WO2017092228A1 - 文件安全操作方法、装置及终端 - Google Patents

文件安全操作方法、装置及终端 Download PDF

Info

Publication number
WO2017092228A1
WO2017092228A1 PCT/CN2016/080832 CN2016080832W WO2017092228A1 WO 2017092228 A1 WO2017092228 A1 WO 2017092228A1 CN 2016080832 W CN2016080832 W CN 2016080832W WO 2017092228 A1 WO2017092228 A1 WO 2017092228A1
Authority
WO
WIPO (PCT)
Prior art keywords
file
preset file
preset
current user
iris
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/CN2016/080832
Other languages
English (en)
French (fr)
Inventor
陈少鹏
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Original Assignee
Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Yulong Computer Telecommunication Scientific Shenzhen Co Ltd filed Critical Yulong Computer Telecommunication Scientific Shenzhen Co Ltd
Publication of WO2017092228A1 publication Critical patent/WO2017092228A1/zh
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/30Authentication, i.e. establishing the identity or authorisation of security principals
    • G06F21/31User authentication
    • G06F21/32User authentication using biometric data, e.g. fingerprints, iris scans or voiceprints
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/6209Protecting access to data via a platform, e.g. using keys or access control rules to a single file or object, e.g. in a secure envelope, encrypted and accessed using a key, or with access control rules appended to the object itself

Definitions

  • the present invention relates to the field of terminal technologies, and in particular, to a file security operation method, a file security operation device, and a terminal.
  • the existing common solutions include: (1) processing the main body of the file, for example, encrypting the file, that is, using the existing encryption technology to the file. Encrypt; hide files. (2) The file address is processed, that is, the access directory permission is set.
  • the above two technical solutions have the following defects: (1) the encryption standard has the risk of being deciphered, and the hidden files can be displayed by corresponding operations; (2) the directory permissions can be changed as long as the highest root authority is obtained (a System permissions) can modify directory permissions to steal file information.
  • the present invention is based on the above technical problems, and proposes a new technical solution, which can effectively improve the security of operations on files, such as access, deletion and editing, to avoid leakage of information and/or tampering with it. Improve the user experience.
  • a file security operation method including: receiving an operation instruction for a preset file; and opening an iris service according to the operation instruction to acquire an iris information of a current user; Determining whether the iris information is preset iris information associated with the preset file; determining, according to the determination result, whether to grant the current user to operate the preset file Permissions.
  • the iris service is started to obtain the iris information of the current user, and the iris information and the preset file are The associated preset iris information (which may be one or more) is compared, and according to the result, it is determined whether the current user is allowed to access, delete, edit, etc., wherein the preset file may be an end user. Any text files, image files, audio files, and video files that are not intended to be used by other users, so that the unique iris information is bound to the file, and the collected iris information is verified when the file is operated. The legitimacy can effectively improve the security of the operation of the file, avoiding the leakage of information and/or being arbitrarily falsified, thereby improving the user experience.
  • determining, according to the determination result, whether the current user is authorized to operate the preset file specifically: when the determination result is yes, allowing the current user to operate the a preset file; when the determination result is no, the preset file is hidden to reject the current user from operating the preset file.
  • the current user when it is determined that the acquired iris information of the current user is the preset iris information associated with the preset file, the current user may be allowed to operate on the preset file, and conversely, the pre-prefix is automatically hidden.
  • the file is set such that the preset file is invisible to the current user, so that the current user is denied any operation on the preset file, thereby ensuring the security of the operation of the file and avoiding leakage or misoperation of the information.
  • the method further includes: setting a delay time to hide the preset file within the delay time.
  • the delay time of the preset file hiding (for example, 5 minutes) may also be set to be in the segment. Rejecting any operation on the preset file in time, while ensuring the security of the operation of the file, it can effectively avoid repeated response to the same illegal request, which can effectively reduce the power consumption of the terminal and further improve the user's Use experience.
  • the method further includes: counting a hidden time of the preset file; and when determining that the hidden time reaches the delay time, automatically displaying the preset file.
  • the hidden time can be started to be counted and compared with the set delay time.
  • the preset is preferably automatically displayed. Set the file for the user to continue to operate on the preset file, which improves the intelligence; or, when the hidden time reaches the set delay time, the user can be prompted by file, sound or lighting, and the user selects whether it is immediately Undoing the hidden and redisplaying the preset file is more user-friendly and can further enhance the user experience.
  • the method further includes: closing the iris service to reject the current user from repeatedly applying to operate the preset file.
  • the iris service of the terminal may preferably be directly closed, that is, no longer Obtaining any iris information, so that the current user cannot apply for the preset file again, providing a double guarantee for ensuring the security of the file operation, thereby further improving the security of the operation of the file, and effectively reducing the terminal. Power consumption, which enhances the user experience.
  • a file security operation device comprising: a receiving module, configured to receive an operation instruction for a preset file; and an acquisition module, configured to start an iris service according to the operation instruction, to obtain a current a user's iris information; a determining module, configured to determine whether the iris information is preset iris information associated with the preset file; and a processing module, configured to determine, according to the determination result, whether to grant the current user to operate the preset File permissions.
  • the iris service is started to obtain the iris information of the current user, and the iris information and the preset file are The associated preset iris information (which may be one or more) is compared, and according to the result, it is determined whether the current user is allowed to access, delete, edit, etc., wherein the preset file may be an end user. Any text files, image files, audio files, and video files that are not intended to be used by other users, so that the unique iris information is bound to the file, and the collected iris information is verified when the file is operated. The legitimacy can effectively improve the security of the operation of the file, avoiding the leakage of information and/or being arbitrarily falsified, thereby improving the user experience.
  • the processing module is specifically configured to: when the If yes, the current user is allowed to operate the preset file, otherwise, the preset file is hidden to reject the current user from operating the preset file.
  • the current user when it is determined that the acquired iris information of the current user is the preset iris information associated with the preset file, the current user may be allowed to operate on the preset file, and conversely, the pre-prefix is automatically hidden.
  • the file is set such that the preset file is invisible to the current user, so that the current user is denied any operation on the preset file, thereby ensuring the security of the operation of the file and avoiding leakage or misoperation of the information.
  • the method further includes: a setting module, configured to set a delay time when the determination result is no, to hide the preset file within the delay time.
  • the delay time of the preset file hiding (for example, 5 minutes) may also be set to be in the segment. Rejecting any operation on the preset file in time, while ensuring the security of the operation of the file, it can effectively avoid repeated response to the same illegal request, which can effectively reduce the power consumption of the terminal and further improve the user's Use experience.
  • the method further includes: a timing module, configured to collect a hidden time of the preset file; and the processing module is further configured to: when determining that the hidden time reaches the delay time The preset file is automatically displayed.
  • the hidden time when it is determined that the acquired iris information of the current user is not the preset iris information associated with the preset file and the preset file is hidden, the hidden time can be started, and the set delay time is set.
  • the preset file is preferably automatically displayed for the user to continue the operation on the preset file, thereby improving the intelligence; or, when the hidden time reaches the set delay time
  • the user can choose whether to undo the hidden and redisplay the preset file, which is more user-friendly and can further enhance the user experience.
  • the processing module is further configured to: when the determination result is negative, close the iris service to reject the current user from repeatedly applying to operate the preset file.
  • the acquired iris information of the current user is not the preset iris information associated with the preset file and the preset file is hidden, it is preferably also directly closed.
  • the iris service of the end that is, no longer acquiring any iris information, so that the current user can no longer apply for the operation of the preset file, providing a double guarantee for ensuring the security of the file operation, thereby further improving the security of the operation of the file.
  • it can effectively reduce the power consumption of the terminal, thereby improving the user experience.
  • a terminal comprising a processor and a memory, wherein the memory stores a set of program codes, and the processor is configured to call program code stored in the memory for execution
  • the following operations are: receiving an operation instruction for the preset file; opening an iris service according to the operation instruction to acquire iris information of the current user; and determining whether the iris information is preset iris information associated with the preset file; The determination result determines whether the current user is granted the authority to operate the preset file.
  • the iris service is started to obtain the iris information of the current user, and the iris information and the preset file are The associated preset iris information (which may be one or more) is compared, and according to the result, it is determined whether the current user is allowed to access, delete, edit, etc., wherein the preset file may be an end user. Any text files, image files, audio files, and video files that are not intended to be used by other users, so that the unique iris information is bound to the file, and the collected iris information is verified when the file is operated. The legitimacy can effectively improve the security of the operation of the file, avoiding the leakage of information and/or being arbitrarily falsified, thereby improving the user experience.
  • the specific step of determining, by the processor, whether to grant the current user permission to operate the preset file according to the determination result is: when the determination result is yes, allowing the current user The preset file is operated; when the determination result is no, the preset file is hidden to reject the current user from operating the preset file.
  • the current user when it is determined that the acquired iris information of the current user is the preset iris information associated with the preset file, the current user may be allowed to operate on the preset file, and conversely, the pre-prefix is automatically hidden.
  • the file is set such that the preset file is invisible to the current user, so that the current user is denied any operation on the preset file, thereby ensuring the security of the operation of the file and avoiding leakage or misoperation of the information.
  • the processing The device also performs: setting a delay time to hide the preset file within the delay time.
  • the delay time of the preset file hiding (for example, 5 minutes) may also be set to be in the segment. Rejecting any operation on the preset file in time, while ensuring the security of the operation of the file, it can effectively avoid repeated response to the same illegal request, which can effectively reduce the power consumption of the terminal and further improve the user's Use experience.
  • the processor further performs: counting a hidden time of the preset file; and automatically determining the preset file when determining that the hidden time reaches the delay time.
  • the hidden time when it is determined that the acquired iris information of the current user is not the preset iris information associated with the preset file and the preset file is hidden, the hidden time can be started, and the set delay time is set.
  • the preset file is preferably automatically displayed for the user to continue the operation on the preset file, thereby improving the intelligence; or, when the hidden time reaches the set delay time
  • the user can choose whether to undo the hidden and redisplay the preset file, which is more user-friendly and can further enhance the user experience.
  • the processor when the determining result is negative, the processor further performs: turning off the iris service to reject the current user from repeatedly applying to operate the preset file.
  • the iris service of the terminal may preferably be directly closed, that is, no longer Obtaining any iris information, so that the current user cannot apply for the preset file again, providing a double guarantee for ensuring the security of the file operation, thereby further improving the security of the operation of the file, and effectively reducing the terminal. Power consumption, which enhances the user experience.
  • FIG. 1 is a flow chart showing a method of file security operation according to an embodiment of the present invention
  • FIG. 2 shows a block diagram of a file security operating device in accordance with one embodiment of the present invention
  • Figure 3 shows a block diagram of a terminal in accordance with one embodiment of the present invention
  • Figure 4 shows a block diagram of a terminal in accordance with another embodiment of the present invention.
  • FIG. 1 is a flow chart showing a method of file security operation according to an embodiment of the present invention.
  • a file security operation method includes: Step 102: Receive an operation instruction for a preset file; Step 104: Open an iris service according to the operation instruction to acquire a current user Iris information; Step 106, determining whether the iris information is preset iris information associated with the preset file; Step 108, determining, according to the determination result, whether to grant the current user permission to operate the preset file.
  • the iris service is started to obtain the iris information of the current user, and the iris information and the preset file are The associated preset iris information (which may be one or more) is compared, and according to the result, it is determined whether the current user is allowed to access, delete, edit, etc., wherein the preset file may be an end user. Any text files, image files, audio files, and video files that are not intended to be used by other users, so that the unique iris information is bound to the file, and the collected iris information is verified when the file is operated. Legitimacy, can effectively improve the security of the operation of the file, to avoid Information leakage and / or tampering, improve the user experience.
  • the step 108 includes: when the determination result is yes, allowing the current user to operate the preset file; when the determining result is no, hiding the pre-predetermined A file is set to reject the current user from operating the preset file.
  • the current user when it is determined that the acquired iris information of the current user is the preset iris information associated with the preset file, the current user may be allowed to operate on the preset file, and conversely, the pre-prefix is automatically hidden.
  • the file is set such that the preset file is invisible to the current user, so that the current user is denied any operation on the preset file, thereby ensuring the security of the operation of the file and avoiding leakage or misoperation of the information.
  • the method further includes: setting a delay time to hide the preset file within the delay time.
  • the delay time of the preset file hiding (for example, 5 minutes) may also be set to be in the segment. Rejecting any operation on the preset file in time, while ensuring the security of the operation of the file, it can effectively avoid repeated response to the same illegal request, which can effectively reduce the power consumption of the terminal and further improve the user's Use experience.
  • the method further includes: counting a hidden time of the preset file; and when determining that the hidden time reaches the delay time, automatically displaying the preset file.
  • the hidden time when it is determined that the acquired iris information of the current user is not the preset iris information associated with the preset file and the preset file is hidden, the hidden time can be started, and the set delay time is set.
  • the preset file is preferably automatically displayed for the user to continue the operation on the preset file, thereby improving the intelligence; or, when the hidden time reaches the set delay time
  • the user can choose whether to undo the hidden and redisplay the preset file, which is more user-friendly and can further enhance the user experience.
  • the method further includes: closing the iris service to reject the current user from repeatedly applying to operate the preset file.
  • the acquired iris information of the current user is not the preset iris information associated with the preset file and the preset file is hidden, it is preferably also directly closed.
  • the iris service of the end that is, no longer acquiring any iris information, so that the current user can no longer apply for the operation of the preset file, providing a double guarantee for ensuring the security of the file operation, thereby further improving the security of the operation of the file.
  • it can effectively reduce the power consumption of the terminal, thereby improving the user experience.
  • FIG. 2 shows a block diagram of a file security operating device in accordance with one embodiment of the present invention.
  • the file security operating device 200 includes a receiving module 202, an obtaining module 204, a determining module 206, and a processing module 208.
  • the receiving module 202 is configured to receive an operation instruction for the preset file, and the collecting module 204 is configured to start the iris service according to the operation instruction to obtain the iris information of the current user, and the determining module 206 is configured to determine the iris Whether the information is the preset iris information associated with the preset file; the processing module 208 is configured to determine, according to the determination result, whether the current user is authorized to operate the preset file.
  • the iris service is started to obtain the iris information of the current user, and the iris information and the preset file are The associated preset iris information (which may be one or more) is compared, and according to the result, it is determined whether the current user is allowed to access, delete, edit, etc., wherein the preset file may be an end user. Any text files, image files, audio files, and video files that are not intended to be used by other users, so that the unique iris information is bound to the file, and the collected iris information is verified when the file is operated. The legitimacy can effectively improve the security of the operation of the file, avoiding the leakage of information and/or being arbitrarily falsified, thereby improving the user experience.
  • the processing module 208 is specifically configured to: when the determination result is yes, allow the current user to operate the preset file, otherwise, hide the preset file to reject The current user operates the preset file.
  • the current user when it is determined that the acquired iris information of the current user is the preset iris information associated with the preset file, the current user may be allowed to operate on the preset file, and conversely, the pre-prefix is automatically hidden.
  • the file is set such that the preset file is invisible to the current user, so that the current user is denied any operation on the preset file, thereby ensuring the security of the operation of the file and avoiding leakage or misoperation of the information.
  • the method further includes: a setting module 210, configured to set a delay time when the determination result is no, to hide the preset file within the delay time.
  • the delay time of the preset file hiding (for example, 5 minutes) may also be set to be in the segment. Rejecting any operation on the preset file in time, while ensuring the security of the operation of the file, it can effectively avoid repeated response to the same illegal request, which can effectively reduce the power consumption of the terminal and further improve the user's Use experience.
  • the method further includes: a timing module 212, configured to collect a hidden time of the preset file; and the processing module 208 is further configured to: when determining that the hidden time reaches the delay When the time is up, the preset file is automatically displayed.
  • the hidden time when it is determined that the acquired iris information of the current user is not the preset iris information associated with the preset file and the preset file is hidden, the hidden time can be started, and the set delay time is set.
  • the preset file is preferably automatically displayed for the user to continue the operation on the preset file, thereby improving the intelligence; or, when the hidden time reaches the set delay time
  • the user can choose whether to undo the hidden and redisplay the preset file, which is more user-friendly and can further enhance the user experience.
  • the processing module 208 is further configured to: when the determination result is negative, turn off the iris service to reject the current user from repeatedly applying to operate the preset file.
  • the iris service of the terminal may preferably be directly closed, that is, no longer Obtaining any iris information, so that the current user cannot apply for the preset file again, providing a double guarantee for ensuring the security of the file operation, thereby further improving the security of the operation of the file, and effectively reducing the terminal. Power consumption, which enhances the user experience.
  • Figure 3 shows a block diagram of a terminal in accordance with one embodiment of the present invention.
  • a terminal 300 includes the above technical party.
  • the document security operation device 200 according to any one of the above, the terminal 300 has the same technical effects as the file security operation device 200 according to any one of the above aspects, and details are not described herein.
  • Iris collection Open the iris detection service and use the existing iris recognition technology to collect specific iris information to match the iris body (ie user).
  • the enable related control uses the IPC (Inter-Process Communication) technology to enable the iris detection service, that is, the related hardware facilities of the terminal device (for example, specific camera)
  • IPC Inter-Process Communication
  • the device and the existing iris recognition algorithm collect iris information to generate a unique UID (User Identification, ie, iris information) to identify the iris body label on the iris system interface.
  • UID User Identification, ie, iris information
  • Iris binding In the iris system interface, the iris information of the collected iris body is used to bind a specific file (preset file). After binding, the legality of the iris body is verified first when the specific file is clicked. The specific file can be manipulated after success, such as opening an access.
  • the specific binding process can be performed by adding the UIDs of the collected iris bodies to the ArrayList (array list), wherein the ArrayList is used to conveniently count the UIDs of the plurality of iris bodies bound to the specific file, and then the ArrayList name is used. Write to the path_filename field; when you click on the specific file, the value in the path_filename field is read first. The default value is Empty_List.
  • Iris verification Open the iris verification service to verify the legality of the currently collected iris information.
  • the specific file when the specific file is clicked (ie, when the operation instruction is received), the value in the path_filename field is read. If it is not the Empty_List, the UID in the ArrayList is obtained according to the ArrayList name by using the reflection mechanism, and the iris verification service is started, and the recognition is performed. Whether the UID of the iris body exists in the ArrayList, and if so, the specific file can be operated.
  • the iris system detects different iris body UIDs (that is, the preset iris information that is not bound to the preset file), then a broadcast is sent, and the specific file is received.
  • the onDestroy function a message response function
  • the delay function for example, the schedule function of the Timer (process scheduling function)
  • the delay function can be used to hide the specific file and close the iris service. After a certain time delay, a specific file is automatically displayed.
  • the technical solution of the present invention uses the iris recognition technology to bind important files through the uniqueness of the iris information, so that only the bound iris body can operate the important file, effectively solving the operational security problem of the important file.
  • this program is also practical for protecting the user's personal privacy information.
  • the terminal 7 may include: at least one processor 71, such as a CPU, at least one communication bus 72, and a memory 73; a communication bus 72 is used to implement connection communication between these components; the memory 73 may be a high speed RAM memory or a non-volatile memory such as at least one disk memory.
  • a set of program codes is stored in the memory 73, and the processor 71 is configured to call the program code stored in the memory 73 for performing the following operations:
  • the iris service is started to obtain the iris information of the current user, and the iris information and the preset file are The associated preset iris information (which may be one or more) is compared, and according to the result, it is determined whether the current user is allowed to access, delete, edit, etc., wherein the preset file may be an end user. Any text files, image files, audio files, and video files that are not intended to be used by other users, so that the unique iris information is bound to the file, and the collected iris information is verified when the file is operated. Legitimacy, can effectively improve the security of the operation of the file, to avoid Information leakage and / or tampering, improve the user experience.
  • the specific step of determining, by the processor 71, whether to grant the current user permission to operate the preset file according to the determination result is:
  • the preset file is hidden to reject the current user from operating the preset file.
  • the current user when it is determined that the acquired iris information of the current user is the preset iris information associated with the preset file, the current user may be allowed to operate on the preset file, and conversely, the pre-prefix is automatically hidden.
  • the file is set such that the preset file is invisible to the current user, so that the current user is denied any operation on the preset file, thereby ensuring the security of the operation of the file and avoiding leakage or misoperation of the information.
  • the processor 71 when the determining result is no, the processor 71 further performs:
  • a delay time is set to hide the preset file within the delay time.
  • the delay time of the preset file hiding (for example, 5 minutes) may also be set to be in the segment. Rejecting any operation on the preset file in time, while ensuring the security of the operation of the file, it can effectively avoid repeated response to the same illegal request, which can effectively reduce the power consumption of the terminal and further improve the user's Use experience.
  • the processor 71 further performs:
  • the preset file is automatically displayed.
  • the hidden time when it is determined that the acquired iris information of the current user is not the preset iris information associated with the preset file and the preset file is hidden, the hidden time can be started, and the set delay time is set.
  • the preset file is preferably automatically displayed for the user to continue the operation on the preset file, thereby improving the intelligence; or, when the hidden time reaches the set delay time
  • the user can choose whether to undo the hidden and redisplay the preset file, which is more user-friendly and can further enhance the user experience.
  • the processor 71 when the determination result is negative, the processor 71 further performs:
  • the iris service is turned off to reject the current user from repeatedly applying to operate the preset file.
  • the iris service of the terminal may preferably be directly closed, that is, no longer Obtaining any iris information, so that the current user cannot apply for the preset file again, providing a double guarantee for ensuring the security of the file operation, thereby further improving the security of the operation of the file, and effectively reducing the terminal. Power consumption, which enhances the user experience.

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Software Systems (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Health & Medical Sciences (AREA)
  • Bioethics (AREA)
  • General Health & Medical Sciences (AREA)
  • Storage Device Security (AREA)

Abstract

一种文件安全操作方法、一种文件安全操作装置(200)和一种终端(300),其中,所述文件安全操作方法包括:接收对预设文件的操作指令(102);根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息(104);判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息(106);根据判断结果确定是否授予所述当前用户操作所述预设文件的权限(108)。通过上述技术方案,可以有效地提高对文件进行操作的安全性,比如访问、删除和编辑等操作,避免信息外泄和/或被随意篡改,提升了用户的使用体验。

Description

文件安全操作方法、装置及终端
本申请要求于2015年11月30日提交中国专利局,申请号为201510867972.5、发明名称为“文件安全操作方法、装置及终端”的中国专利申请的优先权,其全部内容通过引用结合在本申请中。
技术领域
本发明涉及终端技术领域,具体而言,涉及一种文件安全操作方法、一种文件安全操作装置和一种终端。
背景技术
目前,对于重要文件,为了防止他人窃取文件信息会对其进行一些处理,现有的常用解决方案包括:(1)对文件主体进行处理,比如:加密文件,即利用已有的加密技术对文件进行加密;隐藏文件。(2)对文件地址进行处理,即设定访问目录权限。
但是,上述两种技术方案存在以下缺陷:(1)加密标准存在被破译的风险,而隐藏文件可以通过相应操作使其显示;(2)目录权限可以被更改,只要获得了最高root权限(一种系统权限)即可修改目录权限,从而窃取文件信息。
因此,如何提高文件的访问安全性,避免信息外泄,从而提升用户的使用体验成为亟待解决的技术问题。
发明内容
本发明正是基于上述技术问题,提出了一种新的技术方案,可以有效地提高对文件进行操作的安全性,比如访问、删除和编辑等操作,避免信息外泄和/或被随意篡改,提升了用户的使用体验。
有鉴于此,本发明的第一方面,提出了一种文件安全操作方法,包括:接收对预设文件的操作指令;根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息;判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息;根据判断结果确定是否授予所述当前用户操作所述预设文件的 权限。
在该技术方案中,当接收到对终端中的预设文件的操作指令时,比如通过点击选中该预设文件,开启虹膜服务获取当前用户的虹膜信息,并将该虹膜信息与该预设文件的关联的预设虹膜信息(可以有一个或多个)进行比对,进而根据结果确定是否允许该当前用户对该预设文件进行访问、删除、编辑等操作,其中预设文件可以是终端用户设置的任何不想其他用户随意使用的文字文件、图片文件、音频文件和视频文件等,如此,通过将具有唯一性的虹膜信息与文件进行绑定,进而在对文件操作时验证采集到的虹膜信息的合法性,可以有效地提高对文件进行操作的安全性,避免信息外泄和/或被随意篡改,提升了用户的使用体验。
在上述技术方案中,优选地,所述根据判断结果确定是否授予所述当前用户操作所述预设文件的权限,具体包括:当所述判断结果为是时,允许所述当前用户操作所述预设文件;当所述判断结果为否时,隐藏所述预设文件,以拒绝所述当前用户操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息是与预设文件关联的预设虹膜信息时,则可允许该当前用户对该预设文件进行操作,相反地,自动隐藏该预设文件,使该预设文件对当前用户不可见,以拒绝该当前用户对该预设文件进行任何操作,从而确保对文件进行操作的安全性,避免信息外泄或误操作。
在上述任一技术方案中,优选地,当所述判断结果为否时,还包括:设置延时时间,以在所述延时时间内隐藏所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息时,还可以设置预设文件隐藏的延时时间(比如5分钟),以在该段时间内拒绝对该预设文件的任何操作,在确保对文件进行操作的安全性的同时,可以有效地避免对相同的非法请求做出重复响应,可以有效地降低终端功耗,进一步提升用户的使用体验。
在上述任一技术方案中,优选地,还包括:统计所述预设文件的隐藏时间;当判定所述隐藏时间达到所述延时时间时,自动显示所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文 件关联的预设虹膜信息并将该预设文件隐藏后,可以开始统计其隐藏时间,并与设置的延时时间进行比较,当隐藏时间达到设置的延时时间时,优选地自动显示该预设文件,以供用户对该预设文件继续操作,提高了智能性;或者,当隐藏时间达到设置的延时时间时,可以以文件、声音或亮灯等方式提示用户,由用户选择是否马上撤销隐藏而重新显示该预设文件,更具人性化,均可以进一步提升用户的使用体验。
在上述任一技术方案中,优选地,当所述判断结果为是否时,还包括:关闭所述虹膜服务,以拒绝所述当前用户重复申请操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,优选地还可以直接关闭终端的虹膜服务,即不再获取任何虹膜信息,以使该当前用户无法再次申请对该预设文件进行操作,提供了确保文件操作安全性的双重保障,从而进一步提高了对文件进行操作的安全性,同时可以有效地降低终端功耗,从而提升了用户的使用体验。
根据本发明的第二方面,提出了一种文件安全操作装置,包括:接收模块,用于接收对预设文件的操作指令;采集模块,用于根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息;判断模块,用于判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息;处理模块,用于根据判断结果确定是否授予所述当前用户操作所述预设文件的权限。
在该技术方案中,当接收到对终端中的预设文件的操作指令时,比如通过点击选中该预设文件,开启虹膜服务获取当前用户的虹膜信息,并将该虹膜信息与该预设文件的关联的预设虹膜信息(可以有一个或多个)进行比对,进而根据结果确定是否允许该当前用户对该预设文件进行访问、删除、编辑等操作,其中预设文件可以是终端用户设置的任何不想其他用户随意使用的文字文件、图片文件、音频文件和视频文件等,如此,通过将具有唯一性的虹膜信息与文件进行绑定,进而在对文件操作时验证采集到的虹膜信息的合法性,可以有效地提高对文件进行操作的安全性,避免信息外泄和/或被随意篡改,提升了用户的使用体验。
在上述技术方案中,优选地,所述处理模块具体用于:当所述判断结 果为是时,允许所述当前用户操作所述预设文件,否则,隐藏所述预设文件,以拒绝所述当前用户操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息是与预设文件关联的预设虹膜信息时,则可允许该当前用户对该预设文件进行操作,相反地,自动隐藏该预设文件,使该预设文件对当前用户不可见,以拒绝该当前用户对该预设文件进行任何操作,从而确保对文件进行操作的安全性,避免信息外泄或误操作。
在上述任一技术方案中,优选地,还包括:设置模块,用于当所述判断结果为否时,设置延时时间,以在所述延时时间内隐藏所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息时,还可以设置预设文件隐藏的延时时间(比如5分钟),以在该段时间内拒绝对该预设文件的任何操作,在确保对文件进行操作的安全性的同时,可以有效地避免对相同的非法请求做出重复响应,可以有效地降低终端功耗,进一步提升用户的使用体验。
在上述任一技术方案中,优选地,还包括:计时模块,用于统计所述预设文件的隐藏时间;以及所述处理模块还用于:当判定所述隐藏时间达到所述延时时间时,自动显示所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,可以开始统计其隐藏时间,并与设置的延时时间进行比较,当隐藏时间达到设置的延时时间时,优选地自动显示该预设文件,以供用户对该预设文件继续操作,提高了智能性;或者,当隐藏时间达到设置的延时时间时,可以以文件、声音或亮灯等方式提示用户,由用户选择是否马上撤销隐藏而重新显示该预设文件,更具人性化,均可以进一步提升用户的使用体验。
在上述任一技术方案中,优选地,所述处理模块还用于:当所述判断结果为是否时,关闭所述虹膜服务,以拒绝所述当前用户重复申请操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,优选地还可以直接关闭终 端的虹膜服务,即不再获取任何虹膜信息,以使该当前用户无法再次申请对该预设文件进行操作,提供了确保文件操作安全性的双重保障,从而进一步提高了对文件进行操作的安全性,同时可以有效地降低终端功耗,从而提升了用户的使用体验。
本发明的第三方面,提出了一种终端,包括处理器和存储器,其中,所述存储器中存储一组程序代码,且所述处理器用于调用所述存储器中存储的程序代码,用于执行以下操作:接收对预设文件的操作指令;根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息;判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息;根据判断结果确定是否授予所述当前用户操作所述预设文件的权限。
在该技术方案中,当接收到对终端中的预设文件的操作指令时,比如通过点击选中该预设文件,开启虹膜服务获取当前用户的虹膜信息,并将该虹膜信息与该预设文件的关联的预设虹膜信息(可以有一个或多个)进行比对,进而根据结果确定是否允许该当前用户对该预设文件进行访问、删除、编辑等操作,其中预设文件可以是终端用户设置的任何不想其他用户随意使用的文字文件、图片文件、音频文件和视频文件等,如此,通过将具有唯一性的虹膜信息与文件进行绑定,进而在对文件操作时验证采集到的虹膜信息的合法性,可以有效地提高对文件进行操作的安全性,避免信息外泄和/或被随意篡改,提升了用户的使用体验。
在上述技术方案中,优选地,所述处理器根据判断结果确定是否授予所述当前用户操作所述预设文件的权限的具体步骤为:当所述判断结果为是时,允许所述当前用户操作所述预设文件;当所述判断结果为否时,隐藏所述预设文件,以拒绝所述当前用户操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息是与预设文件关联的预设虹膜信息时,则可允许该当前用户对该预设文件进行操作,相反地,自动隐藏该预设文件,使该预设文件对当前用户不可见,以拒绝该当前用户对该预设文件进行任何操作,从而确保对文件进行操作的安全性,避免信息外泄或误操作。
在上述任一技术方案中,优选地,当所述判断结果为否时,所述处理 器还执行:设置延时时间,以在所述延时时间内隐藏所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息时,还可以设置预设文件隐藏的延时时间(比如5分钟),以在该段时间内拒绝对该预设文件的任何操作,在确保对文件进行操作的安全性的同时,可以有效地避免对相同的非法请求做出重复响应,可以有效地降低终端功耗,进一步提升用户的使用体验。
在上述任一技术方案中,优选地,所述处理器还执行:统计所述预设文件的隐藏时间;当判定所述隐藏时间达到所述延时时间时,自动显示所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,可以开始统计其隐藏时间,并与设置的延时时间进行比较,当隐藏时间达到设置的延时时间时,优选地自动显示该预设文件,以供用户对该预设文件继续操作,提高了智能性;或者,当隐藏时间达到设置的延时时间时,可以以文件、声音或亮灯等方式提示用户,由用户选择是否马上撤销隐藏而重新显示该预设文件,更具人性化,均可以进一步提升用户的使用体验。
在上述任一技术方案中,优选地,当所述判断结果为是否时,所述处理器还执行:关闭所述虹膜服务,以拒绝所述当前用户重复申请操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,优选地还可以直接关闭终端的虹膜服务,即不再获取任何虹膜信息,以使该当前用户无法再次申请对该预设文件进行操作,提供了确保文件操作安全性的双重保障,从而进一步提高了对文件进行操作的安全性,同时可以有效地降低终端功耗,从而提升了用户的使用体验。
通过以上技术方案,可以有效地提高对文件进行操作的安全性,比如访问、删除和编辑等操作,避免信息外泄和/或被随意篡改,提升了用户的使用体验。
附图说明
图1示出了根据本发明的一个实施例的文件安全操作方法的流程示意图;
图2示出了根据本发明的一个实施例的文件安全操作装置的框图;
图3示出了根据本发明的一个实施例的终端的框图;
图4示出了根据本发明的另一个实施例的终端的框图。
具体实施方式
为了能够更清楚地理解本发明的上述目的、特征和优点,下面结合附图和具体实施方式对本发明进行进一步的详细描述。需要说明的是,在不冲突的情况下,本申请的实施例及实施例中的特征可以相互组合。
在下面的描述中阐述了很多具体细节以便于充分理解本发明,但是,本发明还可以采用其他不同于在此描述的其他方式来实施,因此,本发明的保护范围并不受下面公开的具体实施例的限制。
图1示出了根据本发明的一个实施例的文件安全操作方法的流程示意图。
如图1所示,根据本发明的一个实施例的文件安全操作方法,包括:步骤102,接收对预设文件的操作指令;步骤104,根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息;步骤106,判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息;步骤108,根据判断结果确定是否授予所述当前用户操作所述预设文件的权限。
在该技术方案中,当接收到对终端中的预设文件的操作指令时,比如通过点击选中该预设文件,开启虹膜服务获取当前用户的虹膜信息,并将该虹膜信息与该预设文件的关联的预设虹膜信息(可以有一个或多个)进行比对,进而根据结果确定是否允许该当前用户对该预设文件进行访问、删除、编辑等操作,其中预设文件可以是终端用户设置的任何不想其他用户随意使用的文字文件、图片文件、音频文件和视频文件等,如此,通过将具有唯一性的虹膜信息与文件进行绑定,进而在对文件操作时验证采集到的虹膜信息的合法性,可以有效地提高对文件进行操作的安全性,避免 信息外泄和/或被随意篡改,提升了用户的使用体验。
在上述技术方案中,优选地,所述步骤108具体包括:当所述判断结果为是时,允许所述当前用户操作所述预设文件;当所述判断结果为否时,隐藏所述预设文件,以拒绝所述当前用户操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息是与预设文件关联的预设虹膜信息时,则可允许该当前用户对该预设文件进行操作,相反地,自动隐藏该预设文件,使该预设文件对当前用户不可见,以拒绝该当前用户对该预设文件进行任何操作,从而确保对文件进行操作的安全性,避免信息外泄或误操作。
在上述任一技术方案中,优选地,当所述判断结果为否时,还包括:设置延时时间,以在所述延时时间内隐藏所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息时,还可以设置预设文件隐藏的延时时间(比如5分钟),以在该段时间内拒绝对该预设文件的任何操作,在确保对文件进行操作的安全性的同时,可以有效地避免对相同的非法请求做出重复响应,可以有效地降低终端功耗,进一步提升用户的使用体验。
在上述任一技术方案中,优选地,还包括:统计所述预设文件的隐藏时间;当判定所述隐藏时间达到所述延时时间时,自动显示所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,可以开始统计其隐藏时间,并与设置的延时时间进行比较,当隐藏时间达到设置的延时时间时,优选地自动显示该预设文件,以供用户对该预设文件继续操作,提高了智能性;或者,当隐藏时间达到设置的延时时间时,可以以文件、声音或亮灯等方式提示用户,由用户选择是否马上撤销隐藏而重新显示该预设文件,更具人性化,均可以进一步提升用户的使用体验。
在上述任一技术方案中,优选地,当所述判断结果为是否时,还包括:关闭所述虹膜服务,以拒绝所述当前用户重复申请操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,优选地还可以直接关闭终 端的虹膜服务,即不再获取任何虹膜信息,以使该当前用户无法再次申请对该预设文件进行操作,提供了确保文件操作安全性的双重保障,从而进一步提高了对文件进行操作的安全性,同时可以有效地降低终端功耗,从而提升了用户的使用体验。
图2示出了根据本发明的一个实施例的文件安全操作装置的框图。
如图2所示,根据本发明的一个实施例的文件安全操作装置200,包括:接收模块202、采集模块204、判断模块206和处理模块208。
其中,接收模块202,用于接收对预设文件的操作指令;采集模块204,用于根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息;判断模块206,用于判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息;处理模块208,用于根据判断结果确定是否授予所述当前用户操作所述预设文件的权限。
在该技术方案中,当接收到对终端中的预设文件的操作指令时,比如通过点击选中该预设文件,开启虹膜服务获取当前用户的虹膜信息,并将该虹膜信息与该预设文件的关联的预设虹膜信息(可以有一个或多个)进行比对,进而根据结果确定是否允许该当前用户对该预设文件进行访问、删除、编辑等操作,其中预设文件可以是终端用户设置的任何不想其他用户随意使用的文字文件、图片文件、音频文件和视频文件等,如此,通过将具有唯一性的虹膜信息与文件进行绑定,进而在对文件操作时验证采集到的虹膜信息的合法性,可以有效地提高对文件进行操作的安全性,避免信息外泄和/或被随意篡改,提升了用户的使用体验。
在上述技术方案中,优选地,所述处理模块208具体用于:当所述判断结果为是时,允许所述当前用户操作所述预设文件,否则,隐藏所述预设文件,以拒绝所述当前用户操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息是与预设文件关联的预设虹膜信息时,则可允许该当前用户对该预设文件进行操作,相反地,自动隐藏该预设文件,使该预设文件对当前用户不可见,以拒绝该当前用户对该预设文件进行任何操作,从而确保对文件进行操作的安全性,避免信息外泄或误操作。
在上述任一技术方案中,优选地,还包括:设置模块210,用于当所述判断结果为否时,设置延时时间,以在所述延时时间内隐藏所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息时,还可以设置预设文件隐藏的延时时间(比如5分钟),以在该段时间内拒绝对该预设文件的任何操作,在确保对文件进行操作的安全性的同时,可以有效地避免对相同的非法请求做出重复响应,可以有效地降低终端功耗,进一步提升用户的使用体验。
在上述任一技术方案中,优选地,还包括:计时模块212,用于统计所述预设文件的隐藏时间;以及所述处理模块208还用于:当判定所述隐藏时间达到所述延时时间时,自动显示所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,可以开始统计其隐藏时间,并与设置的延时时间进行比较,当隐藏时间达到设置的延时时间时,优选地自动显示该预设文件,以供用户对该预设文件继续操作,提高了智能性;或者,当隐藏时间达到设置的延时时间时,可以以文件、声音或亮灯等方式提示用户,由用户选择是否马上撤销隐藏而重新显示该预设文件,更具人性化,均可以进一步提升用户的使用体验。
在上述任一技术方案中,优选地,所述处理模块208还用于:当所述判断结果为是否时,关闭所述虹膜服务,以拒绝所述当前用户重复申请操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,优选地还可以直接关闭终端的虹膜服务,即不再获取任何虹膜信息,以使该当前用户无法再次申请对该预设文件进行操作,提供了确保文件操作安全性的双重保障,从而进一步提高了对文件进行操作的安全性,同时可以有效地降低终端功耗,从而提升了用户的使用体验。
图3示出了根据本发明的一个实施例的终端的框图。
如图3所示,根据本发明的一个实施例的终端300,包括上述技术方 案中任一项所述的文件安全操作装置200,因此,该终端300具有和上述技术方案中任一项所述的文件安全操作装置200相同的技术效果,在此不再赘述。
下面结合具体实施例说明本发明的技术方案,包括以下几个过程:
(一)虹膜采集:开启虹膜检测服务,利用已有的虹膜识别技术采集特定虹膜信息,以匹配虹膜主体(即用户)。
具体地,在终端设备的虹膜系统界面,enable(启动)相关控件,使用IPC(Inter-Process Communication,进程间通信)技术开启虹膜检测服务,即利用终端设备的相关硬件设施(比如,特定的摄像器材等)和已有的虹膜识别算法采集虹膜信息,生成唯一UID(User Identification,用户身份证明,即虹膜信息),以在虹膜系统界面标识虹膜主体label(标签)。
(二)虹膜绑定:在虹膜系统界面,使用采集的虹膜主体的虹膜信息绑定特定文件(预设文件),绑定之后,则点击该特定文件时会先验证虹膜主体的合法性,验证成功后才能对该特定文件进行操作,比如打开访问。
具体的绑定过程,可以通过将采集到的各虹膜主体的UID加入ArrayList(数组列表)中,其中,使用ArrayList便于统计与该特定文件绑定的多个虹膜主体的UID,然后将该ArrayList名称写入path_filename(路径文件名)字段中;点击该特定文件时,则会先读取path_filename字段中的值,默认值为Empty_List(空列表)。
(三)虹膜验证:开启虹膜验证服务,验证当前采集的虹膜信息的合法性。
具体地,当点击该特定文件时(即接收到操作指令时),读取path_filename字段中的值,如果非Empty_List,则利用反射机制根据ArrayList名称获取ArrayList中的UID,同时开启虹膜验证服务,识别虹膜主体的UID是否存在于ArrayList中,若在则可对该特定文件进行操作。
(四)操作文件:验证成功后,即可操作文件,在操作过程中,如果虹膜系统检测到陌生的虹膜主体,则隐藏文件,并关闭虹膜服务。
具体地,如果虹膜系统检测到不同的虹膜主体UID后(即不是与预设文件绑定的预设虹膜信息),则发送broadcast(广播),该特定文件接收 到broadcast后,会调用onDestroy函数(一种消息响应函数)退出操作,并可利用延时技术(比如,Timer(定时器)的schedule函数(进程调度函数))隐藏该特定文件,并关闭虹膜服务,延时一定时间后,自动显示特定文件。
综上,本发明的技术方案通过虹膜信息的唯一性,使用虹膜识别技术绑定重要文件,使得只有绑定的虹膜主体才能对该重要文件进行操作,有效解决了重要文件的操作安全性问题,同时本方案对于保护用户的个人隐私信息同样实用。
以上结合附图详细说明了本发明的技术方案,可以有效地提高对文件进行操作的安全性,比如访问、删除和编辑等操作,避免信息外泄和/或被随意篡改,提升了用户的使用体验。
图4示出了根据本发明的另一个实施例的终端的框图,如图4所示,该终端7可以包括:至少一个处理器71,例如CPU,至少一个通信总线72以及存储器73;通信总线72用于实现这些组件之间的连接通信;存储器73可以是高速RAM存储器,也可以是非易失性存储器(non-volatile memory),例如至少一个磁盘存储器。存储器73中存储一组程序代码,且处理器71用于调用存储器73中存储的程序代码,用于执行以下操作:
接收对预设文件的操作指令;
根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息;
判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息;
根据判断结果确定是否授予所述当前用户操作所述预设文件的权限。
在该技术方案中,当接收到对终端中的预设文件的操作指令时,比如通过点击选中该预设文件,开启虹膜服务获取当前用户的虹膜信息,并将该虹膜信息与该预设文件的关联的预设虹膜信息(可以有一个或多个)进行比对,进而根据结果确定是否允许该当前用户对该预设文件进行访问、删除、编辑等操作,其中预设文件可以是终端用户设置的任何不想其他用户随意使用的文字文件、图片文件、音频文件和视频文件等,如此,通过将具有唯一性的虹膜信息与文件进行绑定,进而在对文件操作时验证采集到的虹膜信息的合法性,可以有效地提高对文件进行操作的安全性,避免 信息外泄和/或被随意篡改,提升了用户的使用体验。
在上述技术方案中,优选地,所述处理器71根据判断结果确定是否授予所述当前用户操作所述预设文件的权限的具体步骤为:
当所述判断结果为是时,允许所述当前用户操作所述预设文件;
当所述判断结果为否时,隐藏所述预设文件,以拒绝所述当前用户操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息是与预设文件关联的预设虹膜信息时,则可允许该当前用户对该预设文件进行操作,相反地,自动隐藏该预设文件,使该预设文件对当前用户不可见,以拒绝该当前用户对该预设文件进行任何操作,从而确保对文件进行操作的安全性,避免信息外泄或误操作。
在上述任一技术方案中,优选地,当所述判断结果为否时,所述处理器71还执行:
设置延时时间,以在所述延时时间内隐藏所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息时,还可以设置预设文件隐藏的延时时间(比如5分钟),以在该段时间内拒绝对该预设文件的任何操作,在确保对文件进行操作的安全性的同时,可以有效地避免对相同的非法请求做出重复响应,可以有效地降低终端功耗,进一步提升用户的使用体验。
在上述任一技术方案中,优选地,所述处理器71还执行:
统计所述预设文件的隐藏时间;
当判定所述隐藏时间达到所述延时时间时,自动显示所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,可以开始统计其隐藏时间,并与设置的延时时间进行比较,当隐藏时间达到设置的延时时间时,优选地自动显示该预设文件,以供用户对该预设文件继续操作,提高了智能性;或者,当隐藏时间达到设置的延时时间时,可以以文件、声音或亮灯等方式提示用户,由用户选择是否马上撤销隐藏而重新显示该预设文件,更具人性化,均可以进一步提升用户的使用体验。
在上述任一技术方案中,优选地,当所述判断结果为是否时,所述处理器71还执行:
关闭所述虹膜服务,以拒绝所述当前用户重复申请操作所述预设文件。
在该技术方案中,当判定获取到的当前用户的虹膜信息不是与预设文件关联的预设虹膜信息并将该预设文件隐藏后,优选地还可以直接关闭终端的虹膜服务,即不再获取任何虹膜信息,以使该当前用户无法再次申请对该预设文件进行操作,提供了确保文件操作安全性的双重保障,从而进一步提高了对文件进行操作的安全性,同时可以有效地降低终端功耗,从而提升了用户的使用体验。
以上所述仅为本发明的优选实施例而已,并不用于限制本发明,对于本领域的技术人员来说,本发明可以有各种更改和变化。凡在本发明的精神和原则之内,所作的任何修改、等同替换、改进等,均应包含在本发明的保护范围之内。

Claims (15)

  1. 一种文件安全操作方法,其特征在于,包括:
    接收对预设文件的操作指令;
    根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息;
    判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息;
    根据判断结果确定是否授予所述当前用户操作所述预设文件的权限。
  2. 根据权利要求1所述的文件安全操作方法,其特征在于,所述根据判断结果确定是否授予所述当前用户操作所述预设文件的权限,具体包括:
    当所述判断结果为是时,允许所述当前用户操作所述预设文件;
    当所述判断结果为否时,隐藏所述预设文件,以拒绝所述当前用户操作所述预设文件。
  3. 根据权利要求2所述的文件安全操作方法,其特征在于,当所述判断结果为否时,还包括:
    设置延时时间,以在所述延时时间内隐藏所述预设文件。
  4. 根据权利要求3所述的文件安全操作方法,其特征在于,还包括:
    统计所述预设文件的隐藏时间;
    当判定所述隐藏时间达到所述延时时间时,自动显示所述预设文件。
  5. 根据权利要求2至4中任一项所述的文件安全操作方法,其特征在于,当所述判断结果为是否时,还包括:
    关闭所述虹膜服务,以拒绝所述当前用户重复申请操作所述预设文件。
  6. 一种文件安全操作装置,其特征在于,包括:
    接收模块,用于接收对预设文件的操作指令;
    采集模块,用于根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息;
    判断模块,用于判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息;
    处理模块,用于根据判断结果确定是否授予所述当前用户操作所述预设文件的权限。
  7. 根据权利要求6所述的文件安全操作装置,其特征在于,所述处理模块具体用于:当所述判断结果为是时,允许所述当前用户操作所述预设文件,否则,隐藏所述预设文件,以拒绝所述当前用户操作所述预设文件。
  8. 根据权利要求7所述的文件安全操作装置,其特征在于,还包括:
    设置模块,用于当所述判断结果为否时,设置延时时间,以在所述延时时间内隐藏所述预设文件。
  9. 根据权利要求8所述的文件安全操作装置,其特征在于,还包括:
    计时模块,用于统计所述预设文件的隐藏时间;以及
    所述处理模块还用于:当判定所述隐藏时间达到所述延时时间时,自动显示所述预设文件。
  10. 根据权利要求7至9中任一项所述的文件安全操作装置,其特征在于,所述处理模块还用于:
    当所述判断结果为是否时,关闭所述虹膜服务,以拒绝所述当前用户重复申请操作所述预设文件。
  11. 一种终端,其特征在于,所述终端包括处理器和存储器,其中,所述存储器中存储一组程序代码,且所述处理器用于调用所述存储器中存储的程序代码,用于执行以下操作:
    接收对预设文件的操作指令;
    根据所述操作指令开启虹膜服务,以获取当前用户的虹膜信息;
    判断所述虹膜信息是否为与所述预设文件关联的预设虹膜信息;
    根据判断结果确定是否授予所述当前用户操作所述预设文件的权限。
  12. 根据权利要求11所述的终端,其特征在于,所述处理器根据判断结果确定是否授予所述当前用户操作所述预设文件的权限的具体步骤为:
    当所述判断结果为是时,允许所述当前用户操作所述预设文件;
    当所述判断结果为否时,隐藏所述预设文件,以拒绝所述当前用户操作所述预设文件。
  13. 根据权利要求12所述的终端,其特征在于,当所述判断结果为否时,所述处理器还执行:
    设置延时时间,以在所述延时时间内隐藏所述预设文件。
  14. 根据权利要求13所述的终端,其特征在于,所述处理器还执行:
    统计所述预设文件的隐藏时间;
    当判定所述隐藏时间达到所述延时时间时,自动显示所述预设文件。
  15. 根据权利要求12至14中任一项所述的终端,其特征在于,当所述判断结果为是否时,所述处理器还执行:
    关闭所述虹膜服务,以拒绝所述当前用户重复申请操作所述预设文件。
PCT/CN2016/080832 2015-11-30 2016-04-29 文件安全操作方法、装置及终端 Ceased WO2017092228A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201510867972.5A CN105631290A (zh) 2015-11-30 2015-11-30 文件安全操作方法、装置及终端
CN201510867972.5 2015-11-30

Publications (1)

Publication Number Publication Date
WO2017092228A1 true WO2017092228A1 (zh) 2017-06-08

Family

ID=56046216

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2016/080832 Ceased WO2017092228A1 (zh) 2015-11-30 2016-04-29 文件安全操作方法、装置及终端

Country Status (2)

Country Link
CN (1) CN105631290A (zh)
WO (1) WO2017092228A1 (zh)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2018058373A1 (zh) * 2016-09-28 2018-04-05 达闼科技(北京)有限公司 用于电子设备的控制方法、装置及电子设备
CN106777386A (zh) * 2017-02-16 2017-05-31 北京珠穆朗玛移动通信有限公司 文件显示方法及移动终端
CN108182351A (zh) * 2017-12-26 2018-06-19 华中科技大学同济医学院附属协和医院 一种高安全等级的自动化办公系统
CN108737649A (zh) * 2018-05-10 2018-11-02 Oppo广东移动通信有限公司 一种发送文件的方法、装置以及计算机存储介质

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102955746A (zh) * 2011-08-18 2013-03-06 北京爱国者信息技术有限公司 一种只读模式的移动存储装置及其访问数据的方法
CN103927470A (zh) * 2014-04-30 2014-07-16 北京释码大华科技有限公司 一种基于虹膜识别的文件加解密系统及其方法
CN104091106A (zh) * 2014-07-11 2014-10-08 北京释码大华科技有限公司 一种支持虹膜加密的鼠标和方法
CN104239815A (zh) * 2014-09-19 2014-12-24 西安凯虹电子科技有限公司 基于虹膜识别的电子文档加密解密装置及方法
US20150143497A1 (en) * 2013-11-15 2015-05-21 Alibaba Group Holding Limited Identity authentication by using human biological characteristic

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104268455A (zh) * 2014-10-13 2015-01-07 深圳市中兴移动通信有限公司 一种移动终端及其信息保护的方法和装置

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102955746A (zh) * 2011-08-18 2013-03-06 北京爱国者信息技术有限公司 一种只读模式的移动存储装置及其访问数据的方法
US20150143497A1 (en) * 2013-11-15 2015-05-21 Alibaba Group Holding Limited Identity authentication by using human biological characteristic
CN103927470A (zh) * 2014-04-30 2014-07-16 北京释码大华科技有限公司 一种基于虹膜识别的文件加解密系统及其方法
CN104091106A (zh) * 2014-07-11 2014-10-08 北京释码大华科技有限公司 一种支持虹膜加密的鼠标和方法
CN104239815A (zh) * 2014-09-19 2014-12-24 西安凯虹电子科技有限公司 基于虹膜识别的电子文档加密解密装置及方法

Also Published As

Publication number Publication date
CN105631290A (zh) 2016-06-01

Similar Documents

Publication Publication Date Title
JP6239788B2 (ja) 指紋認証方法、装置、インテリジェント端末及びコンピュータ記憶媒体
EP3100171B1 (en) Client authentication using social relationship data
US9607147B2 (en) Method and device for detecting software-tampering
CN104992102A (zh) 一种消息显示方法及装置
WO2013075419A1 (zh) 一种管理功能使用权限的方法及移动终端
WO2015188788A1 (zh) 保护移动终端支付安全的方法、装置以及移动终端
WO2016078541A1 (zh) 一种提升终端安全性的装置及方法
US20230229760A1 (en) Mobile device with secure private memory
CN102955746A (zh) 一种只读模式的移动存储装置及其访问数据的方法
CN104021358A (zh) 移动终端的防盗控制方法和装置
WO2017092228A1 (zh) 文件安全操作方法、装置及终端
CN109344598A (zh) 设备间的绑定及权限控制方法、装置、设备及存储介质
WO2016155072A1 (zh) 一种应用隐藏、打开方法及装置
CN105703909A (zh) 一种认证方法及电子设备
US20150047019A1 (en) Information processing method and electronic device
US20180053006A1 (en) Primary device, an accessory device, and methods for processing operations on the primary device and the accessory device
CN105447365B (zh) 一种基于控件的隐私保护方法及用户终端
WO2016127448A1 (zh) 系统切换方法、系统切换装置和终端
WO2016078429A1 (zh) 一种身份识别的方法和装置
CN106100851A (zh) 密码管理系统、智能腕表及其密码管理方法
WO2016050118A1 (zh) 信息处理方法和信息处理装置
CN106295423A (zh) 一种数据展示方法及客户端
WO2016180234A1 (zh) 一种安全环境构建方法和装置
CN104715172B (zh) 一种应用程序启动方法和装置
WO2020001652A1 (en) Systems and methods for informarion management

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 16869542

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 16869542

Country of ref document: EP

Kind code of ref document: A1