WO2016119125A1 - 文件处理方法及装置 - Google Patents
文件处理方法及装置 Download PDFInfo
- Publication number
- WO2016119125A1 WO2016119125A1 PCT/CN2015/071648 CN2015071648W WO2016119125A1 WO 2016119125 A1 WO2016119125 A1 WO 2016119125A1 CN 2015071648 W CN2015071648 W CN 2015071648W WO 2016119125 A1 WO2016119125 A1 WO 2016119125A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- operation instruction
- file
- virtual operating
- request information
- operating environment
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Images
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/10—Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F16/00—Information retrieval; Database structures therefor; File system structures therefor
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/10—Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
- G06F21/12—Protecting executable software
- G06F21/121—Restricting unauthorised execution of programs
- G06F21/125—Restricting unauthorised execution of programs by manipulating the program code, e.g. source code, compiled code, interpreted code, machine code
- G06F21/126—Interacting with the operating system
Definitions
- the present invention relates to the field of information security technologies, and in particular, to a file processing method and apparatus.
- DRM Digital Rights Management
- Digital Rights Management refers to the protection technology of digital media content applied to electronic devices, which is used to protect the right to use digital content in files during file processing to prevent digital content from being illegally copied.
- DRM technologies have higher requirements on the local operating system of the requesting end, and generally need to be combined with a specific operating system to support multiple operating systems such as windows, MAC, IOS, and Android.
- the embodiment of the invention provides a file processing method and device, which can eliminate the possibility that a file is cracked or transmitted through a hidden channel, and is not limited to a file format, and can support a request end of different operating systems.
- a first aspect of the embodiments of the present invention provides a file processing method, including:
- a second aspect of the embodiments of the present invention provides a file processing apparatus, including:
- a creating unit configured to receive request information sent by the requesting end, and create a virtual operating environment according to the request information
- a projection unit configured to project to the requesting end according to the virtual operating environment, to generate an interaction interface for inputting an operation instruction on the requesting end;
- An obtaining unit configured to acquire the operation instruction
- An execution unit configured to execute the operation instruction.
- the requesting information is sent by the requesting end, so as to trigger the creation of the virtual operating environment according to the request information, and the requesting end is performed according to the virtual operating environment. Projecting to generate an interactive interface for inputting an operation instruction on the request side; when the user inputs an operation instruction on the interaction interface of the request side, the operation instruction is acquired, and the operation instruction is executed. Therefore, in the embodiment of the present invention, the interaction interface of the requesting end is generated according to the virtual operating environment and is generated by the requesting end, which can ensure that the requesting end of the subsequent file processing process and the actual operating environment of the file are isolated from each other.
- the local device does not need to touch the actual file data to complete the reading and writing of the file, so as to prevent the file from being copied or transmitted through the hidden channel, and effectively prevent the file content from being illegally copied.
- the embodiment of the present invention can be based on the file.
- the file format in the request is created, and the virtual operating environment in which the corresponding file operating program is deployed is created to process the file in different file formats, and the implementation is not limited to the file format.
- the local operating system requirement of the requesting end is low in the embodiment of the present invention. Widely applicable to the request side of different operating systems such as Windows, Mac, Ios, Android and Winphone, the implementation is not limited to the operating system.
- FIG. 1 is a schematic diagram of an embodiment of a file processing method according to an embodiment of the present invention.
- FIG. 2 is a schematic diagram of another embodiment of a file processing method according to an embodiment of the present invention.
- FIG. 3 is a schematic diagram of another embodiment of a file processing method according to an embodiment of the present invention.
- FIG. 4 is a schematic diagram of an embodiment of a file processing apparatus according to an embodiment of the present invention.
- FIG. 5 is a schematic diagram of another embodiment of a file processing apparatus according to an embodiment of the present invention.
- FIG. 6 is a schematic diagram of another embodiment of a file processing apparatus according to an embodiment of the present invention.
- the embodiment of the invention provides a file processing method and device, which can eliminate the possibility that a file is cracked or transmitted through a hidden channel, and is not limited to a file format, and can support request terminals of different operating systems, which are respectively described in detail below.
- an embodiment of a file processing method in an embodiment of the present invention includes:
- the requesting end is a communication device that directly interacts with the user.
- the requesting end sends the corresponding request information to the file processing apparatus, and the file processing apparatus receives the request information, and according to The request information triggers the creation of a virtual operating environment to form a file operating environment by virtualization.
- the file processing apparatus may create a virtual operating environment in which the corresponding file operating program is deployed, so that the virtual operating environment can process files of different file formats.
- the file processing apparatus can simultaneously respond to the request information sent by the multiple requesting ends, and correspondingly construct a plurality of virtual operating environments that are isolated from each other.
- the interactive interface is a visible part of the user interacting with the application in the virtual operating environment.
- the file processing apparatus projects the requesting end according to the virtual operating environment to generate an input operation instruction on the requesting end.
- the interaction interface, thereby, the interaction interface and the application in the virtual operation environment are limited to different communication devices, so as to ensure that the request processing end and the actual operating environment of the file are isolated from each other in the subsequent file processing process, and the requesting end does not need to be local.
- the file can be read and written to prevent the file from being cracked or transmitted through the hidden channel, effectively preventing the file content from being illegally copied.
- the file processing device when the user inputs an operation instruction on the interaction interface of the request side, the file processing device is loaded.
- the operation instruction can be obtained from the requester.
- the file processing apparatus executes the operation instruction from the requesting end. For example, when the user inputs an operation instruction for reading the file at the requesting end, the file processing apparatus acquires the operation instruction and executes the interaction interface at the requesting end. The file is displayed on the request side, and the request side does not need to touch the actual file during the entire file reading process.
- the requesting information is sent by the requesting end, so as to trigger the creation of the virtual operating environment according to the request information, and the requesting end is performed according to the virtual operating environment. Projecting to generate an interactive interface for inputting an operation instruction on the request side; when the user inputs an operation instruction on the interaction interface of the request side, the operation instruction is acquired, and the operation instruction is executed. Therefore, in the embodiment of the present invention, the interaction interface of the requesting end is generated according to the virtual operating environment and is generated by the requesting end, which can ensure that the requesting end of the subsequent file processing process and the actual operating environment of the file are isolated from each other.
- the local device does not need to touch the actual file data to complete the reading and writing of the file, so as to prevent the file from being copied or transmitted through the hidden channel, and effectively prevent the file content from being illegally copied.
- the embodiment of the present invention can be based on the file.
- the file format in the request is created, and the virtual operating environment in which the corresponding file operating program is deployed is created to process the file in different file formats, and the implementation is not limited to the file format.
- the local operating system requirement of the requesting end is low in the embodiment of the present invention. Widely applicable to the request side of different operating systems such as Windows, Mac, Ios, Android and Winphone, the implementation is not limited to the operating system.
- FIG. 2 another embodiment of the file processing method in the embodiment of the present invention includes:
- the requesting end is a communication device that directly interacts with the user.
- the requesting end sends the corresponding request information (such as user data, etc.) to the file processing apparatus, and the file processing apparatus receives
- the request information triggers creation of a virtual operating environment according to the request information to form a file operating environment by means of virtualization.
- the request information may further include rights information, such as user rights information, file rights information, and the like.
- the privilege-related data may also be stored in the file processing apparatus. After receiving the request information sent by the requesting end, the privilege-related data is queried according to the user data therein, and the corresponding user is obtained. Permission information.
- the file processing apparatus can create a virtual operating environment in which the corresponding file operating program is deployed, so that the virtual operating environment can process files of different file formats.
- the file processing apparatus can simultaneously respond to the request information sent by the multiple requesting ends, and correspondingly construct a plurality of virtual operating environments that are isolated from each other.
- the creation of the virtual operating environment can be implemented by the sandbox technology.
- the sandbox for deploying the corresponding file operating program is created according to the request information to obtain the virtual operating environment. And the multiple sandboxes created are isolated from each other.
- the corresponding authority is determined by the permission information in the request information, and different virtual operation environments may be created under different permissions. For example, when the permission information indicates that the user only has the file read permission, the read file is created correspondingly. Virtual operating environment.
- the interactive interface is a visible part of the user interacting with the application in the virtual operating environment.
- the file processing apparatus projects the requesting end according to the virtual operating environment to generate an input operation instruction on the requesting end.
- the interaction interface, thereby, the interaction interface and the application in the virtual operation environment are limited to different communication devices, so as to ensure that the request processing end and the actual operating environment of the file are isolated from each other in the subsequent file processing process, and the requesting end does not need to be local.
- the file can be read and written to prevent the file from being cracked or transmitted through the hidden channel, effectively preventing the file content from being illegally copied.
- the remote projection technology may be used to project to the requesting end according to the virtual operating environment.
- the file processing apparatus may acquire the operation instruction from the requesting end.
- the requesting end can transmit the operation instruction to the file processing apparatus by using a projection technique.
- the obtaining the operation instruction may specifically include acquiring an operation instruction including mouse movement information and/or a keyboard operation.
- the operation instruction may also be another input mode. This is not limited here.
- step 205 determines whether the operation instruction is executed; if yes, proceed to step 206, and if not, proceed to step 207;
- the operation instruction before executing the operation instruction, it may be preferable to determine whether the operation instruction is executed according to the authority information, for example, a certain user has read and write permission for one type of file, and another type of file has no read/write permission, and is correspondingly created. After the virtual operating environment of the file is read or written, the operation command can be further determined according to the permission information.
- the authority information for example, a certain user has read and write permission for one type of file, and another type of file has no read/write permission, and is correspondingly created.
- the operation instruction is executed.
- the file processing apparatus executes the read/write file operation instruction.
- the operation instruction may be executed in the virtual operating system, and specifically: when acquiring the read file operation instruction, the file processing apparatus acquires the corresponding target file from the server, and uses the file operation program deployed therein to read the target. a file, and displaying the file to the user through the interactive interface projected on the request side; when obtaining the edit file operation instruction, the file processing device edits the target file by using the file operation program deployed therein, and displays the edited to the user through the interactive interface projected on the request side.
- the file after editing, writes the edited object file back to the server.
- the execution of the operation instruction by the file processing apparatus may also be implemented by cooperating with a server, wherein the server is configured to provide a file service, such as a file server, etc., at this time, the requesting end communicates with the server through the file processing apparatus.
- the operation instruction may be sent to the server, so that the file server executes the operation instruction.
- the file processing device in the embodiment of the present invention is a logical function entity, and may be a separate object or may be integrated in a file server, which is not limited herein.
- the operation instruction is rejected.
- the file processing apparatus rejects the read/write file operation instruction.
- the file processing device destroys the virtual operating system.
- the requesting information is sent by the requesting end, so as to trigger the creation of the virtual operating environment according to the request information, and the requesting end is performed according to the virtual operating environment. Projecting to generate an interactive interface for inputting an operation instruction on the request side; when the user inputs an operation instruction on the interaction interface of the request side, the operation instruction is acquired, and the operation instruction is executed. Therefore, in the embodiment of the present invention, the interaction interface of the requesting end is generated according to the virtual operating environment and is generated by the requesting end, which can ensure that the requesting end of the subsequent file processing process and the actual operating environment of the file are isolated from each other.
- the local device does not need to touch the actual file data to complete the reading and writing of the file, so as to prevent the file from being copied or transmitted through the hidden channel, and effectively prevent the file content from being illegally copied.
- the embodiment of the present invention can be based on the file.
- the file format in the request is created, and the virtual operating environment in which the corresponding file operating program is deployed is created to process the file in different file formats, and the implementation is not limited to the file format.
- the local operating system requirement of the requesting end is low in the embodiment of the present invention. Widely applicable to the request side of different operating systems such as Windows, Mac, Ios, Android and Winphone, the implementation is not limited to the operating system.
- the embodiment of the present invention may further manage the rights in the file processing process.
- the requesting end communicates with the file server through the file processing device, wherein the file server is configured to provide a file service to the client, and can provide concurrency control for the network user to access the file and the directory.
- the file processing device in the embodiment of the present invention is a logical function entity, and may be a separate object or may be integrated in a file server, which is not limited herein.
- the requesting end sends the request information to the file processing apparatus.
- the file processing apparatus receives the request information sent by the requesting end, and creates a sandbox in which the file operating program is deployed according to the request information, to obtain a virtual operating environment.
- the file processing apparatus projects the requesting end according to the virtual operating environment, to generate an interaction interface for inputting the operation instruction on the requesting end;
- the requesting end receives an operation instruction input by the user on the interaction interface.
- the file processing device acquires an operation instruction from the requesting end.
- the file processing device acquires the target file from the file server according to the operation instruction, and The target file is operated in the virtual operating system;
- the operation result can be displayed to the user in real time through the interactive interface projected on the request side.
- the file processing apparatus writes the operation result back to the file server
- the file processing device destroys the virtual operating system.
- an embodiment of the file processing device in the embodiment of the present invention includes:
- the creating unit 401 is configured to receive request information sent by the requesting end, and create a virtual operating environment according to the request information.
- a projection unit 402 configured to project to the requesting end according to the virtual operating environment, to generate an interaction interface for inputting an operation instruction on the requesting end;
- the executing unit 404 is configured to execute the operation instruction.
- the creating unit 401 receives the request information sent by the requesting end, and creates a virtual operating environment according to the request information.
- the projection unit 402 projects the requesting end according to the virtual operating environment to generate an input operation instruction on the requesting end.
- the creating unit 401 receives the request information corresponding to the requesting end, so as to trigger the creation of the virtual operating environment according to the request information; and the projection unit 402 according to the The virtual operating environment projects to the requesting end to generate an interactive interface for inputting an operation instruction on the requesting end; when the user inputs an operation instruction on the interaction interface of the requesting end, the obtaining unit 403 acquires the operation instruction, and is executed by the executing unit 404. Execute the operation instruction.
- the interaction interface of the requesting end is generated according to the virtual operating environment and is generated by the requesting end, which can ensure that the requesting end of the subsequent file processing process and the actual operating environment of the file are isolated from each other.
- the local device does not need to touch the actual file data to complete the reading and writing of the file, so as to prevent the file from being copied or transmitted through the hidden channel, and effectively prevent the file content from being illegally copied.
- the embodiment of the present invention can be based on the file.
- File format in the request, creation department The virtual operating environment of the corresponding file operating program is used to process files in different file formats, and the implementation is not limited to the file format.
- the embodiment of the present invention has low requirements on the local operating system of the requesting end, and can be widely applied to Windows, Mac, and The request side of different operating systems such as Ios, Android, and Winphone is not limited to the operating system. Further, the embodiment of the present invention may further manage the rights in the file processing process.
- FIG. 5 another embodiment of the file processing device in the embodiment of the present invention. include:
- the creating unit 501 is configured to receive request information sent by the requesting end, and create a virtual operating environment according to the request information.
- a projection unit 502 configured to project to the requesting end according to the virtual operating environment, to generate an interaction interface for inputting an operation instruction on the requesting end;
- the executing unit 504 is configured to execute the operation instruction.
- the request information further includes rights information
- the executing unit 504 is specifically configured to determine, according to the permission information, whether the operation instruction is executed; if yes, execute the operation instruction; if not, reject the operation instruction.
- the creating unit 501 includes a creating module, where the creating module is configured to create a virtual operating environment with corresponding rights according to the request information, where the corresponding rights are determined by the rights information in the request information.
- the executing unit 504 is specifically configured to execute the operation instruction in the virtual operating system.
- the executing unit 504 is specifically configured to send the operation instruction to a server, so that the server executes the operation instruction.
- the projection unit 502 is specifically configured to use the remote projection technology to project to the requesting end according to the virtual operating environment.
- the file processing apparatus may further include:
- the destroying unit 505 is configured to destroy the virtual operating system when exiting the interactive interface.
- the acquiring unit 503 is specifically configured to acquire, including a mouse movement. Operational instructions for information and/or keyboard operations.
- the document processing apparatus in the embodiment of the present invention is described above from the perspective of a modular functional entity.
- the file processing apparatus in the embodiment of the present invention is described below from the perspective of hardware processing. Referring to FIG. 6, the file processing in the embodiment of the present invention is described.
- Another embodiment of the device includes:
- the input device 601, the output device 602, the processor 603, and the memory 604 (wherein the number of processors 603 of the file processing device may be one or more, and one processor 603 is taken as an example in FIG. 6).
- the input device 601, the output device 602, the processor 603, and the memory 604 may be connected by a bus or other means, wherein the bus connection is taken as an example in FIG.
- the processor 603 is configured to perform the following steps by calling an operation instruction stored in the memory 604:
- the processor 603 is specifically configured to perform the following steps:
- the operational instructions are executed in the virtual operating system.
- the processor 603 is specifically configured to perform the following steps:
- the operation instruction is sent to the server to cause the server to execute the operation instruction.
- the request information further includes rights information;
- the processor 603 is specifically configured to perform the following steps:
- the request information further includes rights information;
- the processor 603 is specifically configured to perform the following steps:
- the processor 603 is specifically configured to perform the following steps:
- the processor 603 is further configured to perform the following steps:
- the virtual operating system is destroyed when exiting the interactive interface.
- the processor 603 is specifically configured to perform the following steps:
- the disclosed system, apparatus, and method may be implemented in other manners.
- the device embodiments described above are merely illustrative.
- the division of the unit is only a logical function division.
- there may be another division manner for example, multiple units or components may be combined or Can be integrated into another system, or some features can be ignored or not executed.
- the mutual coupling or direct coupling or communication connection shown or discussed may be an indirect coupling or communication connection through some interface, device or unit, and may be in an electrical, mechanical or other form.
- the units described as separate components may or may not be physically separated, and the components displayed as units may or may not be physical units, that is, may be located in one place, or may be distributed to multiple network units. Some or all of the units may be selected according to actual needs to achieve the purpose of the solution of the embodiment.
- each functional unit in each embodiment of the present invention may be integrated into one processing unit, or each unit may exist physically separately, or two or more units may be integrated into one unit.
- the above integrated unit can be implemented in the form of hardware or in the form of a software functional unit.
- the integrated unit if implemented in the form of a software functional unit and sold or used as a standalone product, may be stored in a computer readable storage medium.
- the technical solution of the present invention which is essential or contributes to the prior art, or all or part of the technical solution, may be embodied in the form of a software product stored in a storage medium.
- a number of instructions are included to cause a computer device (which may be a personal computer, server, or network device, etc.) to perform all or part of the steps of the methods described in various embodiments of the present invention.
- the storage medium includes: a U disk, a removable hard disk, a read-only memory (ROM), a random access memory (RAM), a magnetic disk, or an optical disk, and the like, which can store program codes.
Landscapes
- Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- Software Systems (AREA)
- Physics & Mathematics (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Computer Security & Cryptography (AREA)
- Technology Law (AREA)
- Computer Hardware Design (AREA)
- Multimedia (AREA)
- Data Mining & Analysis (AREA)
- Databases & Information Systems (AREA)
- Storage Device Security (AREA)
Abstract
一种文件处理方法及装置,可杜绝文件被破解或通过隐通道传递的可能,且不受限于文件格式,可支持不同操作系统的请求端。本发明实施例方法包括:接收请求端发送的请求信息,根据所述请求信息创建虚拟操作环境;根据所述虚拟操作环境向所述请求端进行投射,以在所述请求端生成用于输入操作指令的交互界面;获取所述操作指令;执行所述操作指令。
Description
本发明涉及信息安全技术领域,尤其涉及一种文件处理方法及装置。
DRM(Digital Rights Management,数字版权管理)是指应用在电子设备上的数字化媒体内容的保护技术,用于在文件处理过程中对文件中的数字化内容的使用权进行保护,防止数字化内容被非法复制。
目前业界主流DRM技术除微软RMS外,都是通过透明加密技术或HOOK文档应用程序的方式来实现,对于拥有“阅读”权限的用户,很容易被破解获取到原文,而且这种实现方案需要不断和各种文档应用程序集成开发,但集成新工具的时间长且经常导致进程间冲突,造成系统的不稳定。然而,微软的RMS虽然能避免上述问题,但其在office本身开发中实现,只支持office格式的文档,导致文档格式受限。
此外,绝大多数的DRM技术对请求端的本地操作系统要求较高,一般需与特定的操作系统匹配结合,无法支持windows、MAC、IOS以及Android等多种操作系统。
发明内容
本发明实施例提供了一种文件处理方法及装置,可杜绝文件被破解或通过隐通道传递的可能,且不受限于文件格式,可支持不同操作系统的请求端。
本发明实施例的第一方面提供一种文件处理方法,包括:
接收请求端发送的请求信息,根据所述请求信息创建虚拟操作环境;
根据所述虚拟操作环境向所述请求端进行投射,以在所述请求端生成用于输入操作指令的交互界面;
获取所述操作指令;
执行所述操作指令。
本发明实施例的第二方面提供一种文件处理装置,包括:
创建单元,用于接收请求端发送的请求信息,根据所述请求信息创建虚拟操作环境;
投射单元,用于根据所述虚拟操作环境向所述请求端进行投射,以在所述请求端生成用于输入操作指令的交互界面;
获取单元,用于获取所述操作指令;
执行单元,用于执行所述操作指令。
本发明实施例提供的技术方案中,当用户在请求端请求文件时,接收请求端对应发送的请求信息,以根据该请求信息触发虚拟操作环境的创建;并根据该虚拟操作环境向请求端进行投射,以在该请求端生成用于输入操作指令的交互界面;当用户在请求端的交互界面上输入操作指令时,获取该操作指令,并执行该操作指令。因此相对于现有技术,本发明实施例中请求端的交互界面是根据虚拟操作环境向请求端进行投射生成的,可以保证在后续的文件处理过程请求端与文件的实际操作环境彼此隔离,请求端本地并不需接触实际的文件数据便可完成文件的读、写等操作,以杜绝文件被破解或通过隐通道传递的可能,有效防止文件内容被非法复制;同时,本发明实施例可以根据文件请求中的文件格式,创建部署有相应文件操作程序的虚拟操作环境,以处理不同文件格式的文件,实现不受限于文件格式;而且,本发明实施例对请求端的本地操作系统要求低,可广泛适用于Windows、Mac、Ios、安卓以及Winphone等不同操作系统的请求端,实现不受限于操作系统。
图1为本发明实施例中文件处理方法一个实施例示意图;
图2为本发明实施例中文件处理方法另一实施例示意图;
图3为本发明实施例中文件处理方法另一实施例示意图;
图4为本发明实施例中文件处理装置一个实施例示意图;
图5为本发明实施例中文件处理装置另一实施例示意图;
图6为本发明实施例中文件处理装置另一实施例示意图。
本发明实施例提供了一种文件处理方法及装置,可杜绝文件被破解或通过隐通道传递的可能,且不受限于文件格式,可支持不同操作系统的请求端,以下分别进行详细说明。
下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述,显然,所描述的实施例仅仅是本发明一部分实施例,而不是全部的实施例。基于本发明中的实施例,本领域技术人员在没有作出创造性劳动前提下所获得的所有其他实施例,都属于本发明保护的范围。
下面从文件处理装置的角度对本发明实施例中文件处理方法进行描述:
请参阅图1,本发明实施例中文件处理方法一个实施例包括:
101、接收请求端发送的请求信息,根据该请求信息创建虚拟操作环境;
在本实施例中,请求端为与用户直接交互的通信设备,当用户在请求端请求文件时,请求端会将对应的请求信息发送到文件处理装置,文件处理装置接收该请求信息,并根据该请求信息触发虚拟操作环境的创建,以通过虚拟化的方式来形成文件操作环境。需要说明的是,在本发明实施例中,基于不同的请求信息,文件处理装置可以创建部署有相应文件操作程序的虚拟操作环境,使得虚拟操作环境可处理不同文件格式的文件。在实际应用过程中,文件处理装置可以同时对多个请求端发送的请求信息进行响应,并对应构建彼此隔离的多个虚拟操作环境。
102、根据虚拟操作环境向请求端进行投射,以在该请求端生成用于输入操作指令的交互界面;
其中,交互界面是用户与虚拟操作环境中应用程序进行交互操作的可视部分,在本实施例中,文件处理装置根据虚拟操作环境向请求端进行投射,以在请求端生成用于输入操作指令的交互界面,由此,可以将交互界面与虚拟操作环境中应用程序限定在不同的通信设备上,保证在后续的文件处理过程请求端与文件的实际操作环境彼此隔离,请求端本地并不需接触实际的文件数据便可完成文件的读、写等操作,以杜绝文件被破解或通过隐通道传递的可能,有效防止文件内容被非法复制。
103、获取该操作指令;
在本实施例中,当用户在请求端的交互界面上输入操作指令,文件处理装
置可以从请求端获取该操作指令。
104、执行该操作指令;
在本实施例中,由文件处理装置执行从请求端获取该操作指令,例如,用户在请求端输入读取文件的操作指令时,文件处理装置获取该操作指令并执行,以在请求端的交互界面上展示该文件,在整个文件读取过程中,请求端无需接触实际文件。
本发明实施例提供的技术方案中,当用户在请求端请求文件时,接收请求端对应发送的请求信息,以根据该请求信息触发虚拟操作环境的创建;并根据该虚拟操作环境向请求端进行投射,以在该请求端生成用于输入操作指令的交互界面;当用户在请求端的交互界面上输入操作指令时,获取该操作指令,并执行该操作指令。因此相对于现有技术,本发明实施例中请求端的交互界面是根据虚拟操作环境向请求端进行投射生成的,可以保证在后续的文件处理过程请求端与文件的实际操作环境彼此隔离,请求端本地并不需接触实际的文件数据便可完成文件的读、写等操作,以杜绝文件被破解或通过隐通道传递的可能,有效防止文件内容被非法复制;同时,本发明实施例可以根据文件请求中的文件格式,创建部署有相应文件操作程序的虚拟操作环境,以处理不同文件格式的文件,实现不受限于文件格式;而且,本发明实施例对请求端的本地操作系统要求低,可广泛适用于Windows、Mac、Ios、安卓以及Winphone等不同操作系统的请求端,实现不受限于操作系统。
下面在图1所示实施例的基础上,进一步描述在文件处理过程中如何进行权限管理,具体请参阅图2,本发明实施例中文件处理方法另一实施例包括:
201、接收请求端发送的请求信息;
在本实施例中,请求端为与用户直接交互的通信设备,当用户在请求端请求文件时,请求端会将对应的请求信息(诸如用户数据等)发送到文件处理装置,文件处理装置接收该请求信息,并根据该请求信息触发虚拟操作环境的创建,以通过虚拟化的方式来形成文件操作环境。在本实施例中,请求信息还可以包括权限信息,如用户权限信息、文件权限信息等。需要说明的是,在其他一些实施例中,权限相关数据也可以存储在文件处理装置中,在接收到请求端发送的请求信息后,根据其中的用户数据查询权限相关数据,得到对应用户的
权限信息。
202、根据该请求信息创建具有相应权限的虚拟操作环境;
在本实施例中,基于不同的请求信息,文件处理装置可以创建部署有相应文件操作程序的虚拟操作环境,使得虚拟操作环境可处理不同文件格式的文件。在实际应用过程中,文件处理装置可以同时对多个请求端发送的请求信息进行响应,并对应构建彼此隔离的多个虚拟操作环境。在实际应用过程中,虚拟操作环境的创建可以通过沙盒技术来实现,在接收到请求端发送的请求信息时,根据该请求信息创建部署有相应文件操作程序的沙盒,以得到虚拟操作环境,且创建的多个沙盒之间彼此隔离。
在本实施例中,相应权限由该请求信息中的权限信息决定,不同的权限下可以创建不同的虚拟操作环境,例如,当权限信息表明用户仅具备文件读取权限时,相应创建读取文件的虚拟操作环境。
203、根据虚拟操作环境向请求端进行投射,以在该请求端生成用于输入操作指令的交互界面;
其中,交互界面是用户与虚拟操作环境中应用程序进行交互操作的可视部分,在本实施例中,文件处理装置根据虚拟操作环境向请求端进行投射,以在请求端生成用于输入操作指令的交互界面,由此,可以将交互界面与虚拟操作环境中应用程序限定在不同的通信设备上,保证在后续的文件处理过程请求端与文件的实际操作环境彼此隔离,请求端本地并不需接触实际的文件数据便可完成文件的读、写等操作,以杜绝文件被破解或通过隐通道传递的可能,有效防止文件内容被非法复制。
可选地,在本实施例中,可以远程投射技术,根据虚拟操作环境向该请求端进行投射。
204、获取该操作指令;
在本实施例中,当用户在请求端的交互界面上输入操作指令,文件处理装置可以从请求端获取该操作指令。在本实施例中,请求端可以利用投射技术将操作指令传输至文件处理装置。
在本实施例中,获取操作指令具体可以包括获取包括鼠标移动信息和/或键盘操作的操作指令,在其他一些实施例中,操作指令也可以是其他输入模式,
具体此处不做限定。
205、根据该权限信息,判断操作指令是否执行;若是,则执行步骤206,若否,则执行步骤207;
在本实施例中,在执行操作指令前,优选可以根据权限信息判断操作指令是否执行,例如,某一用户对一类文件具有读写权限,另一类文件没有读写权限时,在相应创建读写文件的虚拟操作环境后,可以根据该权限信息进一步判断操作指令是否执行。
206、执行该操作指令;
当根据权限信息判断应当执行操作指令时,执行该操作指令,例如,用户对具有读写权限的文件进行读写操作时,文件处理装置执行读写文件操作指令。下面以读写文件为例,进一步详细描述如何执行读写文件操作指令:
在本实施例中,可以在虚拟操作系统中执行操作指令,具体可以为:在获取读取文件操作指令时,文件处理装置从服务器获取对应的目标文件,利用其中部署的文件操作程序读取目标文件,并通过投射在请求端的交互界面向用户展示文件;在获取编辑文件操作指令时,文件处理装置利用其中部署的文件操作程序编辑目标文件,并通过投射在请求端的交互界面向用户展示编辑后的文件,在编辑结束后,将经编辑后的目标文件写回服务器。
在其他一些实施例中,文件处理装置执行操作指令也可以是通过与服务器配合来实现,其中,服务器用于提供文件服务,例如文件服务器等,此时,请求端通过文件处理装置与服务器通信。具体可以为:向服务器发送操作指令,以使得该文件服务器执行该操作指令。
需要说明的是,本发明实施例中的文件处理装置作为一个逻辑功能实体,可以单独物体存在,也可以是集成在文件服务器中,具体此处不做限定。
207、驳回该操作指令;
当根据权限信息判断不应当执行操作指令时,驳回该操作指令,例如,用户对不具读写权限的文件进行读写操作时,文件处理装置驳回读写文件操作指令。
208、退出该交互界面时,销毁该虚拟操作系统;
在本实施例中,优选地,为了减轻文件处理装置的压力,当用户在请求端
退出该交互界面时,文件处理装置销毁该虚拟操作系统。
本发明实施例提供的技术方案中,当用户在请求端请求文件时,接收请求端对应发送的请求信息,以根据该请求信息触发虚拟操作环境的创建;并根据该虚拟操作环境向请求端进行投射,以在该请求端生成用于输入操作指令的交互界面;当用户在请求端的交互界面上输入操作指令时,获取该操作指令,并执行该操作指令。因此相对于现有技术,本发明实施例中请求端的交互界面是根据虚拟操作环境向请求端进行投射生成的,可以保证在后续的文件处理过程请求端与文件的实际操作环境彼此隔离,请求端本地并不需接触实际的文件数据便可完成文件的读、写等操作,以杜绝文件被破解或通过隐通道传递的可能,有效防止文件内容被非法复制;同时,本发明实施例可以根据文件请求中的文件格式,创建部署有相应文件操作程序的虚拟操作环境,以处理不同文件格式的文件,实现不受限于文件格式;而且,本发明实施例对请求端的本地操作系统要求低,可广泛适用于Windows、Mac、Ios、安卓以及Winphone等不同操作系统的请求端,实现不受限于操作系统。进一步地,本发明实施例还可以进一步对文件处理过程中的权限进行管理。
为了便于理解,下面以一具体应用场景对上述实施例中描述的文件处理方法进行详细描述,具体的:
在本实施例中,请求端通过文件处理装置与文件服务器通信,其中,文件服务器用于向用户端提供文件服务,能够提供网络用户访问文件、目录的并发控制。需要说明的是,本发明实施例中的文件处理装置作为一个逻辑功能实体,可以单独物体存在,也可以是集成在文件服务器中,具体此处不做限定。
301、请求端向文件处理装置发送请求信息;
302、文件处理装置接收请求端发送的请求信息,根据该请求信息创建部署有文件操作程序的沙盒,以得到虚拟操作环境;
303、文件处理装置根据虚拟操作环境向请求端进行投射,以在该请求端生成用于输入操作指令的交互界面;
304、请求端接收用户在交互界面上输入的操作指令;
305、文件处理装置从请求端获取操作指令;
306、文件处理装置根据该操作指令从文件服务器中获取目标文件,并在
虚拟操作系统中操作该目标文件;
其中,通过投射在请求端的交互界面可实时向用户展示操作结果。
307、在操作结束后,文件处理装置将操作结果写回文件服务器;
308、当用户在请求端退出交互界面时,文件处理装置销毁虚拟操作系统。
上面对本发明实施例中的文件处理方法进行了描述,下面对本发明实施例中的文件处理装置进行描述,请参阅图4,本发明实施例中文件处理装置一个实施例包括:
创建单元401,用于接收请求端发送的请求信息,根据所述请求信息创建虚拟操作环境;
投射单元402,用于根据所述虚拟操作环境向所述请求端进行投射,以在所述请求端生成用于输入操作指令的交互界面;
获取单元403,用于获取所述操作指令;
执行单元404,用于执行所述操作指令。
为便于理解,下面以一具体应用场景为例,对本实施例中文件处理装置内部运作流程进行描述:
创建单元401接收请求端发送的请求信息,根据所述请求信息创建虚拟操作环境;投射单元402根据所述虚拟操作环境向所述请求端进行投射,以在所述请求端生成用于输入操作指令的交互界面;获取单元403获取所述操作指令;执行单元404执行所述操作指令。
本发明实施例提供的技术方案中,当用户在请求端请求文件时,创建单元401接收请求端对应发送的请求信息,以根据该请求信息触发虚拟操作环境的创建;并由投射单元402根据该虚拟操作环境向请求端进行投射,以在该请求端生成用于输入操作指令的交互界面;当用户在请求端的交互界面上输入操作指令时,获取单元403获取该操作指令,并由执行单元404执行该操作指令。因此相对于现有技术,本发明实施例中请求端的交互界面是根据虚拟操作环境向请求端进行投射生成的,可以保证在后续的文件处理过程请求端与文件的实际操作环境彼此隔离,请求端本地并不需接触实际的文件数据便可完成文件的读、写等操作,以杜绝文件被破解或通过隐通道传递的可能,有效防止文件内容被非法复制;同时,本发明实施例可以根据文件请求中的文件格式,创建部
署有相应文件操作程序的虚拟操作环境,以处理不同文件格式的文件,实现不受限于文件格式;而且,本发明实施例对请求端的本地操作系统要求低,可广泛适用于Windows、Mac、Ios、安卓以及Winphone等不同操作系统的请求端,实现不受限于操作系统。进一步地,本发明实施例还可以进一步对文件处理过程中的权限进行管理。
下面在图4所示实施例的基础上,进一步描述可在文件处理过程中如何进行权限管理的文件处理装置的具体结构,具体请参阅图5,本发明实施例中文件处理装置另一实施例包括:
创建单元501,用于接收请求端发送的请求信息,根据所述请求信息创建虚拟操作环境;
投射单元502,用于根据所述虚拟操作环境向所述请求端进行投射,以在所述请求端生成用于输入操作指令的交互界面;
获取单元503,用于获取所述操作指令;
执行单元504,用于执行所述操作指令。
在本实施例中,所述请求信息还包括权限信息;
所述执行单元504,具体用于根据所述权限信息,判断所述操作指令是否执行;若是,则执行所述操作指令;若否,则驳回所述操作指令。
可选地,所述创建单元501包括创建模块,所述创建模块用于根据所述请求信息创建具有相应权限的虚拟操作环境,其中,所述相应权限由所述请求信息中的权限信息决定。
可选地,在本实施例中,所述执行单元504,具体用于在所述虚拟操作系统中执行所述操作指令。
可选地,在本实施例中,所述执行单元504,具体用于向服务器发送所述操作指令,以使得所述服务器执行所述操作指令。
可选地,在本实施例中,所述投射单元502,具体用于利用远程投射技术,根据所述虚拟操作环境向所述请求端进行投射。
可选地,在本实施例中,所述文件处理装置还可以包括:
销毁单元505,用于退出所述交互界面时,销毁所述虚拟操作系统。
可选地,在本实施例中,所述获取单元503,具体用于获取包括鼠标移动
信息和/或键盘操作的操作指令。
上面从模块化功能实体的角度对本发明实施例中的文件处理装置进行描述,下面从硬件处理的角度对本发明实施例中的文件处理装置进行描述,请参阅图6,本发明实施例中文件处理装置另一实施例包括:
输入装置601、输出装置602、处理器603和存储器604(其中文件处理装置的处理器603的数量可以一个或多个,图6中以一个处理器603为例)。在本发明的一些实施例中,输入装置601、输出装置602、处理器603和存储器604可通过总线或其它方式连接,其中,图6中以通过总线连接为例。
其中,通过调用存储器604存储的操作指令,处理器603,用于执行如下步骤:
接收请求端发送的请求信息,根据所述请求信息创建虚拟操作环境;
根据所述虚拟操作环境向所述请求端进行投射,以在所述请求端生成用于输入操作指令的交互界面;
获取所述操作指令;
执行所述操作指令。
在本发明的一些实施例中,处理器603具体用于执行如下步骤:
在所述虚拟操作系统中执行所述操作指令。
在本发明的一些实施例中,处理器603具体用于执行如下步骤:
向服务器发送所述操作指令,以使得所述服务器执行所述操作指令。
在本发明的一些实施例中,所述请求信息还包括权限信息;处理器603具体用于执行如下步骤:
根据所述权限信息,判断所述操作指令是否执行;
若是,则执行所述操作指令;
若否,则驳回所述操作指令。
在本发明的一些实施例中,所述请求信息还包括权限信息;处理器603具体用于执行如下步骤:
根据所述请求信息创建具有相应权限的虚拟操作环境,其中,所述相应权限由所述请求信息中的权限信息决定。
在本发明的一些实施例中,处理器603具体用于执行如下步骤:
利用远程投射技术,根据所述虚拟操作环境向所述请求端进行投射。
在本发明的一些实施例中,处理器603还用于执行如下步骤:
退出所述交互界面时,销毁所述虚拟操作系统。
在本发明的一些实施例中,处理器603具体用于执行如下步骤:
获取包括鼠标移动信息和/或键盘操作的操作指令。
所属领域的技术人员可以清楚地了解到,为描述的方便和简洁,上述描述的系统,装置和单元的具体工作过程,可以参考前述方法实施例中的对应过程,在此不再赘述。
在本申请所提供的几个实施例中,应该理解到,所揭露的系统,装置和方法,可以通过其它的方式实现。例如,以上所描述的装置实施例仅仅是示意性的,例如,所述单元的划分,仅仅为一种逻辑功能划分,实际实现时可以有另外的划分方式,例如多个单元或组件可以结合或者可以集成到另一个系统,或一些特征可以忽略,或不执行。另一点,所显示或讨论的相互之间的耦合或直接耦合或通信连接可以是通过一些接口,装置或单元的间接耦合或通信连接,可以是电性,机械或其它的形式。
所述作为分离部件说明的单元可以是或者也可以不是物理上分开的,作为单元显示的部件可以是或者也可以不是物理单元,即可以位于一个地方,或者也可以分布到多个网络单元上。可以根据实际的需要选择其中的部分或者全部单元来实现本实施例方案的目的。
另外,在本发明各个实施例中的各功能单元可以集成在一个处理单元中,也可以是各个单元单独物理存在,也可以两个或两个以上单元集成在一个单元中。上述集成的单元既可以采用硬件的形式实现,也可以采用软件功能单元的形式实现。
所述集成的单元如果以软件功能单元的形式实现并作为独立的产品销售或使用时,可以存储在一个计算机可读取存储介质中。基于这样的理解,本发明的技术方案本质上或者说对现有技术做出贡献的部分或者该技术方案的全部或部分可以以软件产品的形式体现出来,该计算机软件产品存储在一个存储介质中,包括若干指令用以使得一台计算机设备(可以是个人计算机,服务器,或者网络设备等)执行本发明各个实施例所述方法的全部或部分步骤。而前述
的存储介质包括:U盘、移动硬盘、只读存储器(ROM,Read-Only Memory)、随机存取存储器(RAM,Random Access Memory)、磁碟或者光盘等各种可以存储程序代码的介质。
以上所述,以上实施例仅用以说明本发明的技术方案,而非对其限制;尽管参照前述实施例对本发明进行了详细的说明,本领域的普通技术人员应当理解:其依然可以对前述各实施例所记载的技术方案进行修改,或者对其中部分技术特征进行等同替换;而这些修改或者替换,并不使相应技术方案的本质脱离本发明各实施例技术方案的精神和范围。
Claims (16)
- 一种文件处理方法,其特征在于,包括:接收请求端发送的请求信息,根据所述请求信息创建虚拟操作环境;根据所述虚拟操作环境向所述请求端进行投射,以在所述请求端生成用于输入操作指令的交互界面;获取所述操作指令;执行所述操作指令。
- 如权利要求1所述的文件处理方法,其特征在于,所述执行所述操作指令包括:在所述虚拟操作系统中执行所述操作指令。
- 如权利要求1所述的文件处理方法,其特征在于,所述执行所述操作指令包括:向服务器发送所述操作指令,以使得所述服务器执行所述操作指令。
- 如权利要求1所述的文件处理方法,其特征在于,所述请求信息还包括权限信息;则所述执行所述操作指令包括:根据所述权限信息,判断所述操作指令是否执行;若是,则执行所述操作指令;若否,则驳回所述操作指令。
- 如权利要求1所述的文件处理方法,其特征在于,所述请求信息还包括权限信息;则所述根据所述请求信息创建虚拟操作环境包括:根据所述请求信息创建具有相应权限的虚拟操作环境,其中,所述相应权限由所述请求信息中的权限信息决定。
- 如权利要求1至5中任意一项所述的文件处理方法,其特征在于,所述根据所述虚拟操作环境向所述请求端进行投射包括:利用远程投射技术,根据所述虚拟操作环境向所述请求端进行投射。
- 如权利要求1至5中任意一项所述的文件处理方法,其特征在于,所述方法还包括:退出所述交互界面时,销毁所述虚拟操作系统。
- 如权利要求1至5中任意一项所述的文件处理方法,其特征在于,所 述获取所述请求端发送操作指令:获取包括鼠标移动信息和/或键盘操作的操作指令。
- 一种文件处理装置,其特征在于,包括:创建单元,用于接收请求端发送的请求信息,根据所述请求信息创建虚拟操作环境;投射单元,用于根据所述虚拟操作环境向所述请求端进行投射,以在所述请求端生成用于输入操作指令的交互界面;获取单元,用于获取所述操作指令;执行单元,用于执行所述操作指令。
- 如权利要求9所述的文件处理装置,其特征在于,所述执行单元,具体用于在所述虚拟操作系统中执行所述操作指令。
- 如权利要求9所述的文件处理装置,其特征在于,所述执行单元,具体用于向服务器发送所述操作指令,以使得所述服务器执行所述操作指令。
- 如权利要求9所述的文件处理装置,其特征在于,所述请求信息还包括权限信息;所述执行单元,具体用于根据所述权限信息,判断所述操作指令是否执行;若是,则执行所述操作指令;若否,则驳回所述操作指令。
- 如权利要求9所述的文件处理装置,其特征在于,所述请求信息还包括权限信息;所述创建单元包括创建模块,所述创建模块用于根据所述请求信息创建具有相应权限的虚拟操作环境,其中,所述相应权限由所述请求信息中的权限信息决定。
- 如权利要求9至13中任意一项所述的文件处理装置,其特征在于,所述投射单元,具体用于利用远程投射技术,根据所述虚拟操作环境向所述请求端进行投射。
- 如权利要求9至13中任意一项所述的文件处理装置,其特征在于,所述装置还包括:销毁单元,用于退出所述交互界面时,销毁所述虚拟操作系统。
- 如权利要求9至13中任意一项所述的文件处理装置,其特征在于,所述获取单元,具体用于获取包括鼠标移动信息和/或键盘操作的操作指令。
Priority Applications (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/CN2015/071648 WO2016119125A1 (zh) | 2015-01-27 | 2015-01-27 | 文件处理方法及装置 |
| CN201580000192.9A CN105493090A (zh) | 2015-01-27 | 2015-01-27 | 文件处理方法及装置 |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/CN2015/071648 WO2016119125A1 (zh) | 2015-01-27 | 2015-01-27 | 文件处理方法及装置 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2016119125A1 true WO2016119125A1 (zh) | 2016-08-04 |
Family
ID=55678494
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/CN2015/071648 Ceased WO2016119125A1 (zh) | 2015-01-27 | 2015-01-27 | 文件处理方法及装置 |
Country Status (2)
| Country | Link |
|---|---|
| CN (1) | CN105493090A (zh) |
| WO (1) | WO2016119125A1 (zh) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN112989324A (zh) * | 2021-03-10 | 2021-06-18 | 中国民航信息网络股份有限公司 | 数据交互的方法、装置、电子设备及存储介质 |
Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101873318A (zh) * | 2010-06-08 | 2010-10-27 | 国网电力科学研究院 | 针对应用基础支撑平台上应用系统的应用与数据保全方法 |
| CN102314373A (zh) * | 2011-07-07 | 2012-01-11 | 李鹏 | 一种基于虚拟化技术实现安全工作环境的方法 |
| US8224796B1 (en) * | 2009-09-11 | 2012-07-17 | Symantec Corporation | Systems and methods for preventing data loss on external devices |
| CN102685136A (zh) * | 2012-05-18 | 2012-09-19 | 深信服网络科技(深圳)有限公司 | 一种多网络环境隔离方法及终端 |
| CN102708326A (zh) * | 2012-05-22 | 2012-10-03 | 南京赛孚科技有限公司 | 一种涉密文件的保护方法 |
Family Cites Families (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US8442224B2 (en) * | 2010-06-28 | 2013-05-14 | Intel Corporation | Protecting video content using virtualization |
| WO2013091196A1 (zh) * | 2011-12-21 | 2013-06-27 | 华为技术有限公司 | 设定用户访问虚拟机权限的方法、设备和系统 |
-
2015
- 2015-01-27 WO PCT/CN2015/071648 patent/WO2016119125A1/zh not_active Ceased
- 2015-01-27 CN CN201580000192.9A patent/CN105493090A/zh active Pending
Patent Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US8224796B1 (en) * | 2009-09-11 | 2012-07-17 | Symantec Corporation | Systems and methods for preventing data loss on external devices |
| CN101873318A (zh) * | 2010-06-08 | 2010-10-27 | 国网电力科学研究院 | 针对应用基础支撑平台上应用系统的应用与数据保全方法 |
| CN102314373A (zh) * | 2011-07-07 | 2012-01-11 | 李鹏 | 一种基于虚拟化技术实现安全工作环境的方法 |
| CN102685136A (zh) * | 2012-05-18 | 2012-09-19 | 深信服网络科技(深圳)有限公司 | 一种多网络环境隔离方法及终端 |
| CN102708326A (zh) * | 2012-05-22 | 2012-10-03 | 南京赛孚科技有限公司 | 一种涉密文件的保护方法 |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN112989324A (zh) * | 2021-03-10 | 2021-06-18 | 中国民航信息网络股份有限公司 | 数据交互的方法、装置、电子设备及存储介质 |
Also Published As
| Publication number | Publication date |
|---|---|
| CN105493090A (zh) | 2016-04-13 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US20220222364A1 (en) | Non-Fungible Token Content Items, Access Controls, and Discovery | |
| US11467891B2 (en) | Kernel event triggers for content item security | |
| US10616194B2 (en) | Secure data destruction in a distributed environment using key protection mechanisms | |
| US9680808B2 (en) | Preventing persistent storage of cryptographic information using signaling | |
| WO2021051612A1 (zh) | 数据授权脱敏自动化方法、系统、装置及存储介质 | |
| US9053333B2 (en) | Managing confidential information | |
| JP2019533229A (ja) | 異なるパーティーにまたがるオブジェクトのトレース | |
| US9378260B2 (en) | Methods and apparatus for synchronizing closed heterogenous systems | |
| US10223538B1 (en) | Preventing persistent storage of cryptographic information | |
| US11947696B2 (en) | File system content obfuscation in high security environments | |
| CN108140074A (zh) | 管理应用特定的特征权限 | |
| WO2016119125A1 (zh) | 文件处理方法及装置 | |
| JP2009230587A (ja) | 電子計算機のデータ管理方法、そのためのプログラム | |
| KR101977219B1 (ko) | GIS(Geographic Information System) 기반의 가상화 데이터 서비스 제공 장치 및 방법 | |
| JP2023180964A (ja) | 認可ポリシー検証装置、認可ポリシー検証方法、及び認可ポリシー検証プログラム | |
| JP7226831B2 (ja) | ライセンス管理装置、プログラム実行装置及び方法、並びにアプリケーションプログラム | |
| JP2026053102A (ja) | データクレンジングシステム、データクレンジング装置およびデータクレンジング方法 | |
| Deal | Death of the Desktop | |
| CN115935386A (zh) | 数据处理方法、装置和计算机可读存储介质 | |
| JP2006004087A (ja) | アプリケーション管理装置及びその制御方法、並びにコンピュータプログラム及びコンピュータ可読記憶媒体 | |
| JP2008040844A (ja) | ファイル管理システム、ファイル管理方法及びファイル管理処理プログラム |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| WWE | Wipo information: entry into national phase |
Ref document number: 201580000192.9 Country of ref document: CN |
|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 15879336 Country of ref document: EP Kind code of ref document: A1 |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 15879336 Country of ref document: EP Kind code of ref document: A1 |