System mirror image document signature method and system, client and server
A technology for system mirroring and mirroring files, applied in the field of information security, can solve problems such as private key leakage, and achieve the effects of avoiding private key leakage, saving labor costs, and enhancing security.
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0047] refer to figure 1 , shows a method for signing a system image file according to an embodiment of the present invention, and the method may specifically include the following steps.
[0048] Step 101, the server sets a signature directory and a program directory, the signature directory has access rights to the client; the program directory includes signature scripts and private keys, and the program directory does not have access rights to the client.
[0049] Considering that the present invention may run under the linux operating system environment, the linux ftp software vsftpd (very secure FTP daemon, very safe FTP process) that is currently more commonly used and more stable can be selected to deploy the ftp server.
[0050] The server sets a signature directory with read and write permissions for the client, for the client to upload and download system image files. In addition, a program directory is set up to save the signature script and private key, and this p...
Embodiment 2
[0065] refer to figure 2 , showing a method for signing a system image file according to another embodiment of the present invention, the method may specifically include the following steps:
[0066] Step 201, the server sets a signature directory and a program directory, the signature directory has access rights to the client; the program directory includes signature scripts and private keys, and the program directory does not have access rights to the client.
[0067] For this step, reference may be made to step 101, which will not be repeated here.
[0068] It should be noted that, in this embodiment, in order to facilitate the server to manage the signature directory or each subdirectory, status information is set for the signature directory or each subdirectory, and the server and the client perform corresponding processing according to the status information. Status information includes upload status, signature status, download status, and timeout status.
[0069] The...
Embodiment 3
[0091] This embodiment provides a client 300 , including an upload unit 301 and a download unit 302 .
[0092] The upload unit 301 is configured to upload an unsigned image file, and the uploaded system image file is stored in a signature directory set by the server, and the signature directory has access authority to the client.
[0093] Downloading unit 302 is used for downloading the signed image file, the signed image file is to execute the signature script of the program directory by the server, and use the private key to sign the system image file; the program directory is preset by the server, including the signature script and the private key. key, the program directory does not have access rights to the client.
PUM
Login to View More Abstract
Description
Claims
Application Information
Login to View More 


