a file editing control module 25, and a processing unit 22, The webpage control module 23, the synchronization control module 24, and the file editing control module 25 are electrically coupled to a storage unit 14. The storage unit 14 can be a storage device or a storage space of the control terminal 10 and the user terminal 11. For example, a hard drive.

儲存單元14是用以儲存一禁用列表、一文件上傳設定檔案、一禁用文件設定檔案以及一加密網頁地址連線資訊等檔案,上述之禁用列表更包括一禁用雲端硬碟名稱列表、對應禁用雲端硬碟名稱的一禁用網路協定位址資訊列表、對應禁用雲端硬碟名稱的一禁用同步程式名稱列表以及對應禁用雲端硬碟名稱的一禁用關鍵字列表,其中,禁用雲端硬碟名稱列表的內容即為禁止使用的雲端硬碟所對應的名稱,例如Dropbox、Google Drive以及Evernote等,禁用網路協定位址資訊列表的內容即為上述之每一個雲端硬碟所對應之多個網路協定位址,禁用同步程式名稱列表之內容即為上述之每一個雲端硬碟所對應之同步程式的名稱,例如Dropbox之同步程式的名稱為dropbox.exe、Google Drive所對應之同步程式的名稱為googledrivesync.exe等,禁用關鍵字列表的內容則是連線至特定雲端硬碟可能會使用之關鍵字,例如: 若欲連線至Google Drive,其網頁地址會出現drive.google的字串,drive.google即可為對應Google Drive之禁用關鍵字。雲端硬碟控制系統20並會持續更新禁用列表以及禁用文件設定檔案之內容,例如禁用網路協定位址資訊列表,由於每一雲端硬碟會對應到多個網路協定位址,又這些網路協定位址會根據一固定週期改變,故雲端硬碟控制系統20需要持續更新禁用網路協定位址資訊列表以避免判斷錯誤。處理單元22並與一顯示單元15電性耦接,顯示單元15是用以輸出一顯示畫面資料至一顯示螢幕16,使顯示螢幕16可根據顯示畫面資料顯示對應的顯示畫面,處理單元22更與一網路單元17電性耦接,使雲端硬碟控制系統20可透過網路單元17與上述之網際網路13連線。 The storage unit 14 is configured to store a disabled list, a file upload setting file, a disabled file setting file, and an encrypted web address connection information. The disabled list further includes a list of disabled cloud hard disk names, corresponding to the disabled cloud. a list of disabled network protocol address information for the hard disk name, a list of disabled sync program names corresponding to the name of the disabled cloud hard disk, and a list of disabled keywords corresponding to the name of the disabled cloud hard disk, wherein the list of cloud hard disk names is disabled The content is the name of the cloud drive that is forbidden, such as Dropbox, Google Drive, and Evernote. The content of the disabled network address information list is the multiple network protocols corresponding to each of the above mentioned cloud hard disks. Address, disable the name of the synchronization program name list is the name of the synchronization program corresponding to each of the above mentioned cloud hard disks. For example, the name of the synchronization program of Dropbox is dropbox.exe, and the name of the synchronization program corresponding to Google Drive is googledrivesync. .exe, etc., disabling the content of the keyword list is to connect to a specific cloud You can use the keyword, for example: If you want to connect to Google Drive, the drive.google string will appear on the web address, and drive.google will be the disabled keyword for Google Drive. The cloud hard disk control system 20 will continue to update the disabled list and disable the contents of the file configuration file, such as disabling the network protocol address information list, since each cloud hard disk corresponds to multiple network protocol addresses, and these networks The road protocol address will change according to a fixed period, so the cloud hard disk control system 20 needs to continuously update the disabled network protocol address information list to avoid judgment errors. The processing unit 22 is electrically coupled to a display unit 15 for outputting a display screen data to a display screen 16, so that the display screen 16 can display a corresponding display screen according to the display screen data, and the processing unit 22 further The network unit 17 is electrically coupled to enable the cloud hard disk control system 20 to connect to the Internet 13 through the network unit 17.

上述之接收單元21是用以接收資訊管理人員或其他員工等使用者以鍵盤或滑鼠等輸入裝置輸入之操作訊號,並將接收的操作訊號傳送至處理單元22,使處理單元22可根據不同的操作訊號內容進行對應的動作。網頁控制模組23與處理單元22電性耦接,網頁控制模組23更包括一擷取單元231、一網頁地址/網路協定位址轉換單元232以及一比對單元233,擷取單元231是用以擷取一網頁地址,此網頁地址是顯示於上述之顯示螢幕16,且是顯示於目前的顯示畫面中的網址欄位中,網頁地址/網路協定位址轉換單元232則係用以將擷取單元231所擷取的網頁地址轉換為對應的網路協定位址,也就是IP位址,而比對單元233則是用以將網頁地址與上述之禁用關鍵字列表比對,確認擷取單元231所擷取的網頁地址是否包含禁用的關鍵字,此外,為了避免發生網頁地址不包含禁用關鍵字,但網頁地址對應之網路協定位址 為禁用之網路協定位址的情況,因此比對單元233更用以比對網路協定位址與上述之禁用網路協定位址資訊列表,確認網路協定位址是否存在於禁用網路協定位址資訊列表中,比對單元233並將比對後的比對結果傳送至處理單元22,使處理單元22根據比對結果決定是否允許與擷取單元231所擷取的網頁地址連線。 The receiving unit 21 is configured to receive an operation signal input by a user such as an information management personnel or other employees by using an input device such as a keyboard or a mouse, and transmit the received operation signal to the processing unit 22, so that the processing unit 22 can be different according to the processing unit 22 The operation signal content performs the corresponding action. The webpage control module 23 is electrically coupled to the processing unit 22. The webpage control module 23 further includes a capture unit 231, a webpage address/network protocol address translation unit 232, and a comparison unit 233. The capture unit 231 The web address/network protocol address conversion unit 232 is used to capture a webpage address displayed on the display screen 16 and displayed in the current webpage of the current display screen. The webpage address retrieved by the capturing unit 231 is converted into a corresponding network protocol address, that is, an IP address, and the comparing unit 233 is configured to compare the webpage address with the disabled keyword list. It is confirmed whether the webpage address retrieved by the capturing unit 231 includes a disabled keyword, and in addition, in order to avoid occurrence of a webpage address that does not include a disabled keyword, but the webpage address corresponding to the webpage address In the case of a disabled network protocol address, the comparison unit 233 is further configured to compare the network protocol address with the above-mentioned list of disabled network protocol address information, and confirm whether the network protocol address exists in the disabled network. In the agreement address information list, the comparison unit 233 transmits the compared comparison result to the processing unit 22, so that the processing unit 22 determines whether to allow the webpage address retrieved by the capture unit 231 to be connected according to the comparison result. .

同步控制模組24與處理單元22電性耦接,同步控制模組24係用以比對操作訊號中所包含的一同步雲端硬碟名稱是否存在於上述之禁用同步程式名稱列表中,並將比對結果傳送至處理單元22,使處理單元22根據比對結果決定是否允許執行此同步雲端硬碟名稱對應之同步操作。 The synchronization control module 24 is electrically coupled to the processing unit 22, and the synchronization control module 24 is configured to compare whether a synchronous cloud hard disk name included in the operation signal exists in the disabled synchronization program name list, and The comparison result is transmitted to the processing unit 22, so that the processing unit 22 determines whether to allow the synchronization operation corresponding to the synchronous cloud hard disk name to be performed according to the comparison result.

文件編輯控制模組25與處理單元22電性耦接,處理單元22根據所接收的操作訊號使文件編輯控制模組25讀取上述之文件上傳設定檔案以及禁用文件設定檔案,其中文件上傳設定檔案為文書編輯程式內建之上傳設定檔案,此上傳設定檔案對應於文書編輯程式內建的上傳功能,如WORD文件之上傳設定檔案、PDF文件上傳設定檔案等,文件編輯控制模組25接收到文件上傳設定檔案以及禁用文件設定檔案後,使原始的文件上傳設定檔案以禁用文件設定檔案進行編輯,將文書編輯程式內建的上傳功能關閉,避免員工等使用者藉由此功能將資料上傳至對應的雲端硬碟中。 The file editing control module 25 is electrically coupled to the processing unit 22, and the processing unit 22 causes the file editing control module 25 to read the file upload setting file and the file setting file, and the file upload setting file, according to the received operation signal. The upload setting file built in the document editing program corresponds to the upload function built in the document editing program, such as the WORD file upload setting file, the PDF file upload setting file, etc., and the file editing control module 25 receives the file. After uploading the configuration file and disabling the file setting file, the original file uploading configuration file is disabled to disable the file setting file for editing, and the built-in upload function of the document editing program is closed, so that employees and other users can upload the data to the corresponding function by using this function. In the cloud hard drive.

圖3A為本發明之雲端硬碟控制系統之操作方法實施例一,以下將配合圖2以及圖3A來說明。 FIG. 3A is a first embodiment of a method for operating a cloud hard disk control system according to the present invention, which will be described below with reference to FIG. 2 and FIG. 3A.

首先當接收單元21所接收的操作訊號為一網頁連線操作訊號,也就是使用者欲透過網頁與網際網路13連線時,處理器22首先會先判斷雲端硬碟控制系統20是否允許 使用加密連線(步驟301),處理器22會讀取儲存於儲存單元14的加密網頁地址連線資訊,加密網頁地址連線資訊包含是否允許加密連線之資訊,且資訊管理人員的使用者可編輯此加密網頁地址連線資訊,因此處理器22根據加密網頁地址連線資訊的內容判斷是否允許使用加密連線,若不允許使用加密連線,則處理器22會使網路單元17禁止網頁的連線,處理器22並會使顯示單元15輸出禁止連線之顯示畫面資料至顯示螢幕16顯示,因此使用者會藉由顯示螢幕16得到禁止連線之資訊,如圖3B所示,即為禁止連線之顯示畫面實施例。反之,若允許使用加密連線,則進行下一步驟302。在步驟302中,擷取單元231會由顯示螢幕16之目前顯示畫面中擷取一網址欄位中的網頁地址,如圖3C所示,虛線所圍起之範圍即所述之網址欄位,網址欄位中的文字https://drive.google.com即為所述之網頁地址,也就是使用者欲進行網路連線的網頁地址,接著網頁地址/網路協定位址轉換單元232會將網頁地址轉換為對應的網路協定位址(步驟303),比對單元233接收上述之網頁地址以及網路協定位址,並將網頁地址與禁用關鍵字列表比對,將網路協定位址與上述之禁用網路協定位址資訊列表比對,比對單元233並將比對結果傳送至處理單元22(步驟304),若網頁地址存在禁用關鍵字列表中的關鍵字或者網路協定位址存在於禁用網路協定位址資訊列表中,則禁止使用者存取此網頁地址(步驟305),並在顯示螢幕16顯示圖3B所示之禁止連線之顯示畫面。反之,若網頁地址不存在禁用關鍵字列表中的關鍵字,又網路協定位址也不存在於禁用網路協定位址資訊列表中,則允許使用者可連線至擷取的網頁地址,並可存取網頁地址所對應 之雲端硬碟。 First, when the operation signal received by the receiving unit 21 is a webpage operation signal, that is, when the user wants to connect to the Internet 13 through the webpage, the processor 22 first determines whether the cloud hard disk control system 20 allows. Using the encrypted connection (step 301), the processor 22 reads the encrypted web address connection information stored in the storage unit 14, and encrypts the web address connection information including whether to allow the encrypted connection information, and the user of the information management personnel The encrypted web page address connection information can be edited, so the processor 22 determines whether to allow the use of the encrypted connection according to the content of the encrypted web address connection information. If the encrypted connection is not allowed, the processor 22 disables the network unit 17. When the webpage is connected, the processor 22 causes the display unit 15 to output the display data of the forbidden connection to the display screen 16. Therefore, the user can obtain the information of the connection prohibition by displaying the screen 16, as shown in FIG. 3B. This is an example of a display screen in which connection is prohibited. Conversely, if an encrypted connection is allowed, proceed to the next step 302. In step 302, the capturing unit 231 extracts the webpage address in a webpage field from the current display screen of the display screen 16, as shown in FIG. 3C, and the range enclosed by the dotted line is the webpage field. The text https://drive.google.com in the URL field is the address of the webpage, that is, the webpage address of the user who wants to connect to the Internet, and then the webpage address/network protocol address conversion unit 232 will Converting the webpage address to the corresponding network protocol address (step 303), the comparing unit 233 receives the webpage address and the network protocol address, and compares the webpage address with the disabled keyword list, and sets the network protocol bit. The address is compared with the above-mentioned list of disabled network protocol address information, the comparison unit 233 transmits the comparison result to the processing unit 22 (step 304), if the webpage address exists in the keyword or network protocol in the disabled keyword list The address exists in the list of disabled network protocol address information, and the user is prohibited from accessing the webpage address (step 305), and the display screen of the forbidden connection shown in FIG. 3B is displayed on the display screen 16. Conversely, if the webpage address does not have a keyword in the disabled keyword list, and the network protocol address does not exist in the disabled network protocol address information list, the user is allowed to connect to the retrieved webpage address. And can access the web address corresponding to Cloud hard drive.

請參考圖4,圖4為本發明之雲端硬碟控制系統之操作方法實施例二,由於除了透過網頁與雲端硬碟連線外,使用者更可透過對應雲端硬碟的同步資料夾來存取雲端硬碟,而同步資料夾對應一同步程式,使同步資料夾的資料可藉由同步程式的執行而將資料上傳至雲端硬碟。因此,當接收單元21所接收的操作訊號為一同步資料夾操作訊號時,處理單元22會使同步控制模組24比對同步資料夾操作訊號中所包含的一同步雲端硬碟名稱(步驟401),此同步雲端硬碟名稱對應至同步程式之名稱,例如上述之googledrivesync.exe,同步控制模組24並將同步雲端硬碟名稱與禁用同步程式名稱列表比對,確認同步雲端硬碟名稱是否存在於禁用同步程式名稱列表中,若同步雲端硬碟名稱不存在於禁用同步程式名稱列表中,則允許執行此同步程式(步驟402),使用者可藉由同步資料夾存取雲端硬碟的資料,反之,若同步雲端硬碟名稱存在於禁用同步程式名稱列表中,則禁止執行此同步程式(步驟403),因此使用者將無法透過同步資料夾存取雲端硬碟的資料。 Please refer to FIG. 4. FIG. 4 is a second embodiment of the operation method of the cloud hard disk control system according to the present invention. In addition to connecting to the cloud hard disk through the webpage, the user can save the data through the synchronization folder corresponding to the cloud hard disk. The cloud hard disk is captured, and the synchronization folder corresponds to a synchronization program, so that the data of the synchronization folder can be uploaded to the cloud hard disk by the execution of the synchronization program. Therefore, when the operation signal received by the receiving unit 21 is a synchronous folder operation signal, the processing unit 22 causes the synchronization control module 24 to compare the name of a synchronous cloud hard disk included in the synchronization folder operation signal (step 401). ), the synchronous cloud hard disk name corresponds to the name of the synchronization program, such as the above googledrivesync.exe, the synchronization control module 24 compares the synchronous cloud hard disk name with the disabled synchronization program name list, and confirms whether the synchronous cloud hard disk name is Exist in the list of disabled sync programs. If the sync cloud hard drive name does not exist in the list of disabled sync programs, the sync program is allowed to execute (step 402), and the user can access the cloud hard drive by synchronizing the folder. Data, on the other hand, if the synchronous cloud hard disk name exists in the disabled sync program name list, the execution of the sync program is prohibited (step 403), so the user cannot access the data of the cloud hard disk through the sync folder.

此外,部分如OFFICE等文書編輯程式已內建了可將文件直接另存上傳至雲端硬碟之功能,為了限制此存取方式,本發明更提出了雲端硬碟控制系統之操作方法實施例三,請參考圖5,當接收單元21所接收的操作訊號為一文件編輯操作訊號時,處理單元22使文件編輯控制模組25根據文件編輯操作訊號決定是否關閉文書編輯程式內建之上傳功能(步驟501),若文件編輯操作訊號為關閉文書編輯程式內建之上傳功能,則文件編輯控制模組25會讀取上述之文件上傳 設定檔案以及禁用文件設定檔案,文件編輯控制模組25接收到文件上傳設定檔案以及禁用文件設定檔案後,使原始的文件上傳設定檔案以禁用文件設定檔案進行編輯,將文書編輯程式登出對應的雲端硬碟並將內建的上傳功能關閉,避免使用者在編輯文件的過程中藉由此功能將資料上傳至對應的雲端硬碟中,其中,更僅有資訊管理人員的使用者能編輯此文件設定檔案。 In addition, part of the document editing program such as OFFICE has built-in function of uploading the file directly to the cloud hard disk. In order to limit the access mode, the present invention further proposes the third embodiment of the operation method of the cloud hard disk control system. Referring to FIG. 5, when the operation signal received by the receiving unit 21 is a file editing operation signal, the processing unit 22 causes the file editing control module 25 to determine whether to close the built-in upload function of the document editing program according to the file editing operation signal (step 501), if the file editing operation signal is to close the upload function built in the document editing program, the file editing control module 25 reads the above file uploading After setting the file and disabling the file setting file, after receiving the file upload setting file and disabling the file setting file, the file editing control module 25 causes the original file to be uploaded to the setting file to disable the file setting file for editing, and the document editing program is deleted. The cloud hard disk and the built-in upload function are turned off, so that the user can upload the data to the corresponding cloud hard disk by using the function in the process of editing the file, and only the user of the information management staff can edit the file. File settings file.

綜以上所述,由於本發明之雲端硬碟控制系統以及其操作方法可有效禁止使用者藉由網頁、同步資料夾或文件編輯程式內建的上傳功能等不同管道與雲端硬碟連線,並可同時控管上述之連線方式以有效減少資料被擅自上傳至雲端硬碟的情況發生,大幅減少機密資料被隨意公開的風險。 In summary, the cloud hard disk control system of the present invention and the operation method thereof can effectively prohibit users from connecting to the cloud hard disk through different pipes such as a webpage, a synchronization folder, or an upload function built in a file editing program, and The above connection method can be controlled at the same time to effectively reduce the occurrence of unauthorized uploading of data to the cloud hard disk, and greatly reduce the risk of confidential information being arbitrarily disclosed.

雖然本發明已以實施例揭露如上,然其並非用以限定本發明,任何熟習此技術者,在不脫離本發明之精神和範圍內,當可做些許之更動與潤飾,因此本發明之保護範圍當視後付之申請專利範圍所界定者為準。 Although the present invention has been disclosed in the above embodiments, it is not intended to limit the present invention. Any one skilled in the art can make some modifications and retouchings without departing from the spirit and scope of the present invention. The scope is subject to the definition of the patent application scope.

14‧‧‧儲存單元 14‧‧‧storage unit

15‧‧‧顯示單元 15‧‧‧Display unit

16‧‧‧顯示螢幕 16‧‧‧ Display screen

17‧‧‧網路單元 17‧‧‧Network Unit

20‧‧‧雲端硬碟控制系統 20‧‧‧Cloud Hard Disk Control System

21‧‧‧接收單元 21‧‧‧ Receiving unit

22‧‧‧處理單元 22‧‧‧Processing unit

23‧‧‧網頁控制模組 23‧‧‧Web Control Module

231‧‧‧擷取單元 231‧‧‧Capture unit

232‧‧‧網頁地址/網路協定位址轉換單元 232‧‧‧Web Address/Network Protocol Address Conversion Unit

233‧‧‧比對單元233 233‧‧‧ Alignment unit 233

24‧‧‧同步控制模組 24‧‧‧Synchronous Control Module

25‧‧‧文件編輯控制模組 25‧‧‧File editing control module

Claims (10)

一種雲端硬碟控制系統,其包括:一網頁控制模組,該網頁控制模組係用以擷取一顯示螢幕所顯示的一網址欄位所顯示之一網頁地址,並將該網頁地址轉換為對應之一網路協定位址,該網頁控制模組比對該網頁地址或該網路協定位址是否存在於一儲存單元之一禁用列表中,該網頁控制模組並據以輸出一比對結果至該處理單元;一網路單元,係用以與一網際網路電性耦接;以及一處理單元,與該網頁控制模組以及該網路單元電性耦接,該處理單元係根據一接收訊號決定是否使該網路單元與一雲端硬碟網頁地址連線,其中該接收訊號為該比對結果,該雲端硬碟網頁地址為該網頁地址。 A cloud hard disk control system includes: a webpage control module, wherein the webpage control module is configured to capture a webpage address displayed by a webpage field displayed on a display screen, and convert the webpage address into Corresponding to one of the network protocol addresses, the webpage control module compares the webpage address or the network protocol address in a disabled list of a storage unit, and the webpage control module outputs a comparison Resulting in the processing unit; a network unit is electrically coupled to an internet network; and a processing unit is electrically coupled to the webpage control module and the network unit, the processing unit is A receiving signal determines whether the network unit is connected to a cloud hard disk webpage address, wherein the receiving signal is the comparison result, and the cloud hard disk webpage address is the webpage address. 如請求項1所述之雲端硬碟控制系統,該網頁控制模組包括:一擷取單元,係用以擷取該網址欄位所顯示之該網頁地址;一網頁地址/網路協定位址轉換單元,與該擷取單元電性耦接,係用以將該網頁地址轉換為對應之該網路協定位址;以及一比對單元,與該擷取單元以及該網頁地址/網路協定位址轉換單元電性耦接,係用以比對該網頁地址或該網路協定位址是否存在於該儲存單元之該禁用列表中。 The cloud hard disk control system of claim 1, wherein the webpage control module comprises: a capture unit for extracting the webpage address displayed by the webpage field; a webpage address/network protocol address a conversion unit electrically coupled to the retrieval unit for converting the webpage address to the corresponding network protocol address; and a comparison unit, the retrieval unit, and the webpage address/network agreement The address translation unit is electrically coupled to determine whether the web page address or the network protocol address exists in the disabled list of the storage unit. 如請求項1所述之雲端硬碟控制系統,其更包括:一同步控制模組,與該處理單元電性耦接,該同步控制模組係用以比對一同步雲端硬碟名稱是否存在於該禁用列表,並將比對結果傳送至該處理單元,該處理單元之該接收訊號為該同步雲端硬碟名稱比對結果,該雲端硬碟網頁地址為該同步雲端硬碟名稱對應之網頁地址。 The cloud hard disk control system of claim 1, further comprising: a synchronous control module electrically coupled to the processing unit, wherein the synchronous control module is configured to compare whether a synchronous cloud hard disk name exists Disabling the list, and transmitting the comparison result to the processing unit, the receiving signal of the processing unit is the synchronization cloud hard disk name comparison result, and the cloud hard disk webpage address is a webpage corresponding to the synchronous cloud hard disk name. address. 如請求項1所述之雲端硬碟控制系統,其更包括:一文件編輯控制模組,與該處理單元電性耦接,該文件編輯控制模組係用以編輯儲存於該儲存單元之一文件上傳設定檔案。 The cloud hard disk control system of claim 1, further comprising: a file editing control module electrically coupled to the processing unit, the file editing control module being used for editing and storing in the storage unit File upload settings file. 如請求項4所述之雲端硬碟控制系統,其中,該文件編輯控制模組係用以根據一禁用文件設定檔案來編輯儲存於該儲存單元之該文件上傳設定檔案。 The cloud hard disk control system of claim 4, wherein the file editing control module is configured to edit the file upload setting file stored in the storage unit according to a disabled file setting file. 如請求項1所述之雲端硬碟控制系統,其中,該儲存單元更儲存一加密網頁地址連線資訊。 The cloud hard disk control system of claim 1, wherein the storage unit further stores an encrypted web address connection information. 一種雲端硬碟控制系統之操作方法,其中該雲端硬碟控制系統包括一網頁控制模組、一同步控制模組、一網路單元以及一處理單元,該同步控制模組與該處理單元電性耦接,該雲端硬碟控制系統之操作方法包括以下步驟: 該處理單元判斷是否限制存取一雲端硬碟;以及當判斷為是,限制存取該雲端硬碟,擷取一顯示螢幕顯示之一網頁地址,並將該網頁地址轉換為對應之一網路協定位址,以比對該網頁地址、該網路協定位址或一同步雲端硬碟名稱是否存在於一禁用列表中;以及當該網頁地址、該網路協定位址或該同步雲端硬碟名稱存在於該禁用列表中,使該處理單元禁止該網路單元與該網頁地址連線或該同步雲端硬碟名稱對應之網頁地址連線。 The operating method of the cloud hard disk control system, wherein the cloud hard disk control system comprises a webpage control module, a synchronous control module, a network unit and a processing unit, and the synchronous control module and the processing unit are electrically The operating method of the cloud hard disk control system includes the following steps: The processing unit determines whether to restrict access to a cloud hard disk; and when it is determined to be, restrict access to the cloud hard disk, capture a webpage address of a display screen, and convert the webpage address into a corresponding one of the network addresses a protocol address to compare whether the web page address, the network protocol address, or a synchronous cloud hard disk name exists in a disabled list; and when the web page address, the network protocol address, or the synchronous cloud hard disk The name exists in the disabled list, so that the processing unit prohibits the network unit from connecting to the webpage address or the webpage address corresponding to the synchronous cloud hard disk name. 如請求項7所述之雲端硬碟控制系統之操作方法,其步驟更包括:使該處理單元判斷該網路單元是否可與一加密網頁地址連線。 The operating method of the cloud hard disk control system according to claim 7, the method further comprising: causing the processing unit to determine whether the network unit can be connected to an encrypted webpage address. 如請求項7所述之雲端硬碟控制系統之操作方法,其中,該雲端硬碟控制系統更包括一文件編輯控制模組,該文件編輯模組與該處理單元電性耦接,該雲端硬碟控制系統之操作方法之步驟更包括:使該文件編輯控制模組編輯一文件上傳設定檔案,關閉該文件上傳設定檔案對應之上傳功能。 The operating method of the cloud hard disk control system of claim 7, wherein the cloud hard disk control system further comprises a file editing control module, the file editing module is electrically coupled to the processing unit, and the cloud is hard The step of operating the disc control system further includes: causing the file editing control module to edit a file upload setting file, and closing the upload function corresponding to the file upload setting file. 如請求項9所述之雲端硬碟控制系統之操作方法,其中,使該文件編輯控制模組編輯一文件上傳設定檔案更包括: 使該文件編輯控制模組根據一禁用文件設定檔案來編輯一文件上傳設定檔案。 The operating method of the cloud hard disk control system of claim 9, wherein the file editing control module editing a file upload setting file further comprises: The file editing control module is caused to edit a file upload setting file according to a disabled file setting file.
TW104123738A 2015-07-22 2015-07-22 Cloud storage control system and operating method thereof TWI569154B (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
TW104123738A TWI569154B (en) 2015-07-22 2015-07-22 Cloud storage control system and operating method thereof
CN201510660500.2A CN106371760B (en) 2015-07-22 2015-10-14 cloud hard disk control system and operation method thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
TW104123738A TWI569154B (en) 2015-07-22 2015-07-22 Cloud storage control system and operating method thereof

Publications (2)

Publication Number Publication Date
TWI569154B true TWI569154B (en) 2017-02-01
TW201705014A TW201705014A (en) 2017-02-01

Family

ID=57880458

Family Applications (1)

Application Number Title Priority Date Filing Date
TW104123738A TWI569154B (en) 2015-07-22 2015-07-22 Cloud storage control system and operating method thereof

Country Status (2)

Country Link
CN (1) CN106371760B (en)
TW (1) TWI569154B (en)

Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPS562265B2 (en) * 1976-02-25 1981-01-19
TWI240182B (en) * 2001-11-14 2005-09-21 Systex Corp Network database management system and the method thereof
TW201003387A (en) * 2008-07-14 2010-01-16 Quanta Storage Inc Device and method for simulating storage apparatus
TW201220784A (en) * 2010-11-12 2012-05-16 Nat Taichung Inst Of Technology which comprises a portable access device which stores a personal firewall including an access control table, the secure webpage control, the application program management, and the account management configure
TW201312989A (en) * 2011-09-07 2013-03-16 Cal Comp Electronics & Comm Co Network apparatus with fax function
TWM453198U (en) * 2011-11-23 2013-05-11 Chunghwa Telecom Co Ltd USB set top box device
TWI470458B (en) * 2006-10-17 2015-01-21 Jiunn Sheng Yan A method and device for controlling control
EP2224679B1 (en) * 2009-02-27 2015-05-06 BlackBerry Limited Remote administration of mobile wireless devices

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102984020B (en) * 2011-09-07 2015-06-17 天讯天网(福建)网络科技有限公司 Cloud-computation-based net surfing monitoring method and monitoring system and monitoring server
CN102497632A (en) * 2011-11-30 2012-06-13 北京百纳威尔科技有限公司 Smart-phone-based webpage access control method, system and smart phone
CN103532917A (en) * 2012-07-06 2014-01-22 天讯天网(福建)网络科技有限公司 Website-filtering method based on mobile Internet and cloud computing

Patent Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JPS562265B2 (en) * 1976-02-25 1981-01-19
TWI240182B (en) * 2001-11-14 2005-09-21 Systex Corp Network database management system and the method thereof
TWI470458B (en) * 2006-10-17 2015-01-21 Jiunn Sheng Yan A method and device for controlling control
TW201003387A (en) * 2008-07-14 2010-01-16 Quanta Storage Inc Device and method for simulating storage apparatus
EP2224679B1 (en) * 2009-02-27 2015-05-06 BlackBerry Limited Remote administration of mobile wireless devices
TW201220784A (en) * 2010-11-12 2012-05-16 Nat Taichung Inst Of Technology which comprises a portable access device which stores a personal firewall including an access control table, the secure webpage control, the application program management, and the account management configure
TW201312989A (en) * 2011-09-07 2013-03-16 Cal Comp Electronics & Comm Co Network apparatus with fax function
TWM453198U (en) * 2011-11-23 2013-05-11 Chunghwa Telecom Co Ltd USB set top box device

Also Published As

Publication number Publication date
TW201705014A (en) 2017-02-01
CN106371760B (en) 2019-06-11
CN106371760A (en) 2017-02-01

Similar Documents

Publication Publication Date Title
JP6336675B2 (en) System and method for aggregating information asset metadata from multiple heterogeneous data management systems
US9311326B2 (en) Virtual file system for automated data replication and review
US9716720B2 (en) Unregistered user account generation for content item sharing
US20200412793A1 (en) Link file sharing and synchronization
US9614826B1 (en) Sensitive data protection
US8375103B2 (en) System and method for file access and sharing
CN105009121B (en) Predictive storage service
JP6149434B2 (en) Information processing apparatus, document management server, program, file system
EP3555771B1 (en) Systems and methods for list retrieval in a storage device
US20120222110A1 (en) Data leakage protection in cloud applications
JP5432380B2 (en) Browsing content under corporate digital rights management without client-side access components
US20100185698A1 (en) Method for auto uploading files and related computer-readable medium
US7953894B2 (en) Providing aggregated directory structure
JP2009015585A (en) Management device, network system, program, and management method
US20150020167A1 (en) System and method for managing files
US20160283475A1 (en) File format bundling
Bhat et al. Forensic analysis of sync. com and flipdrive cloud applications on android platform
WO2023246715A1 (en) Network connection control method and apparatus for target application, and electronic device
TWI569154B (en) Cloud storage control system and operating method thereof
US20080270566A1 (en) System and method of hosting or publishing of content
JP6131648B2 (en) DATA MANAGEMENT SYSTEM, INFORMATION SYSTEM, DATA MANAGEMENT METHOD, INFORMATION SYSTEM CONTROL METHOD, PROGRAM FOR THE METHOD, AND RECORDING MEDIUM CONTAINING THE PROGRAM
Quick Forensic Analysis of Cloud Storage Client Data
JP6098134B2 (en) Server apparatus, program, and image display system
Kävrestad et al. Collecting Data
TWI528210B (en) Synchronization apparatus, method, and computer program product thereof