WO2020077626A1 - 一种指静脉信息识别方法及装置 - Google Patents

一种指静脉信息识别方法及装置 Download PDF

Info

Publication number
WO2020077626A1
WO2020077626A1 PCT/CN2018/111065 CN2018111065W WO2020077626A1 WO 2020077626 A1 WO2020077626 A1 WO 2020077626A1 CN 2018111065 W CN2018111065 W CN 2018111065W WO 2020077626 A1 WO2020077626 A1 WO 2020077626A1
Authority
WO
WIPO (PCT)
Prior art keywords
collector
finger vein
vein information
random number
control board
Prior art date
Application number
PCT/CN2018/111065
Other languages
English (en)
French (fr)
Inventor
刘鹏
刘松
杨顺
陈浩
Original Assignee
华北电力大学扬中智能电气研究中心
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 华北电力大学扬中智能电气研究中心 filed Critical 华北电力大学扬中智能电气研究中心
Priority to PCT/CN2018/111065 priority Critical patent/WO2020077626A1/zh
Publication of WO2020077626A1 publication Critical patent/WO2020077626A1/zh

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols

Definitions

  • the invention relates to the field of finger vein identification, and in particular to a method and device for identifying finger vein information.
  • Finger vein recognition is a kind of vein recognition. It is a new biometric recognition technology. It has the characteristics of being difficult to forge, high security, and has a good development prospect.
  • the finger vein information recognition method mainly collects finger vein information through the finger vein collector, and communicates with the host or other devices through the serial port mode, and only performs simple command communication through the serial port to realize finger vein information collection and transmission In this way, there is still a certain risk of finger vein information theft, which reduces the security.
  • Embodiments of the present invention provide a finger vein information recognition method and device to solve the problem that there is a certain risk of finger vein information in the prior art.
  • a finger vein information recognition method including:
  • the control board obtains the encrypted finger vein information sent by the collector; wherein, the encrypted finger vein information is obtained after the collector encrypts according to the random number generated by the control board and a preset encryption algorithm;
  • the preset encryption algorithm is any one of the following: Camellia encryption algorithm, message digest algorithm MD5 encryption algorithm, and symmetric encryption algorithm.
  • the control board key generated based on the generated random number, encrypts the control instruction, and sends the encrypted control instruction to the collector, so that the collector decrypts according to the collector key , Obtain the control instruction, and collect finger vein information according to the control instruction.
  • the preset communication mode is any one of the following: power line communication PCL communication mode, wireless communication mode.
  • a finger vein information recognition device applied to a control board including:
  • An obtaining module configured to obtain encrypted finger vein information sent by the collector; wherein the encrypted finger vein information is obtained after the collector encrypts according to the random number generated by the control board and a preset encryption algorithm of;
  • the identification module is configured to decrypt the encrypted finger vein information according to the control board key generated based on the generated random number, and identify the decrypted finger vein information.
  • the generating module is used to generate a random number after power-on initialization, and send the generated random number to the collector, so that the collector generates a collector key according to the random number, and based on the collection Device key and preset encryption algorithm for encryption.
  • the preset encryption algorithm is any one of the following: Camellia encryption algorithm, message digest algorithm MD5 encryption algorithm, and symmetric encryption algorithm.
  • the receiving module is used to receive the control commands sent by the host through the preset communication mode
  • the encryption module is used to encrypt the control command based on the generated random number of the control board key, and send the encrypted control command to the collector, so that the collector according to the collector After the key is decrypted, the control instruction is obtained, and finger vein information is collected according to the control instruction.
  • the preset communication mode is any one of the following: power line communication PCL communication mode and wireless communication mode.
  • An electronic device including:
  • At least one memory for storing computer programs
  • At least one processor is configured to implement any of the steps of the finger vein information recognition method when executing the computer program stored in the memory.
  • the control board obtains the encrypted finger vein information sent by the collector; wherein, the encrypted finger vein information is performed by the collector according to the random number generated by the control board and a preset encryption algorithm Obtained after encryption; decrypt the encrypted finger vein information according to the control board key generated based on the generated random number, and recognize the decrypted finger vein information, so that the finger vein information is encrypted Re-transmission improves security, prevents finger vein information from being stolen or copied, and a random number is generated by the control board, and then the control board and collector are encrypted and decrypted based on the random number to ensure correctness and also improve security Sex.
  • control board and the host collect and communicate with a preset communication method, instead of the traditional communication method, no additional communication line is required, thereby reducing time and cost.
  • FIG. 1 is a schematic structural diagram of a finger vein information recognition system in an embodiment of the present invention
  • FIG. 2 is a flowchart of a method for identifying finger vein information in an embodiment of the present invention
  • FIG. 4 is a schematic structural diagram of a device for identifying finger vein information in an embodiment of the present invention.
  • FIG. 5 is a schematic structural diagram of an electronic device in an embodiment of the present invention.
  • Finger vein recognition is a type of vein recognition. You can use the vein distribution image in your finger to perform identity recognition. The main principle is to collect finger vein image information, analyze and obtain finger vein characteristics, and then perform finger vein image information and characteristics. Storage for later identification and authentication. Finger vein recognition technology has a security performance that is difficult to copy and forge. It is currently widely used. For example, it can be applied to access control systems such as companies and factories, public places such as subway entrances and exits, smart building systems, hotel management, government agencies, prison access control, banks Financial access control and other fields.
  • commands and data communication are usually transmitted between the vein collector and the host through serial communication, and the finger vein information collected by the collector is also directly transmitted through the serial port without encryption. There is still a certain risk of vein information. If the third party intercepts the transmitted finger vein information, it can directly obtain the finger vein information without other processing, which reduces the security, and communicates with the host through the serial port method, which needs to be added
  • the communication line increases the cost and is not conducive to transplantation and expansion of the finger vein information recognition system and other equipment.
  • information is encrypted and then communicated to improve security, and a preset communication method is adopted between the control board and the host, such as power line communication (PCL) communication method, which replaces the traditional The transmission control protocol (Transmission Control Protocol, TCP) / Internet interconnection protocol (Internet Protocol, IP) and other communication methods do not need to add a communication line, which greatly reduces the cost.
  • PCL power line communication
  • FIG. 1 it is a schematic structural diagram of a finger vein information recognition system in an embodiment of the present invention, and at least includes a collector, a control board, and a host.
  • the host is a control device, and can send control commands to the control board, such as buttons, terminals, etc.
  • control commands such as buttons, terminals, etc.
  • the control board can send control commands to the control board, so that the control board can The entry instruction instructs the collector to perform the corresponding entry operation.
  • the control board can be integrated in the collector and can be set separately. In this embodiment of the present invention, there is no limitation.
  • the control board is connected to the collector and the host respectively, and is mainly used to process the finger vein information collected by the collector and send it to the collector. Send control commands, etc.
  • the control board and the host communicate through a preset communication method, specifically providing several possible implementation methods: the first type: adopts the PLC communication method, the second type: the wireless communication method,
  • the first type adopts the PLC communication method
  • the second type the wireless communication method
  • PCL communication method For example, referring to FIG. 1, only the PCL communication method is shown.
  • PCL or wireless communication is used instead of traditional communication.
  • PCL communication can be used to communicate between the control board and the host through the power line, which greatly reduces the cost of materials and labor.
  • the PCL communication method is used to facilitate the conversion of the old system such as the fingerprint identification system in the ID card access control system to the finger vein identification system, or to facilitate the installation of the new system of the finger vein identification system, without the need to increase the communication cable , which can save installation time and reduce costs.
  • the collector is a device for collecting finger vein information, and is mainly used for collecting finger vein information according to the control instructions of the control board.
  • the collector and the control board communicate through serial communication.
  • the control board receives a control command sent by the host through a preset communication method, and encrypts the control command and sends it to Collector, so that the collector obtains control instructions after decryption, and collects finger vein information according to the control instructions; obtains encrypted finger vein information sent by the collector; where the encrypted finger vein information is generated by the collector according to the control board Obtained by encrypting the random number and the preset encryption algorithm; decrypt the encrypted finger vein information according to the control board key generated based on the generated random number, and identify the decrypted finger vein information.
  • control board generates a random number and sends it to the collector, so that the control board and the collector generate corresponding keys based on the random number, and the collector performs finger vein information according to the collector key and the preset encryption algorithm.
  • the encrypted finger vein information is sent to the control board, and the control board decrypts according to the control board key generated by itself, and recognizes and extracts the finger vein information, which realizes the encrypted transmission and extraction of the finger vein information and improves the security. To prevent finger vein information from being copied and misappropriated.
  • the finger vein information in the communication process between the control board and the collector, not only the finger vein information can be encrypted, but also all data or related commands in the communication process can be encrypted and transmitted, which can further improve security .
  • system structure diagram in the embodiments of the present invention is to more clearly explain the technical solutions in the embodiments of the present invention, and does not constitute a limitation on the technical solutions provided in the embodiments of the present invention. It is not limited to finger vein information service applications. For other system structures and service applications, the technical solutions provided by the embodiments of the present invention are also applicable to similar problems.
  • the finger vein information recognition method is used in the system configuration diagram shown in FIG. 1 as an example for schematic description.
  • FIG. 2 it is a flowchart of a finger vein information recognition method according to an embodiment of the present invention.
  • the method includes:
  • Step 200 The control board receives the control command sent by the host through the preset communication method.
  • the finger vein information recognition method in the embodiment of the present invention is mainly applied to a control board.
  • the preset communication method is any one of the following: PCL communication method, wireless communication method.
  • PCL or wireless communication can be used to communicate between the control board and the host, which is more convenient, does not require additional communication lines, reduces costs, and is also easy to transplant.
  • Step 210 Encrypt the control instruction and send it to the collector.
  • control board key generated based on the generated random number, encrypts the control command, and sends the encrypted control command to the collector, so that the collector can obtain the control command after decrypting according to the collector key, Collect finger vein information according to control instructions.
  • the preset encryption algorithm is any one of the following: Camellia encryption algorithm, Message Digest Algorithm (MD5) encryption algorithm and symmetric encryption algorithm, the embodiment of the present invention is not limited, the purpose is to make the control board and Encrypted communication can be performed correctly between collectors.
  • Camellia encryption algorithm Message Digest Algorithm (MD5) encryption algorithm
  • MD5 Message Digest Algorithm
  • symmetric encryption algorithm the embodiment of the present invention is not limited, the purpose is to make the control board and Encrypted communication can be performed correctly between collectors.
  • control board sends the encrypted control instruction to the collector, so that the collector decrypts the encrypted control instruction according to the generated collector key to obtain the control instruction.
  • the collector key generated by the collector is the control board sends the generated random number to the collector, the collector is generated according to the random number and the preset encryption algorithm, that is, the random number is generated by the control board, and
  • the control board and the collector can generate a key based on the same random number and encryption algorithm, so the same key can be generated, so that the control board and the collector can communicate and encrypt and decrypt based on this key to achieve mutual Encrypted communication.
  • Step 220 Obtain the encrypted finger vein information sent by the collector; wherein the encrypted finger vein information is obtained by encrypting the collector according to the random number generated by the control board and a preset encryption algorithm.
  • the collector collects the finger vein information and encrypts it, and sends the encrypted finger vein information to the control board.
  • the control board does not generate a random number and send it to the collector every time, but it is generated at the initial power-up, that is, during the entire power-on process at a time, the control board only A random number needs to be generated once, and the control board and collector only need to generate a key.
  • the key used for communication between the two parties is unchanged.
  • the random number is generated again and Generate a new key, so that not only can improve communication efficiency, but also improve security.
  • a possible implementation manner is provided in the embodiment of the present invention. After power-on initialization, a random number is generated, and the generated random number is sent to the collector, so that the collector generates the collector key according to the random number And encrypt based on the collector key and preset encryption algorithm.
  • Step 230 Decrypt the encrypted finger vein information according to the control board key generated based on the generated random number, and recognize the decrypted finger vein information.
  • control board can decrypt according to the control board key generated by itself to obtain the decrypted finger vein information.
  • the finger vein information is transmitted after being encrypted, which further improves the security performance.
  • control commands and finger vein information not only can the control commands and finger vein information be encrypted and transmitted, but also all the communication commands or data between the control board and the collector can be generated according to the corresponding key and pre- generated
  • the encryption algorithm is set up for encryption, and then transmission is performed to improve the security of the communication process and prevent the leakage of finger vein information.
  • the communication between the control board and the host computer is performed by a preset communication method, instead of the traditional communication method such as a serial port, no additional communication lines are required, and the laying of communication cables is reduced, thereby reducing time and reducing Cost, and encrypt the finger vein information, realize the extraction after the encryption of the finger vein information, and the encrypted communication between the control board and the collector can further improve the security.
  • the following uses specific application scenarios to explain in detail, and explains the encryption communication process between the control board and the collector.
  • the flowchart of the encryption principle in the embodiment of the invention specifically includes:
  • control board generates random numbers.
  • the central processing unit (CPU) of the control board randomly generates a random number.
  • the preset encryption algorithm is Camellia encryption algorithm
  • a 512-byte random number can be generated.
  • control board sends the random number to the collector through serial communication.
  • the collector receives the random number sent by the control board and encrypts it according to the random number and Camellia encryption algorithm to obtain the encrypted logical command.
  • the collector generates a collector key according to the random number and encryption operation, and encrypts based on the collector key and Camellia encryption algorithm.
  • control board generates the control board key according to the random number and encryption operation, and obtains the encrypted logical command according to the control board key and Camellia encryption algorithm.
  • a 512-byte random number is generated, and the 16-byte key required by the Camellia encryption algorithm is obtained after the encryption operation.
  • control board generates a random number, so that the control board and the collector can generate a corresponding key based on the same random number, to ensure that the control board and the collector can correctly encrypt and decrypt, and realize communication Reliability.
  • control board and collector can communicate based on encrypted logical commands.
  • the collector and the control board are encrypted to obtain the execution order of the encrypted logical commands, which is not limited in the embodiment of the present invention.
  • Both the collector and the control board can send information according to the corresponding
  • the key is encrypted, sent after encryption, and can also be decrypted when the information sent by the other party is received to obtain the corresponding information, thereby realizing the encrypted communication of the finger vein information characteristics and related commands, and ensuring the security of the information.
  • the finger vein information recognition device which is applied to the control board, specifically includes:
  • the obtaining module 40 is configured to obtain encrypted finger vein information sent by the collector; wherein the encrypted finger vein information is encrypted by the collector according to a random number generated by the control board and a preset encryption algorithm owned;
  • the identification module 41 is configured to decrypt the encrypted finger vein information according to the control board key generated based on the generated random number, and identify the decrypted finger vein information.
  • the generating module 42 is configured to generate a random number after power-on initialization, and send the generated random number to the collector, so that the collector generates a collector key according to the random number, and based on the The collector key and preset encryption algorithm are used for encryption.
  • the preset encryption algorithm is any one of the following: Camellia encryption algorithm, message digest algorithm MD5 encryption algorithm, and symmetric encryption algorithm.
  • the receiving module 43 is used to receive the control command sent by the host through the preset communication mode
  • the encryption module 44 is used to encrypt the control command based on the generated random number of the control board key, and send the encrypted control command to the collector, so that the collector according to the collection After decrypting the device key, the control instruction is obtained, and finger vein information is collected according to the control instruction.
  • the preset communication mode is any one of the following: power line communication PCL communication mode and wireless communication mode.
  • FIG. 5 in an embodiment of the present invention, a schematic structural diagram of an electronic device.
  • the electronic device may include a processor 510 (Center Processing Unit, CPU), a memory 520, an input device 530, an output device 540, and the like.
  • the input device 530 may include a keyboard, a mouse, a touch screen, etc.
  • the output device 540 may include a display device, such as a liquid crystal display (Liquid Crystal (Display), LCD), a cathode ray tube (Cathode Ray Tube, CRT), and so on.
  • the memory 520 may include a read-only memory (ROM) and a random access memory (RAM), and provide the processor 510 with program instructions and data stored in the memory 520.
  • the memory 520 may be used to store the program of the finger vein information recognition method described above.
  • the processor 510 calls the program instructions stored in the memory 520, and the processor 510 is configured to execute any of the steps of the finger vein information recognition method according to the obtained program instructions.
  • a computer-readable storage medium on which a computer program is stored, and the computer program is executed by a processor to implement the finger vein information recognition method in any of the above method embodiments .
  • the embodiments of the present invention may be provided as methods, systems, or computer program products. Therefore, the present invention may take the form of an entirely hardware embodiment, an entirely software embodiment, or an embodiment combining software and hardware. Moreover, the present invention may take the form of a computer program product implemented on one or more computer usable storage media (including but not limited to disk storage, CD-ROM, optical storage, etc.) containing computer usable program code.
  • computer usable storage media including but not limited to disk storage, CD-ROM, optical storage, etc.
  • These computer program instructions may also be stored in a computer readable memory that can guide a computer or other programmable data processing device to work in a specific manner, so that the instructions stored in the computer readable memory produce an article of manufacture including an instruction device, the instructions The device implements the functions specified in one block or multiple blocks of the flowchart one flow or multiple flows and / or block diagrams.
  • These computer program instructions can also be loaded onto a computer or other programmable data processing device, so that a series of operating steps are performed on the computer or other programmable device to produce computer-implemented processing, which is executed on the computer or other programmable device
  • the instructions provide steps for implementing the functions specified in one block or multiple blocks of the flowchart one flow or multiple flows and / or block diagrams.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Measurement Of The Respiration, Hearing Ability, Form, And Blood Characteristics Of Living Organisms (AREA)

Abstract

一种指静脉信息识别方法及装置,该方法为,控制板获取采集器发送的加密后的指静脉信息;其中,加密后的指静脉信息是采集器根据控制板产生的随机数和预设加密算法进行加密后得到的(220);根据基于产生的随机数生成的控制板密钥,对加密后的指静脉信息进行解密,识别出解密后的指静脉信息(230),对指静脉信息进行加密传输,提高了安全性,防止指静脉信息被盗用或复制,并且由控制板产生随机数,然后控制板和采集器均基于该随机数进行加密和解密,保证正确性,也提高了安全性。

Description

一种指静脉信息识别方法及装置 技术领域
本发明涉及指静脉识别领域,尤其涉及一种指静脉信息识别方法及装置。
背景技术
指静脉识别是静脉识别的一种,是一种新的生物特征识别技术,具有难以伪造、安全性高等特点,具有很好的发展前景。
现有技术中,指静脉信息识别方法,主要是通过指静脉采集器采集指静脉信息,并通过串口方式与主机或其它设备通信,仅通过串口进行简单的命令通信,实现指静脉信息采集和传输等,这种方式,指静脉信息盗取还是存在一定风险,降低了安全性。
发明内容
本发明实施例提供一种指静脉信息识别方法及装置,以解决现有技术中指静脉信息存在一定风险的问题。
本发明实施例提供的具体技术方案如下:
一种指静脉信息识别方法,包括:
控制板获取采集器发送的加密后的指静脉信息;其中,所述加密后的指静脉信息是所述采集器根据所述控制板产生的随机数和预设加密算法进行加密后得到的;
根据基于所述产生的随机数生成的控制板密钥,对所述加密后的指静脉信息进行解密,识别出解密后的指静脉信息。
可选的,进一步包括:
上电初始化后,产生随机数,并将产生的随机数发送给所述采集器,以使所述采集器根据所述随机数,生成采集器密钥,并基于所述采集器密钥和预设加密算法进行加密。
可选的,所述预设加密算法为以下任意一种:Camellia加密算法、消息摘要算法MD5加密算法和对称加密算法。
可选的,进一步包括:
接收主机通过预设通讯方式发送的控制指令;
基于所述产生的随机数生成的控制板密钥,对所述控制指令进行加密,并将加密后的控制指令发送给所述采集器,以使所述采集器根据采集器密钥进行解密后,获得所述控制指令,并根据所述控制指令采集指静脉信息。
可选的,所述预设通信方式为以下任意一种:电力线通信PCL通讯方式、无线通讯方 式。
一种指静脉信息识别装置,应用于控制板,包括:
获取模块,用于获取采集器发送的加密后的指静脉信息;其中,所述加密后的指静脉信息是所述采集器根据所述控制板产生的随机数和预设加密算法进行加密后得到的;
识别模块,用于根据基于所述产生的随机数生成的控制板密钥,对所述加密后的指静脉信息进行解密,识别出解密后的指静脉信息。
可选的,进一步包括:
生成模块,用于上电初始化后,产生随机数,并将产生的随机数发送给所述采集器,以使所述采集器根据所述随机数,生成采集器密钥,并基于所述采集器密钥和预设加密算法进行加密。
可选的,所述预设加密算法为以下任意一种:Camellia加密算法、消息摘要算法MD5加密算法和对称加密算法。
可选的,进一步包括:
接收模块,用于接收主机通过预设通讯方式发送的控制指令;
加密模块,用于基于所述产生的随机数生成的控制板密钥,对所述控制指令进行加密,并将加密后的控制指令发送给所述采集器,以使所述采集器根据采集器密钥进行解密后,获得所述控制指令,并根据所述控制指令采集指静脉信息。
可选的,所述预设通信方式为以下任意一种:电力线通信PCL通讯方式、无线通讯方式。
一种电子设备,包括:
至少一个存储器,用于存储计算机程序;
至少一个处理器,用于执行存储器中存储的计算机程序时实现上述任一种指静脉信息识别方法的步骤。
一种计算机可读存储介质,其上存储有计算机程序,所述计算机程序被处理器执行时实现上述任一种指静脉信息识别方法的步骤。
本发明实施例中,控制板获取采集器发送的加密后的指静脉信息;其中,所述加密后的指静脉信息是所述采集器根据所述控制板产生的随机数和预设加密算法进行加密后得到的;根据基于所述产生的随机数生成的控制板密钥,对所述加密后的指静脉信息进行解密,识别出解密后的指静脉信息,这样,对指静脉信息进行加密后再进行传输,提高了安全性,防止指静脉信息被盗用或复制,并且由控制板产生随机数,然后控制板和采集器均基于该随机数进行加密和解密,保证正确性,也提高了安全性。
并且,本发明实施例中,控制板和主机采集预设通讯方式进行通讯,替代传统的通讯方式,不需要额外增加通讯线路,从而减少了时间,也降低了成本。
附图说明
被结合在说明书中并构成说明书的一部分的附图示出了本发明的实施例,并且连同其说明一起用于解释本发明的原理。
图1为本发明实施例中指静脉信息识别系统结构示意图;
图2为本发明实施例中指静脉信息识别方法的流程图;
图3为本发明实施例中加密原理流程图;
图4为本发明实施例中指静脉信息识别装置结构示意图;
图5为本发明实施例中电子设备结构示意图。
具体实施方式
下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述,显然,所描述的实施例仅仅是本发明一部分实施例,并不是全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有做出创造性劳动前提下所获得的所有其他实施例,都属于本发明保护的范围。
指静脉识别是静脉识别的一种,可以利用手指内的静脉分布图像来进行身份识别,主要原理是采集指静脉图像信息,进行分析处理后获得指静脉特征,并将指静脉图像信息和特征进行存储,用于之后的身份识别认证等。指静脉识别技术具有难以复制和伪造的安全性能,目前应用非常广泛,例如,可以应用于公司、工厂等门禁系统,地铁出入口等公共场所,智能楼宇系统,酒店管理,政府机构,监狱门禁,银行金融门禁等领域。
现有技术中,通常指静脉的采集器和主机之间通过串口通讯方式实现命令以及数据通信传输,采集器采集到的指静脉信息也直接通过串口进行传输,不进行加密,这种方式,指静脉信息还是存在一定风险,若第三方截获到传输的指静脉信息,则不需要其它处理就可以直接获得指静脉信息,降低了安全性,并且与主机之间通过串口方式进行通讯,需要加设通讯线路,加大了成本,也不利于指静脉信息识别系统与其它设备移植和扩展。
而本发明实施例中主要在于对信息进行加密后再进行通信,提高了安全性,并且控制板与主机之间采用预设通讯方式,例如电力线通信(Power Line Communication,PCL)通讯方式,替代传统的传输控制协议(Transmission Control Protocol,TCP)/因特网互联协议(Internet Protocol,IP)等通讯方式,无需新增通讯线路,大大降低了成本。
参阅图1所示,为本发明实施例中指静脉信息识别系统结构示意图,至少包括采集器、控制板和主机。
主机为控制设备,可以向控制板发送控制指令,例如按钮、终端等,本发明实施例中并不进行限制,例如,用户点击录入按钮,则向控制板发送了录入指令,从而控制板可以 根据该录入指令,指示采集器执行相应的录入操作。
控制板可以集成在采集器中,可以单独设置,本发明实施例中并不进行限制,控制板分别与采集器和主机连接,主要用于处理采集器采集到的指静脉信息,并向采集器发送控制指令等。
其中,本发明实施例中,控制板与主机之间通过预设通讯方式进行通信,具体地提供了几种可能的实施方式:第一种:采用PLC通讯方式,第二种:无线通讯方式,例如,参阅图1所示,仅示出了PCL通讯方式,这样,由于传统上与主机通讯通常采用485、TCP/IP等通讯方式,需要加设通讯线路,增加了成本,而本发明实施例中,采用PCL或无线通讯方式,替代传统的通讯方式,例如采用PCL通讯方式,可以通过电力线实现控制板与主机通信,大大降低了材料成本和人工成本,例如,对于ID卡门禁系统应用场景,采用PCL通讯方式,使得对ID卡门禁系统中原有的例如指纹识别系统等旧系统改造为指静脉识别系统时提供了便利,或者对指静脉识别系统的新系统安装提供了便利,无需增加通讯电缆,从而可以节省安装时间,降低成本。
采集器为采集指静脉信息的设备,主要用于根据控制板的控制指令,采集指静脉信息。
其中,采集器与控制板之间通过串口通讯方式进行通信。
为了解决现有技术中指静脉信息存在一定风险的问题,本发明实施例中提供了一种可能的实施方式,控制板接收主机通过预设通讯方式发送的控制指令,并将控制指令加密后发送给采集器,以使采集器解密后,获得控制指令,并根据控制指令采集指静脉信息;获取采集器发送的加密后的指静脉信息;其中,加密后的指静脉信息是采集器根据控制板产生的随机数和预设加密算法进行加密后得到的;根据基于产生的随机数生成的控制板密钥,对加密后的指静脉信息进行解密,识别出解密后的指静脉信息。
这样,控制板产生随机数,并发送给采集器,以使控制板和采集器分别基于该随机数生成相应的密钥,采集器根据采集器密钥和预设加密算法,对指静脉信息进行加密后,将加密后的指静脉信息发送给控制板,控制板再根据自身生成的控制板密钥进行解密,识别提取出指静脉信息,实现了指静脉信息加密传输和提取,提高了安全性,防止指静脉信息被复制盗用。
进一步地,本发明实施例中,在控制板和采集器通信过程中,不仅可以对指静脉信息进行加密,还可以对通信过程中所有数据或相关命令等均进行加密传输,可以进一步提高安全性。
值得说明的是,本发明实施例中的系统结构图是为了更加清楚地说明本发明实施例中的技术方案,并不构成对本发明实施例提供的技术方案的限制,并且,本发明实施例中也不仅限于指静脉信息业务应用,对于其它的系统结构和业务应用,本发明实施例提供的技术方案对于类似的问题,同样适用。
本发明各个实施例中,以指静脉信息识别方法用于图1所示的系统结构图为例进行示意性说明。
参阅图2所示,为本发明实施例中指静脉信息识别方法流程图,该方法包括:
步骤200:控制板接收主机通过预设通讯方式发送的控制指令。
本发明实施例中指静脉信息识别方法主要应用于控制板。
其中,预设通信方式为以下任意一种:PCL通讯方式、无线通讯方式。
这样,控制板与主机之间可以通过PCL或无线通讯方式,进行通信,更加方便,不需要额外增加通讯线路,减少了成本,也便于移植。
步骤210:将控制指令加密后发送给采集器。
具体地:基于产生的随机数生成的控制板密钥,对控制指令进行加密,并将加密后的控制指令发送给采集器,以使采集器根据采集器密钥进行解密后,获得控制指令,并根据控制指令采集指静脉信息。
其中,预设加密算法为以下任意一种:Camellia加密算法、消息摘要算法(Message Digest Algorithm,MD5)加密算法和对称加密算法,本发明实施例中并不进行限制,目的是为了使控制板和采集器之间可以正确地进行加密通信。
本发明实施例中,控制板将加密后的控制指令发送给采集器,从而使采集器根据生成的采集器密钥,对该加密后的控制指令进行解密,获得该控制指令。
其中,采集器生成的采集器密钥是控制板将产生的随机数发送给采集器,采集器根据该随机数和预设加密算法生成的,也就是说,是由控制板产生随机数,并控制板和采集器可以基于同样的随机数和加密算法,生成密钥,因此可以生成相同的密钥,从而控制板和采集器都可以基于此密钥进行通信和加解密,实现相互之间的加密通信。
步骤220:获取采集器发送的加密后的指静脉信息;其中,加密后的指静脉信息是采集器根据控制板产生的随机数和预设加密算法进行加密后得到的。
具体为:采集器采集指静脉信息,并进行加密,将加密后的指静脉信息发送给控制板。
需要说明的是,本发明实施例中,控制板不是每一次通信都产生随机数并发送给采集器,而是在初始上电时产生即可,即在一次整个上电过程中,控制板只需产生一次随机数,并且控制板和采集器只需生成一次密钥,在一次上电过程中,双方通信采用的密钥是不变的,待下一次上电时,再重新产生随机数并生成新的密钥,这样,不仅可以提高通信效率,也可以提高安全性。
进一步地,本发明实施例中提供了一种可能的实施方式,上电初始化后,产生随机数,并将产生的随机数发送给采集器,以使采集器根据随机数,生成采集器密钥,并基于采集器密钥和预设加密算法进行加密。
步骤230:根据基于产生的随机数生成的控制板密钥,对加密后的指静脉信息进行解 密,识别出解密后的指静脉信息。
这样,控制板就可以根据自身生成的控制板密钥,进行解密,获得解密后的指静脉信息,指静脉信息经过加密运算后传输,进一步提高了安全性能。
进一步地,本发明实施例中,不仅可以对控制指令和指静脉信息加密传输,还对于控制板和采集器之间所有通信的命令或数据等信息,都可以根据生成的相应的密钥和预设加密算法进行加密后,再进行传输,提高通信过程的安全性,防止指静脉信息被泄露。
这样,本发明实施例中,控制板和主机之间通过预设通讯方式进行通信,代替串口等传统的通讯方式,不需要额外增加通讯线路,减少通讯电缆的铺设,从而减少了时间,降低了成本,并且对指静脉信息进行加密,实现对指静脉信息加密后提取,控制板和采集器加密通讯,可以进一步提高安全性。
下面采用具体的应用场景进行具体说明,对控制板和采集器之间加密通信过程进行说明,以预设加密算法为Camellia加密算法为例,基于上述实施例,具体参阅图3所示,为本发明实施例中加密原理流程图,具体包括:
首先,控制板产生随机数。
具体地,在上电后,控制板的中央处理器(Central Processing Unit,CPU)随机产生随机数。
例如,若预设加密算法为Camellia加密算法,则可以产生512字节的随机数。
然后,控制板将随机数通过串口通讯方式发送给采集器。
然后,采集器接收控制板发送的随机数,并根据随机数和Camellia加密算法进行加密,获得加密后的逻辑命令。
具体地,采集器根据随机数和加密运算,生成采集器密钥,并基于采集器密钥和Camellia加密算法进行加密。
然后,控制板根据随机数和加密运算,生成控制板密钥,并根据控制板密钥和Camellia加密算法,获得加密后的逻辑命令。
例如,产生512字节随机数,通过加密运算后得到Camellia加密算法所需的16字节的密钥。
也就是说,本发明实施例中控制板产生随机数,从而使得控制板和采集器可以基于该相同的随机数,生成相应的密钥,保证控制板和采集器可以正确进行加解密,实现通讯的可靠性。
最后,控制板和采集器可以基于加密后的逻辑命令进行通讯。
指的说明的是,上述采集器和控制板加密,获得加密后的逻辑命令的执行顺序,本发明实施例中并不进行限制,采集器和控制板都可以在发送信息时,根据相应的密钥进行加密,加密后发送,也可以在接收到对方发送的信息时,进行解密,获得相应的信息,从而 实现指静脉信息特征和相关命令的加密通讯,保证信息的安全性。
基于上述实施例,参阅图4所示,本发明实施例中,指静脉信息识别装置,应用于控制板,具体包括:
获取模块40,用于获取采集器发送的加密后的指静脉信息;其中,所述加密后的指静脉信息是所述采集器根据所述控制板产生的随机数和预设加密算法进行加密后得到的;
识别模块41,用于根据基于所述产生的随机数生成的控制板密钥,对所述加密后的指静脉信息进行解密,识别出解密后的指静脉信息。
可选的,进一步包括:
生成模块42,用于上电初始化后,产生随机数,并将产生的随机数发送给所述采集器,以使所述采集器根据所述随机数,生成采集器密钥,并基于所述采集器密钥和预设加密算法进行加密。
可选的,所述预设加密算法为以下任意一种:Camellia加密算法、消息摘要算法MD5加密算法和对称加密算法。
可选的,进一步包括:
接收模块43,用于接收主机通过预设通讯方式发送的控制指令;
加密模块44,用于基于所述产生的随机数生成的控制板密钥,对所述控制指令进行加密,并将加密后的控制指令发送给所述采集器,以使所述采集器根据采集器密钥进行解密后,获得所述控制指令,并根据所述控制指令采集指静脉信息。
可选的,所述预设通信方式为以下任意一种:电力线通信PCL通讯方式、无线通讯方式。
参阅图5所示,本发明实施例中,一种电子设备结构示意图。
本发明实施例提供了一种电子设备,该电子设备可以包括处理器510(Center Processing Unit,CPU)、存储器520、输入设备530和输出设备540等,输入设备530可以包括键盘、鼠标、触摸屏等,输出设备540可以包括显示设备,如液晶显示器(Liquid Crystal Display,LCD)、阴极射线管(Cathode Ray Tube,CRT)等。
存储器520可以包括只读存储器(ROM)和随机存取存储器(RAM),并向处理器510提供存储器520中存储的程序指令和数据。在本发明实施例中,存储器520可以用于存储上述指静脉信息识别方法的程序。
处理器510通过调用存储器520存储的程序指令,处理器510用于按照获得的程序指令执行上述任一种指静脉信息识别方法的步骤。
基于上述实施例,本发明实施例中,提供了一种计算机可读存储介质,其上存储有计算机程序,所述计算机程序被处理器执行时实现上述任意方法实施例中的指静脉信息识别方法。
本领域内的技术人员应明白,本发明的实施例可提供为方法、系统、或计算机程序产品。因此,本发明可采用完全硬件实施例、完全软件实施例、或结合软件和硬件方面的实施例的形式。而且,本发明可采用在一个或多个其中包含有计算机可用程序代码的计算机可用存储介质(包括但不限于磁盘存储器、CD-ROM、光学存储器等)上实施的计算机程序产品的形式。
本发明是参照根据本发明实施例的方法、设备(系统)、和计算机程序产品的流程图和/或方框图来描述的。应理解可由计算机程序指令实现流程图和/或方框图中的每一流程和/或方框、以及流程图和/或方框图中的流程和/或方框的结合。可提供这些计算机程序指令到通用计算机、专用计算机、嵌入式处理机或其他可编程数据处理设备的处理器以产生一个机器,使得通过计算机或其他可编程数据处理设备的处理器执行的指令产生用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的装置。
这些计算机程序指令也可存储在能引导计算机或其他可编程数据处理设备以特定方式工作的计算机可读存储器中,使得存储在该计算机可读存储器中的指令产生包括指令装置的制造品,该指令装置实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能。
这些计算机程序指令也可装载到计算机或其他可编程数据处理设备上,使得在计算机或其他可编程设备上执行一系列操作步骤以产生计算机实现的处理,从而在计算机或其他可编程设备上执行的指令提供用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的步骤。
尽管已描述了本发明的优选实施例,但本领域内的技术人员一旦得知了基本创造性概念,则可对这些实施例作出另外的变更和修改。所以,所附权利要求意欲解释为包括优选实施例以及落入本发明范围的所有变更和修改。
显然,本领域的技术人员可以对本发明实施例进行各种改动和变型而不脱离本发明实施例的精神和范围。这样,倘若本发明实施例的这些修改和变型属于本发明权利要求及其等同技术的范围之内,则本发明也意图包含这些改动和变型在内。

Claims (12)

  1. 一种指静脉信息识别方法,其特征在于,包括:
    控制板获取采集器发送的加密后的指静脉信息;其中,所述加密后的指静脉信息是所述采集器根据所述控制板产生的随机数和预设加密算法进行加密后得到的;
    根据基于所述产生的随机数生成的控制板密钥,对所述加密后的指静脉信息进行解密,识别出解密后的指静脉信息。
  2. 如权利要求1所述的方法,其特征在于,进一步包括:
    上电初始化后,产生随机数,并将产生的随机数发送给所述采集器,以使所述采集器根据所述随机数,生成采集器密钥,并基于所述采集器密钥和预设加密算法进行加密。
  3. 如权利要求1或2所述的方法,其特征在于,所述预设加密算法为以下任意一种:Camellia加密算法、消息摘要算法MD5加密算法和对称加密算法。
  4. 如权利要求1所述的方法,其特征在于,进一步包括:
    接收主机通过预设通讯方式发送的控制指令;
    基于所述产生的随机数生成的控制板密钥,对所述控制指令进行加密,并将加密后的控制指令发送给所述采集器,以使所述采集器根据采集器密钥进行解密后,获得所述控制指令,并根据所述控制指令采集指静脉信息。
  5. 如权利要求4所述的方法,其特征在于,所述预设通信方式为以下任意一种:电力线通信PCL通讯方式、无线通讯方式。
  6. 一种指静脉信息识别装置,其特征在于,应用于控制板,包括:
    获取模块,用于获取采集器发送的加密后的指静脉信息;其中,所述加密后的指静脉信息是所述采集器根据所述控制板产生的随机数和预设加密算法进行加密后得到的;
    识别模块,用于根据基于所述产生的随机数生成的控制板密钥,对所述加密后的指静脉信息进行解密,识别出解密后的指静脉信息。
  7. 如权利要求6所述的装置,其特征在于,进一步包括:
    生成模块,用于上电初始化后,产生随机数,并将产生的随机数发送给所述采集器,以使所述采集器根据所述随机数,生成采集器密钥,并基于所述采集器密钥和预设加密算法进行加密。
  8. 如权利要求6或7所述的装置,其特征在于,所述预设加密算法为以下任意一种:Camellia加密算法、消息摘要算法MD5加密算法和对称加密算法。
  9. 如权利要求6所述的装置,其特征在于,进一步包括:
    接收模块,用于接收主机通过预设通讯方式发送的控制指令;
    加密模块,用于基于所述产生的随机数生成的控制板密钥,对所述控制指令进行加密,并将加密后的控制指令发送给所述采集器,以使所述采集器根据采集器密钥进行解密后, 获得所述控制指令,并根据所述控制指令采集指静脉信息。
  10. 如权利要求9所述的装置,其特征在于,所述预设通信方式为以下任意一种:电力线通信PCL通讯方式、无线通讯方式。
  11. 一种电子设备,其特征在于,包括:
    至少一个存储器,用于存储计算机程序;
    至少一个处理器,用于执行存储器中存储的计算机程序时实现如权利要求1-5中任意一项所述方法的步骤。
  12. 一种计算机可读存储介质,其上存储有计算机程序,其特征在于:所述计算机程序被处理器执行时实现如权利要求1-5中任意一项所述方法的步骤。
PCT/CN2018/111065 2018-10-19 2018-10-19 一种指静脉信息识别方法及装置 WO2020077626A1 (zh)

Priority Applications (1)

Application Number Priority Date Filing Date Title
PCT/CN2018/111065 WO2020077626A1 (zh) 2018-10-19 2018-10-19 一种指静脉信息识别方法及装置

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/CN2018/111065 WO2020077626A1 (zh) 2018-10-19 2018-10-19 一种指静脉信息识别方法及装置

Publications (1)

Publication Number Publication Date
WO2020077626A1 true WO2020077626A1 (zh) 2020-04-23

Family

ID=70284401

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2018/111065 WO2020077626A1 (zh) 2018-10-19 2018-10-19 一种指静脉信息识别方法及装置

Country Status (1)

Country Link
WO (1) WO2020077626A1 (zh)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN112714232A (zh) * 2020-12-31 2021-04-27 中国工商银行股份有限公司 指静脉图像数据传输方法及装置
CN112926490A (zh) * 2021-03-17 2021-06-08 中国工商银行股份有限公司 指静脉图像识别方法、装置、计算设备和介质

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN201903889U (zh) * 2010-12-28 2011-07-20 江西凌佳科技有限公司 手指静脉识别终端
CN203192002U (zh) * 2013-03-26 2013-09-11 深圳市中控生物识别技术有限公司 一种手指静脉采集与识别装置
US20140363060A1 (en) * 2011-06-02 2014-12-11 Charles WOHL Hand-held device for biometric identification
CN104899486A (zh) * 2014-03-04 2015-09-09 杨济忠 微型化网络终端用户生物信息识别仪器及系统认证运行方法
CN105678233A (zh) * 2015-12-30 2016-06-15 北京天诚盛业科技有限公司 基于指纹与指静脉的复合识别方法、装置及系统

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN201903889U (zh) * 2010-12-28 2011-07-20 江西凌佳科技有限公司 手指静脉识别终端
US20140363060A1 (en) * 2011-06-02 2014-12-11 Charles WOHL Hand-held device for biometric identification
CN203192002U (zh) * 2013-03-26 2013-09-11 深圳市中控生物识别技术有限公司 一种手指静脉采集与识别装置
CN104899486A (zh) * 2014-03-04 2015-09-09 杨济忠 微型化网络终端用户生物信息识别仪器及系统认证运行方法
CN105678233A (zh) * 2015-12-30 2016-06-15 北京天诚盛业科技有限公司 基于指纹与指静脉的复合识别方法、装置及系统

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN112714232A (zh) * 2020-12-31 2021-04-27 中国工商银行股份有限公司 指静脉图像数据传输方法及装置
CN112714232B (zh) * 2020-12-31 2023-04-07 中国工商银行股份有限公司 指静脉图像数据传输方法及装置
CN112926490A (zh) * 2021-03-17 2021-06-08 中国工商银行股份有限公司 指静脉图像识别方法、装置、计算设备和介质

Similar Documents

Publication Publication Date Title
WO2020237868A1 (zh) 数据传输方法、电子设备、服务器及存储介质
US8484480B2 (en) Transmitting information using virtual input layout
CN111835511A (zh) 数据安全传输方法、装置、计算机设备及存储介质
US10659226B2 (en) Data encryption method, decryption method, apparatus, and system
CN104239815A (zh) 基于虹膜识别的电子文档加密解密装置及方法
CN109951295B (zh) 密钥处理和使用方法、装置、设备及介质
CN104715187A (zh) 用于认证电子通信系统中的节点的方法和装置
CN103873440A (zh) 一种应用程序的升级方法和系统
WO2022078367A1 (zh) 支付密钥的加密和解密方法、支付认证方法及终端设备
CN101808077B (zh) 信息安全输入处理系统和方法以及智能卡
TWI724684B (zh) 用於執行經過身分驗證的加密操作的方法、系統及裝置
CN104660397A (zh) 密钥管理方法及系统
CN101739622A (zh) 一种可信支付计算机系统
CN114070614A (zh) 身份认证方法、装置、设备、存储介质和计算机程序产品
CN110569672A (zh) 一种基于移动设备的高效可信电子签名系统及方法
WO2020077626A1 (zh) 一种指静脉信息识别方法及装置
CN112636916A (zh) 数据处理方法、装置、存储介质及电子设备
CN111740824A (zh) 可信应用管理方法及装置
WO2022247790A1 (zh) 一种数据管理方法、装置、设备和存储介质
CN112987942B (zh) 键盘输入信息的方法、装置、系统、电子设备和存储介质
US9756044B2 (en) Establishment of communication connection between mobile device and secure element
CN111741268B (zh) 视频的传输方法、装置、服务器、设备和介质
WO2020052383A1 (zh) 一种指纹处理系统、方法及指纹设备
CN105357005A (zh) 一种pci/pci-e接口的电力可信计算密码模块
CN115659378A (zh) 案件记录信息的存证方法及相关设备

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 18937131

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 18937131

Country of ref document: EP

Kind code of ref document: A1