A control method and device, electronic equipment and computer readable storage medium

By backing up and verifying the security reference information of the first system in the second system, the problem of information loss caused by users forgetting their power-on password is solved, and information retention without reinstalling the system is achieved.

CN111783048BActive Publication Date: 2026-01-16LENOVO (BEIJING) LTD
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202010606464.2
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2020-06-29
Publication Date
2026-01-16
Estimated Expiration
2041-09-02

AI Technical Summary

Technical Problem

When a user forgets their terminal's power-on password, they must reinstall the system, resulting in the loss of stored information.

Method used

The security reference information of the first system is stored in a specific storage space of the second system, and the first security reference information is obtained through the verification information of the second system, so as to realize the synchronous backup and verification of information.

Benefits of technology

Users can obtain primary security reference information through a secondary system when they forget their login password, avoiding the need to reinstall the system and ensuring that information is not lost.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN111783048B_ABST
    Figure CN111783048B_ABST
Patent Text Reader

Abstract

The application provides a control method and device, electronic equipment and computer readable storage medium, the method comprises the following steps: in response to a first system setting a first security reference information, storing the first security reference information to a specific storage space of a second system, wherein the second system is a system for booting the first system, and the first system is an operating system of the electronic equipment; in response to the second system obtaining second security verification information, and the second security verification information passing verification, obtaining the first security reference information.
Need to check novelty before this filing date? Find Prior Art

Description

TECHNICAL FIELD

[0001] The present application relates to the technical field of computer equipment, and relates to but is not limited to a control method and device, an electronic device, and a computer readable storage medium. BACKGROUND

[0002] With the rapid development of informatization, people's demand for information security is increasing. In order to improve the security of stored information in the terminal, a user sets a boot password in the system, and only when a correct boot password is input can the user successfully enter the system.

[0003] In the related art, when a user forgets the set boot password, the user must reinstall the system to enter the system, and the reinstallation of the system may cause the loss of stored information in the terminal. SUMMARY

[0004] Therefore, the embodiments of the present application provide a control method and device, an electronic device, and a computer readable storage medium.

[0005] The technical solution of the embodiments of the present application is as follows:

[0006] The embodiments of the present application provide a control method applied to an electronic device, and the method comprises the following steps.

[0007] In response to a first system setting a first security reference information, the first security reference information is stored in a specific storage space of a second system, and the second system is a system for booting the first system, and the first system is an operating system of the electronic device.

[0008] In response to the second system obtaining second security verification information, and the second security verification information passing the verification, the first security reference information is obtained.

[0009] In some embodiments, after the first security reference information is stored in the specific storage space of the second system, the method further comprises the following steps.

[0010] In response to the second system detecting that the second system does not store second security reference information in the storage space of the second system, a setting interface for setting the second security reference information is presented, and the second security reference information is verification information for booting the second system.

[0011] The second security reference information is set based on the setting interface, and the second security reference information is stored in the storage space.

[0012] In some embodiments, after the first security reference information is stored in the specific storage space of the second system, the method further comprises the following steps.

[0013] in response to the second system detecting that the second secure reference information is not stored in the storage space of the second system, presenting a setting interface for setting the second secure reference information, the second secure reference information being verification information for obtaining the first secure reference information;

[0014] setting the second secure reference information based on the setting interface;

[0015] establishing an association between the second secure reference information and the first secure reference information;

[0016] storing the association to the storage space.

[0017] In some embodiments, the setting of the second secure reference information based on the setting interface comprises:

[0018] controlling an image acquisition device to acquire a reference image based on the setting interface;

[0019] obtaining the second secure reference information according to the reference image;

[0020] Correspondingly, the second system obtaining the second secure verification information comprises:

[0021] presenting a second secure verification interface in response to a second instruction for starting the second system;

[0022] controlling the image acquisition device to acquire a to-be-verified image based on the second secure verification interface;

[0023] obtaining the second secure verification information according to the to-be-verified image.

[0024] In some embodiments, after the second secure verification information is obtained according to the to-be-verified image, the method further comprises:

[0025] matching the to-be-verified image and the reference image based on the second secure verification information and the second secure reference information to obtain a matching result;

[0026] in a case where the matching result is a matching success, determining that the second secure verification information passes the verification.

[0027] In some embodiments, the method further comprises:

[0028] outputting the first secure reference information;

[0029] presenting a first secure verification interface in response to a first instruction for starting the first system;

[0030] obtaining first secure verification information based on the first secure verification interface;

[0031] start the first system.

[0032] In some embodiments, before the second system acquires the second security verification information, the method further includes:

[0033] presenting a first security verification interface in response to a first instruction for starting the first system;

[0034] acquiring first security verification information based on the first security verification interface;

[0035] restarting the second system in a case where the number of times of determining that the first security verification information does not match the first security reference information is greater than a threshold number of times; or

[0036] restarting the second system in a case where an operation for acquiring the first security reference information is received.

[0037] Embodiments of the present application provide a control device applied to an electronic device, the device comprising:

[0038] a first storage module configured to store first security reference information to a specific storage space of a second system in response to the first system setting the first security reference information, the second system being a system for booting the first system, and the first system being an operating system of the electronic device;

[0039] a first acquisition module configured to acquire the first security reference information in response to the second system acquiring second security verification information and the second security verification information passing verification.

[0040] In some embodiments, the control device further comprises:

[0041] a first presentation module configured to present a setting interface for setting second security reference information in response to the second system detecting that the second system does not store the second security reference information in a storage space of the second system, the second security reference information being verification information for starting the second system;

[0042] a first setting module configured to set the second security reference information based on the setting interface;

[0043] a second storage module configured to store the second security reference information to the storage space.

[0044] In some embodiments, the control device further comprises:

[0045] a second presentation module configured to present a setting interface for setting second security reference information in response to the second system detecting that the second security reference information is not stored in a storage space of the second system, the second security reference information being verification information for obtaining the first security reference information;

[0046] a second setting module configured to set the second security reference information based on the setting interface;

[0047] a establishing module configured to establish an association between the second security reference information and the first security reference information;

[0048] a third storage module configured to store the association in the storage space.

[0049] In some embodiments, the first setting module or the second setting module is further configured to:

[0050] control an image acquisition device to acquire a reference image based on the setting interface;

[0051] obtain the second security reference information according to the reference image;

[0052] Correspondingly, the first obtaining module is further configured to:

[0053] present a second security verification interface in response to a second instruction for starting the second system;

[0054] control the image acquisition device to acquire a to-be-verified image based on the second security verification interface;

[0055] obtain the second security verification information according to the to-be-verified image.

[0056] In some embodiments, the control device further includes:

[0057] a matching module configured to match the to-be-verified image and the reference image based on the second security verification information and the second security reference information to obtain a matching result;

[0058] a determining module configured to determine that the second security verification information passes verification in a case where the matching result is a matching success.

[0059] In some embodiments, the control device further includes:

[0060] an output module configured to output the first security reference information;

[0061] a third presentation module configured to present a first security verification interface in response to a first instruction for starting the first system;

[0062] The second obtaining module is configured to obtain first security verification information based on the first security verification interface.

[0063] The first starting module is configured to start the first system if the first security verification information matches the first security reference information.

[0064] In some embodiments, the control device further comprises:

[0065] The fourth presenting module is configured to present a first security verification interface in response to a first instruction for starting the first system.

[0066] The first security verification information is obtained based on the first security verification interface.

[0067] The third obtaining module is configured to restart the second system if the number of times that the first security verification information does not match the first security reference information is greater than a threshold number of times; or

[0068] The second starting module is configured to restart the second system if an operation for obtaining the first security reference information is received.

[0069] Embodiments of the present application provide an electronic device, comprising:

[0070] a processor; and

[0071] a memory configured to store a computer program capable of running on the processor.

[0072] The computer program is executed by the processor to implement the steps of the control method.

[0073] Embodiments of the present application provide a computer readable storage medium, wherein the computer readable storage medium stores computer executable instructions, and the computer executable instructions are configured to execute the steps of the control method.

[0074] The embodiment of the present application provides a control method, device, electronic equipment and computer readable storage medium, the method comprises the following steps: in response to a first system setting a first security reference information, storing the first security reference information to a specific storage space of a second system, wherein the second system is a system for booting the first system, and the first system is an operating system of the electronic equipment; in response to the second system acquiring second security verification information, and the second security verification information passing verification, acquiring the first security reference information. By synchronously storing the first security reference information of the first system set in the second system, the user can view the first security reference information forgotten by the user in the second system, so that the user can normally start the first system according to the first security reference information obtained by prompting, thereby saving the cumbersome operation of reinstalling the first system, and ensuring that the information stored in the electronic equipment is not lost. BRIEF DESCRIPTION OF DRAWINGS

[0075] In the drawings (which are not necessarily drawn to scale) like reference numerals can describe similar components throughout the various figures. The drawings illustrate generally, by way of example, various embodiments discussed in the present document.

[0076] Figure 1 An implementation flow diagram of the control method provided by the embodiment of the present application is provided;

[0077] Figure 2 Another implementation flow diagram of the control method provided by the embodiment of the present application is provided;

[0078] Figure 3 Still another implementation flow diagram of the control method provided by the embodiment of the present application is provided;

[0079] Figure 4 Still another implementation flow diagram of the control method provided by the embodiment of the present application is provided;

[0080] Figure 5 Still another implementation flow diagram of the control method provided by the embodiment of the present application is provided;

[0081] Figure 6 Still another implementation flow diagram of the control method provided by the embodiment of the present application is provided;

[0082] Figure 7 The composition structure schematic diagram of the control device provided by the embodiment of the present application is provided;

[0083] Figure 8 The composition structure schematic diagram of the electronic equipment provided by the embodiment of the present application is provided. DETAILED DESCRIPTION

[0084] In order to make the purposes, technical solutions and advantages of the present application clearer, the following further describes the present application in conjunction with the accompanying drawings, the described embodiments should not be regarded as limitations to the present application, all other embodiments obtained by those skilled in the art without creative work fall within the scope of protection of the present application.

[0085] In the following description, "some embodiments" are referred to, which describe a subset of all possible embodiments, but it can be understood that "some embodiments" can be the same or different subsets of all possible embodiments, and can be combined with each other without conflict.

[0086] In the following description, the terms "first\second\third" are only to distinguish similar objects, and do not represent a specific order of the objects, and it can be understood that "first\second\third" can be interchanged in a specific order or sequence as allowed, so that the embodiments of the present application described herein can be implemented in an order other than that illustrated or described herein.

[0087] Unless otherwise defined, all technical and scientific terms used herein have the same meaning as commonly understood by one of ordinary skill in the art to which the present application belongs. The terms used herein are only for the purpose of describing the embodiments of the present application and are not intended to limit the present application.

[0088] The embodiments of the present application provide a control method, which is applied to an electronic device. The method provided by the embodiments can be implemented by a computer program, which, when executed, completes each step in the control method provided by the embodiments. In some embodiments, the computer program can be executed by a processor in the electronic device. Figure 1 An implementation flowchart of the control method provided by the embodiments of the present application is shown in FIG. 1, which includes the following steps: Figure 1

[0089] Step S101, in response to a first system setting a first security reference information, storing the first security reference information to a specific storage space of a second system.

[0090] In the embodiments of the present application, the electronic device can be a notebook computer, a tablet computer, a desktop computer, etc. The second system is a system for booting the first system, and the first system is an operating system of the electronic device. The first security reference information is verification information when the first system is started. When the verification of the first security reference information is passed, the first system is entered normally.

[0091] ​The present application is described by taking a basic input output system (BIOS) and an operating system (OS) as examples. The first system is an OS of the electronic device, the second system is a BIOS for booting the OS, the specific storage space of the second system can be a BIOS read-only memory (ROM), and the first security reference information is a boot password of the OS. When the boot password of the OS is set, the set boot password is stored in the BIOS ROM for backup. When the user forgets the boot password of the OS again when booting, the previously stored boot password of the OS can be obtained from the BIOS ROM to prompt the user, so that the user can normally start the OS according to the prompted boot password. Not only the tedious operation of reinstalling the OS is saved, but also the information stored in the electronic device can be ensured not to be lost.

[0092] In step S102, the first security reference information is obtained in response to that the second system obtains the second security verification information and the second security verification information passes verification.

[0093] The second security verification information is to-be-verified information input by the user based on the second system.

[0094] After the first security reference information of the first system is stored in the specific storage space of the second system, if the user forgets the first security reference information when starting the first system again, the first system cannot be normally entered. At this time, the second system is started, and the second security verification information input by the user based on the second system is obtained. When the second security verification information passes verification, it is indicated that the current user is a legal user of the electronic device. At this time, the second system obtains the previously stored first security reference information from the specific storage space, so that the user obtains the first security reference information for starting the first system.

[0095] Still taking the above example for description, when the user forgets the boot password of the OS, the BIOS is restarted, the BIOS verification information is obtained in the BIOS setting interface to verify the identity of the current user. When the BIOS verification information passes verification, the boot password of the OS is obtained in the BIOS. Otherwise, the BIOS considers that the current user is an illegal user of the electronic device, and the illegal user cannot obtain the boot password of the OS.

[0096] The embodiment of the present application provides a control method, which is applied to an electronic device, and the method comprises the following steps:

[0097] In Figure 1 On the basis of the embodiment shown in the figure, the present application further provides a control method, Figure 2 The control method provided by the embodiment of the present application is applied to an electronic device, and the control method comprises the following steps:

[0098] In step S201, first security reference information is set in response to a first system, and the first security reference information is stored in a specific storage space of a second system.

[0099] The second system is a system for booting the first system, and the first system is an operating system of the electronic device. The first security reference information is verification information when the first system is started. When the verification of the first security reference information is passed, the first system is normally entered.

[0100] In the embodiment of the present application, BIOS and OS are taken as examples for description. The first system is the OS of the electronic device, the second system is the BIOS for booting the OS, the specific storage space of the second system can be the BIOS ROM, and the first security reference information is the password of the OS. When the password of the OS is set, the set password is synchronously stored in the BIOS ROM to be backed up. When the user forgets the password of the OS again when starting up, the pre-stored password of the OS can be obtained from the BIOS ROM to prompt the user, so that the user normally starts up the OS according to the prompted password. Not only the tedious operation of reinstalling the OS is saved, but also the information stored in the electronic device is ensured not to be lost.

[0101] In step S202, in response to the second system detecting that the second security reference information is not stored in the storage space of the second system, a setting interface for setting the second security reference information is presented.

[0102] Here, the storage space and the specific storage space can be the same storage space or different storage spaces. For example, the second security reference information can be searched in the BIOS ROM or the BIOS random access memory (RAM).

[0103] After the first security reference information of the first system is stored in the specific storage space of the second system, the second system detects whether the second security reference information has been stored in the storage space of the second system. When it is detected that the second security reference information has been stored in the storage space of the second system, the second security reference information does not need to be set again, and step S205 is entered.

[0104] When it is detected that the second security reference information is not stored in all storage spaces of the second system, the second security reference information is set for the second system to ensure the security of the first security reference information, and the first security reference information is obtained when the second security reference information passes the verification. Based on this, when the second system detects that the second security reference information is not stored in the storage space of the second system, a setting interface is presented to enable a user to input the second security reference information set by the user in an input box of the setting interface.

[0105] In the embodiments of the present application, the second security reference information is verification information for starting the second system. When the second security reference information passes the verification, the second system is normally entered, and the first security reference information can be viewed. When the second security reference information does not pass the verification, the second system cannot be entered, and thus the first security reference information cannot be viewed, thereby enabling the secure storage of the first security reference information. When the second security reference information passes the verification, the first security reference information of all users of the first system saved by the second system can be viewed.

[0106] In step S203, the second security reference information is set based on the setting interface.

[0107] In some embodiments, the second security reference information can be character type reference information. The setting of the second security reference information based on the setting interface includes: based on the setting interface, obtaining a character password input by a user in an input box displayed on the setting interface; and determining the character password as the second security reference information.

[0108] In some embodiments, the second security reference information can be biometric information of the user, such as face recognition information, fingerprint information, finger vein information, and the like, which can identify the user. The setting of the second security reference information based on the setting interface includes: controlling an image acquisition device to acquire a reference image based on the setting interface; and obtaining the second security reference information according to the reference image.

[0109] The image acquisition device can be one of a camera, a fingerprint acquisition device, or a vein acquisition device, and the corresponding reference image can be a face image, a fingerprint image, or a vein image. The second security reference information can be obtained according to the reference image by using a feature extraction algorithm to extract feature information in the reference image, and the extracted feature information can be used as the second security reference information. The feature extraction algorithm can use existing feature extraction methods such as a histogram, a mean value, a variance, a gray level co-occurrence matrix, a Tamura texture feature, an autoregressive texture feature, and a wavelet transform, and will not be described in detail in this embodiment.

[0110] In step S204, the second security reference information is stored in the storage space.

[0111] In step S205, the first security reference information is obtained in response to the second system obtaining second security verification information and the second security verification information passing the verification.

[0112] When the second security reference information is character type reference information, the second security verification information is character type verification information. The second system obtains second security verification information, which includes: the second system receiving character information input by the user; and determining that the character information is the second security verification information.

[0113] After the second system obtains the second security verification information, the second security information is verified: the second security verification information and the second security reference information are compared, and when the second security verification information is consistent with the second security reference information, it is determined that the second security verification information passes the verification. When the second security verification information is inconsistent with the second security reference information, it is determined that the second security verification information does not pass the verification, indicating that the user input the second security reference information incorrectly or the current user is an illegal user. At this time, the second system cannot obtain the first security reference information.

[0114] When the second security reference information is reference information of a biometric type, the corresponding second security verification information is verification information of a biometric type. The second system obtaining the second security verification information includes: in response to a second instruction for starting the second system, presenting a second security verification interface; based on the second security verification interface, controlling the image acquisition device to acquire a to-be-verified image; and obtaining the second security verification information according to the to-be-verified image.

[0115] In some embodiments, after the second security information is obtained according to the to-be-verified image, the second security information is verified: first, based on the second security verification information and the second security reference information, the to-be-verified image and the reference image are matched to obtain a matching result; it is determined whether the matching result is matched successfully, in the case where the matching result is matched successfully, it is determined that the second security verification information passes the verification; in the case where the matching result is matched unsuccessfully, it is determined that the second security verification information fails the verification.

[0116] The embodiments of the present application provide a control method, by synchronously storing the set first security reference information of the first system in the second system, when the second system does not store the second security reference information, setting and storing the second security reference information to the storage space of the second system, realizing the secret storage of the first security reference information. When the user forgets the first security reference information, the identity of the user is verified based on the second security reference information, when the verification is passed, the user can view the forgotten first security reference information in the second system, so that the user normally starts the first system according to the obtained first security reference information, not only can save the cumbersome operation of reinstalling the first system, but also can ensure that the information stored in the electronic device is not lost.

[0117] On the basis of the embodiments shown in the figures, the present application further provides a control method, Figure 1 On the basis of the embodiments shown in the figures, the present application further provides a control method, Figure 3 The control method provided by the embodiments of the present application is applied to an electronic device, and includes the following steps:

[0118] Step S301, in response to the first system setting the first security reference information, storing the first security reference information to a specific storage space of the second system.

[0119] The second system is a system for booting the first system, and the first system is an operating system of the electronic device. The first security reference information is verification information when starting the first system. When the verification of the first security reference information is passed, the first system is normally entered.

[0120] Step S302, in response to the second system detecting that the second secure reference information is not stored in the storage space of the second system, presenting a setting interface for setting the second secure reference information.

[0121] Here, the storage space and the specific storage space can be the same storage space or different storage spaces. For example, the second secure reference information can be searched in the BIOS ROM or the BIOS RAM.

[0122] After storing the first secure reference information of the first system into the specific storage space of the second system, the second system detects whether the second secure reference information is stored in the storage space of the second system. When detecting that the second secure reference information is stored in the storage space of the second system, the second secure reference information does not need to be set again, and step S306 is entered.

[0123] When detecting that the second secure reference information is not stored in all storage spaces of the second system, in order to ensure the security of the first secure reference information, the second secure reference information is set for the second system, and the first secure reference information is obtained when the second secure reference information passes the verification. Based on this, when the second system detects that the second secure reference information is not stored in the storage space of the second system, a setting interface is presented to enable a user to input the second secure reference information set by the user in an input box of the setting interface.

[0124] In the embodiments of the present application, the second secure reference information is verification information for obtaining the first secure reference information. When entering the second system, if the first secure reference information needs to be obtained, the second secure reference information is verified. When the verification is passed, the first secure reference information can be viewed; when the second secure reference information is not verified, the first secure reference information cannot be viewed, so that the secure storage of the first secure reference information can be realized. When the second secure reference information is verified, the first secure reference information having an association with the second secure reference information can be viewed, and other first secure reference information without the association cannot be viewed.

[0125] Step S303, setting the second secure reference information based on the setting interface.

[0126] In some embodiments, the second secure reference information can be character type reference information. The setting of the second secure reference information based on the setting interface includes: based on the setting interface, obtaining a character password input by a user in an input box displayed on the setting interface; and determining the character password as the second secure reference information.

[0127] In some embodiments, the second security reference information can be biometric information of a user, such as face recognition information, fingerprint information, finger vein information, and the like, which can identify the user. The setting of the second security reference information based on the setting interface includes: controlling an image acquisition device to acquire a reference image based on the setting interface; and obtaining the second security reference information according to the reference image.

[0128] The image acquisition device can be one of a camera, a fingerprint acquisition device, or a vein acquisition device, and accordingly, the acquired reference image is a face image, a fingerprint image, or a vein image. The second security reference information can be obtained according to the reference image by using a feature extraction algorithm to extract feature information in the reference image, and the extracted feature information is taken as the second security reference information.

[0129] Step S304: An association between the second security reference information and the first security reference information is established.

[0130] The association can be an association between the first security reference information and the second security reference information of the same user. For example, the first security reference information and the second security reference information can be associated according to a unique user name, and the established association includes the user name, the first security reference information, and the second security reference information.

[0131] Step S305: The association is stored in the storage space.

[0132] In the embodiments of the present application, the association can be stored in the form of a database table.

[0133] Step S306: In response to the second system obtaining second security verification information, and the second security verification information passing the verification, the first security reference information is obtained.

[0134] When the second security reference information is character type reference information, the second security verification information is character type verification information. The second system obtaining the second security verification information includes: the second system receiving character information input by the user; and determining that the character information is the second security verification information.

[0135] After the second system acquires the second security verification information, the second security information is verified: the second security verification information and the second security reference information are compared, when the second security verification information is consistent with the second security reference information, it is determined that the second security verification information passes the verification. When the second security verification information is inconsistent with the second security reference information, it is determined that the second security verification information fails the verification, indicating that the user's second security reference information is input incorrectly or the current user is an illegal user, at this time, the second system cannot acquire the first security reference information.

[0136] When the second security reference information is reference information of a biological recognition type, correspondingly, the second security verification information is verification information of a biological recognition type. The second system acquiring the second security verification information includes: in response to a second instruction for starting the second system, a second security verification interface is presented; based on the second security verification interface, the image acquisition device is controlled to acquire a to-be-verified image; and the second security verification information is acquired according to the to-be-verified image.

[0137] In some embodiments, after the second security verification information is acquired according to the to-be-verified image, the second security information is verified: first, based on the second security verification information and the second security reference information, the to-be-verified image and the reference image are matched to obtain a matching result; it is determined whether the matching result is matched successfully, in the case that the matching result is matched successfully, it is determined that the second security verification information passes the verification; and in the case that the matching result is matched unsuccessfully, it is determined that the second security verification information fails the verification.

[0138] Embodiments of the present application provide a control method, by synchronously storing the first security reference information of the first system set in the second system, when the second system does not store the second security reference information, setting and storing the second security reference information to the storage space of the second system, realizing the secret storage of the first security reference information. When the user forgets the first security reference information, the identity of the user is verified based on the second security reference information, when the verification passes, the user can view the first security reference information that has been forgotten in the second system, so that the user normally starts the first system according to the obtained first security reference information, not only can save the cumbersome operation of reinstalling the first system, but also can ensure that the information stored in the electronic device is not lost.

[0139] Embodiments of the present application further provide a control method, based on the embodiments shown in Figure 1 , Figure 2 or Figure 3 After the second system acquires the first security reference information, the control method can further include the following steps:

[0140] Step S103, output the first security reference information.

[0141] After the electronic device acquires the first security reference information, the electronic device can output a prompt box in the second system, and the prompt box displays the first security reference information, so that the user can view and record the first security reference information.

[0142] Step S104, in response to a first instruction for starting the first system, present a first security verification interface.

[0143] When the first instruction for starting the first system is received again, the first security verification interface is presented, which is an interface for receiving first security verification information input by the user, so as to verify the identity of the user through the input first security verification information.

[0144] Step S105, acquire first security verification information based on the first security verification interface.

[0145] Step S106, in a case where the first security verification information matches the first security reference information, start the first system.

[0146] The first security verification information input by the user based on the first security verification interface is acquired, which is information input by the user according to the first security reference information remembered by the user, and when the first security verification information is consistent with the first security reference information, it is determined that the first security verification information matches the first security reference information, that is, it indicates that the current user passes the verification, and the first system is started normally and entered.

[0147] In some embodiments, before the step S102, the control method can further include the following steps: Figure 1

[0148] Step S1a1, in response to a first instruction for starting the first system, present a first security verification interface.

[0149] Step S1a2, acquire first security verification information based on the first security verification interface.

[0150] Step S1a3, in a case where a number of times of determining that the first security verification information does not match the first security reference information is greater than a number threshold, restart the second system.

[0151] ​When the number of times the user enters incorrect security verification information that is inconsistent with the first security reference information in the first security verification interface of the first system exceeds a certain threshold, the system automatically restarts and enters the second system to obtain the first security reference information. The threshold can be a user-defined value, such as 3 times. When the number of consecutive incorrect password entries exceeds 3, the system automatically restarts and enters the BIOS to retrieve the pre-stored password from the BIOS ROM.

[0152] In some embodiments, Figure 1 Before step S102, the control method may further include: restarting the second system upon receiving an operation to obtain the first security reference information. Here, the operation to obtain the first security reference information can be pressing a preset shortcut key, timing out of the first security reference information input, clicking a preset button, or the user manually pressing the restart button. For example, when the user clicks the "Forgot Password" button on the first security verification interface, it is determined that the OS has received an operation to obtain the power-on password, and the system restarts to access the BIOS and retrieves the pre-stored power-on password from the BIOS ROM.

[0153] Based on the foregoing embodiments, this application further provides a control method applied to electronic devices. Figure 4 This is a schematic diagram illustrating another implementation of the control method provided in the embodiments of this application, such as... Figure 4 As shown, the method includes:

[0154] Step S401: In response to the first system setting the first security reference information, the first security reference information is stored in a specific storage space of the second system.

[0155] The second system is the system that boots the first system, which is the operating system of the electronic device. The first security reference information is the verification information used when booting the first system. When the verification of the first security reference information is passed, the first system is entered normally.

[0156] Step S402: In response to the second system detecting that the second security reference information is not stored in the storage space of the second system, a setting interface for setting the second security reference information is presented.

[0157] Here, the second security reference information is the verification information for obtaining the first security reference information.

[0158] The storage space and the specific storage space can be the same storage space or different storage spaces. For example, the search for whether the second security reference information is stored can be performed in the BIOS ROM or the BIOS RAM.

[0159] In step S403, the image acquisition device is controlled to acquire a reference image based on the setting interface.

[0160] The image acquisition device can be a camera, a fingerprint acquisition device, or a vein acquisition device, and the acquired reference image can be a face image, a fingerprint image, or a vein image.

[0161] In step S404, the second security reference information is acquired based on the reference image.

[0162] The second security reference information can be acquired based on the reference image by using a feature extraction algorithm to extract feature information in the reference image, and the extracted feature information is taken as the second security reference information.

[0163] In step S405, an association between the second security reference information and the first security reference information is established.

[0164] The association can be an association between the first security reference information and the second security reference information of a same user. For example, the first security reference information and the second security reference information can be associated based on a unique user name, and the established association includes the user name, the first security reference information, and the second security reference information.

[0165] In step S406, the association is stored in the storage space.

[0166] In other embodiments, when the second security reference information is authentication information for starting the second system, steps S405 and S406 can be replaced by a step of “storing the second security reference information in the storage space”.

[0167] In step S407, a first security authentication interface is presented in response to a first instruction for starting the first system.

[0168] The first security authentication interface presented in the first system is an interface for receiving first security authentication information input by a user, so as to authenticate the identity of the user based on the input first security authentication information.

[0169] In step S408, the first security authentication information is acquired based on the first security authentication interface.

[0170] In step S409, the second system is restarted in a case where a number of times that the first security authentication information does not match the first security reference information is greater than a threshold number of times.

[0171] When the number of times that the user incorrectly inputs the first security verification information that is inconsistent with the first security reference information in the first security verification interface of the first system exceeds the threshold, the system automatically restarts to enter the second system to obtain the first security reference information.

[0172] In other embodiments, steps S407 to S409 can be replaced by the step of "restarting the second system upon receiving an operation for obtaining the first security reference information".

[0173] Step S410, in response to a second instruction for starting the second system, a second security verification interface is presented.

[0174] The second security verification interface presented in the second system is an interface for receiving second security verification information input by a user to verify the identity of the user through the input second security verification information.

[0175] Step S411, based on the second security verification interface, controlling the image acquisition device to acquire a to-be-verified image.

[0176] Step S412, obtaining the second security verification information according to the to-be-verified image.

[0177] Step S413, based on the second security verification information and the second security reference information, matching the to-be-verified image and the reference image to obtain a matching result.

[0178] Step S414, in the case that the matching result is a matching success, determining that the second security verification information passes the verification.

[0179] Step S415, obtaining the first security reference information.

[0180] When the second security verification information passes the verification, the first security reference information of the first system is obtained from a specific storage space of the second system.

[0181] Step S416, outputting the first security reference information.

[0182] After the electronic device obtains the first security reference information, a prompt box can be output in the second system, and the first security reference information is displayed in the prompt box so as to be viewed and recorded by the user.

[0183] Step S417, in response to a first instruction for starting the first system, a first security verification interface is presented.

[0184] When the first instruction for starting the first system is received again, the first security verification interface is presented.

[0185] Step S418, obtaining first security verification information based on the first security verification interface.

[0186] Step S419, starting the first system in the case that the first security verification information matches the first security reference information.

[0187] The first security verification information input by the user based on the first security verification interface is the information input by the user according to the first security reference information remembered by the user, and when the first security verification information is consistent with the first security reference information, it is determined that the first security verification information matches the first security reference information, that is, it indicates that the current user verification is passed, and the first system is normally started and entered.

[0188] The embodiment of the present application provides a control method, by synchronously storing the first security reference information of the first system in the second system, when the second system does not store the second security reference information, setting and storing the second security reference information to the storage space of the second system, realizing the secret storage of the first security reference information. When the user forgets the first security reference information, the identity of the user is verified based on the second security reference information, and when the verification is passed, the user can view the forgotten first security reference information in the second system, so that the user can normally start the first system according to the obtained first security reference information, not only can save the cumbersome operation of reinstalling the first system, but also can ensure that the information stored in the electronic device is not lost.

[0189] In the following, an exemplary application of the embodiment of the present application in an actual application scenario will be described.

[0190] In the embodiment of the present application, BIOS and OS are taken as examples for exemplary description. In order to protect the security of data in the computer, the existing computer has a full-disk encryption function, and when the user correctly inputs the boot password, the OS can be entered. When the user forgets the set boot password, the OS cannot be normally entered, at this time, the disk must be formatted (for example, the OS is reinstalled), and the original set password is deleted to enter the OS. Formatting the disk means that the data in the disk will be completely lost. To solve this problem, the embodiment of the present application provides a control method, when the user sets the OS boot password in the OS, the boot password is synchronously saved to the BIOS ROM, and then the user is prompted to restart and enter the BIOS setting interface, and the image acquisition device is called in the BIOS setting interface to record the facial features of the user. If the user forgets the OS password, the BIOS is entered, the image acquisition device is called to recognize the facial features of the current user, and when the facial feature recognition is successful, the OS boot password stored in the BIOS ROM is displayed to the user, so that the user can reacquire the boot password.

[0191] Figure 5Another implementation process of the control method provided by the embodiment of the present application is shown in FIG. 6, which includes the following steps: Figure 5

[0192] In step S501, an OS boot password is set.

[0193] When the user sets the OS boot password, the information input by the user on the interface for setting the OS boot password is received as the boot password. The set OS boot password is stored in the BIOS ROM.

[0194] In step S502, it is detected whether the BIOS has set a biometric password.

[0195] When it is detected that the BIOS has set a biometric password, there is no need to set again, and the process goes to step S505 to end the password setting process. When it is detected that the BIOS has not set a biometric password, a prompt information is displayed to prompt the user to restart the BIOS setting interface to set the biometric password, so as to improve the security of the OS boot password stored in the BIOS ROM.

[0196] In step S503, the BIOS setting interface is restarted.

[0197] In step S504, the facial features of the user are collected by using an image collection device.

[0198] Here, the image collection device can be a camera. The user information is obtained on the BIOS setting interface, which is the facial feature information of the user collected by using the image collection device. The facial feature information is stored in the BIOS RAM.

[0199] When the user needs to obtain the OS boot password from the BIOS, the user is first authenticated by using the facial feature information, and if the authentication is passed, the OS boot password is displayed.

[0200] In step S505, the process is ended.

[0201] Figure 6 Another implementation process of the control method provided by the embodiment of the present application is shown in FIG. 6, which includes the following steps: Figure 6

[0202] In step S601, the electronic device is started.

[0203] The electronic device is started based on the boot operation performed by the user, and an interface for inputting a boot password is presented.

[0204] In step S602, it is determined whether the user forgets the password.

[0205] ​​In the interface of the boot password, a user input boot password is received. When the user input is correct, the OS is started normally, and step S606 is entered. When it is determined that the user forgets the password, step S603 is entered to find the password through the BIOS. When the user does not forget the password, step S603 is entered.

[0206] In the embodiment of the application, when the number of times of continuous input of incorrect password by the user reaches a number threshold, for example, the number of times of continuous input of incorrect boot password by the user exceeds 3, it is determined that the user forgets the password. Or when the user clicks the button of "forget password", it is determined that the user forgets the password.

[0207] In step S603, the electronic device is restarted to enter the BIOS setting interface.

[0208] After it is determined that the user forgets the password, the electronic device is automatically restarted to enter the BIOS setting interface, and the image acquisition device is called to perform face recognition.

[0209] In step S604, the image acquisition device is used to perform face recognition.

[0210] Here, the image acquisition device can be a camera. The electronic device is restarted to enter the BIOS setting interface. In the setting interface, user face feature information is acquired. According to pre-stored face feature information, face recognition is performed on the acquired face feature information, and a recognition result is obtained.

[0211] In step S605, it is determined whether the face recognition is successful.

[0212] When the recognition result is successful, it indicates that the current user is a legal user. At this time, the verification is passed, and step S606 is entered. When the recognition result is unsuccessful, it indicates that the current user is an illegal user. At this time, the verification is not passed, and step S607 is entered.

[0213] In step S606, the operating system is started.

[0214] When the face recognition is passed, the electronic device is automatically restarted to enter the OS.

[0215] In step S607, the electronic device is shut down.

[0216] The control method provided in the embodiment of the application stores the OS boot password in the BIOS ROM. When the user forgets the boot password, face recognition is performed in the BIOS. After the face recognition is passed, the boot password is displayed, so that a more reliable user authentication method is realized. Not only can the user not need to reinstall the system when the user forgets the OS boot password, and the tedious operation of reinstalling the OS is saved, but also the information stored in the electronic device can be ensured not to be lost.

[0217] Based on the foregoing embodiments, the embodiments of the present application provide a control device, each module included in the device, and each unit included in each module can be implemented by a processor in a computer device; of course, it can also be implemented by a specific logic circuit; in the implementation process, the processor can be a central processing unit (CPU), a microprocessor unit (MPU), a digital signal processor (DSP), or a field programmable gate array (FPGA). Figure 7 The control device provided by the embodiments of the present application has a component structure diagram as shown in Figure 7 The control device 700 includes:

[0218] A first storage module 701 is configured to store first security reference information to a specific storage space of a second system in response to the first system setting the first security reference information, the second system being a system that starts the first system, and the first system being an operating system of the electronic device.

[0219] A first acquisition module 702 is configured to acquire the first security reference information in response to the second system acquiring second security verification information, and the second security verification information passing verification.

[0220] In some embodiments, the control device 700 can further include:

[0221] A first presentation module is configured to present a setting interface for setting second security reference information in response to the second system detecting that the second system does not store the second security reference information in a storage space of the second system, the second security reference information being verification information for starting the second system.

[0222] A first setting module is configured to set the second security reference information based on the setting interface.

[0223] A second storage module is configured to store the second security reference information to the storage space.

[0224] In some embodiments, the control device 700 can further include:

[0225] A second presentation module is configured to present a setting interface for setting second security reference information in response to the second system detecting that the second system does not store the second security reference information in a storage space of the second system, the second security reference information being verification information for acquiring the first security reference information.

[0226] a second setting module, configured to set second security reference information based on the setting interface;

[0227] a establishing module, configured to establish an association relationship between the second security reference information and the first security reference information;

[0228] a third storage module, configured to store the association relationship to the storage space.

[0229] In some embodiments, the first setting module or the second setting module can be further configured to:

[0230] control an image acquisition device to acquire a reference image based on the setting interface;

[0231] obtain the second security reference information according to the reference image;

[0232] Correspondingly, the first obtaining module 702 can be further configured to:

[0233] present a second security verification interface in response to a second instruction for starting the second system;

[0234] control the image acquisition device to acquire a to-be-verified image based on the second security verification interface;

[0235] obtain the second security verification information according to the to-be-verified image.

[0236] In some embodiments, the control device 700 can further include:

[0237] a matching module, configured to match the to-be-verified image and the reference image based on the second security verification information and the second security reference information, to obtain a matching result;

[0238] a determining module, configured to determine that the second security verification information passes verification in a case where the matching result is a matching success.

[0239] In some embodiments, the control device 700 can further include:

[0240] an output module, configured to output the first security reference information;

[0241] a third presenting module, configured to present a first security verification interface in response to a first instruction for starting the first system;

[0242] a second obtaining module, configured to obtain first security verification information based on the first security verification interface;

[0243] a first starting module, configured to start the first system in a case where the first security verification information matches the first security reference information.

[0244] In some embodiments, the control apparatus 700 can further include:

[0245] a fourth presenting module, configured to present a first security verification interface in response to a first instruction for starting the first system;

[0246] a third obtaining module, configured to obtain first security verification information based on the first security verification interface;

[0247] a second starting module, configured to restart the second system in a case where the number of times that the first security verification information does not match the first security reference information is greater than a number threshold.

[0248] In some embodiments, the control apparatus 700 can further include:

[0249] a third starting module, configured to restart the second system in a case where an operation for obtaining the first security reference information is received.

[0250] It should be noted that the above description of the control apparatus embodiments is similar to the above method description, and has the same beneficial effects as the method embodiments. For technical details not disclosed in the control apparatus embodiments of the present application, those skilled in the art can refer to the description of the method embodiments of the present application for understanding.

[0251] It should be noted that in the embodiments of the present application, if the above-mentioned response method is implemented in the form of a software function module and sold or used as an independent product, it can also be stored in a computer-readable storage medium. Based on this understanding, the technical solutions of the embodiments of the present application can be embodied in the form of a software product, which is stored in a storage medium and includes a number of instructions for causing a computer device (which can be a personal computer, a server, or a network device, etc.) to execute all or part of the methods described in the embodiments of the present application. The aforementioned storage medium includes: a U disk, a mobile hard disk, a read-only memory (ROM, Read Only Memory), a magnetic disk or an optical disk, and various media that can store program codes. Thus, the embodiments of the present application are not limited to any specific combination of hardware and software.

[0252] Correspondingly, the embodiments of the present application provide a computer-readable storage medium, which stores a computer program. The computer program is executed by a processor to implement the steps of the control method provided in the above embodiments.

[0253] The embodiments of the present application provide an electronic device, Figure 8 The composition structure schematic diagram of the electronic device provided by the embodiments of the present application is shown in FIG. 1. According to the composition structure schematic diagram of the electronic device provided by the embodiments of the present application, Figure 8The exemplary structure of the electronic device 800 is shown, and other exemplary structures of the electronic device 800 can be foreseen, and thus the structure described herein should not be considered as limiting. For example, some of the components described below can be omitted, or components not described below can be added to meet the special needs of some applications.

[0254] As shown in Figure 8 the electronic device 800 includes a processor 801, at least one communication bus 802, a user interface 803, at least one external communication interface 804, and a memory 805. The communication bus 802 is configured to enable communication between the components. The user interface 803 can include a display screen, and the external communication interface 804 can include standard wired and wireless interfaces. The processor 801 is configured to execute programs of control methods stored in the memory to implement the steps in the control methods provided in the above-described embodiments.

[0255] The descriptions of the above electronic device and storage medium embodiments are similar to the descriptions of the above method embodiments, and have similar beneficial effects as the method embodiments. For technical details not disclosed in the electronic device and storage medium embodiments of the present application, please refer to the descriptions of the method embodiments.

[0256] It should be understood that the terms "one embodiment" or "an embodiment" as used throughout this specification mean that a particular feature, structure, or characteristic described in connection with the embodiment is included in at least one embodiment of the application. Therefore, the appearance of the phrases "in one embodiment" or "in an embodiment" in various places throughout the specification is not necessarily referring to the same embodiment. In addition, these particular features, structures, or characteristics can be combined in any suitable manner in one or more embodiments. It should be understood that the size of the sequence numbers of the above processes in various embodiments of the present application does not mean the order of execution, and the execution order of the processes should be determined by their functions and inherent logic, and should not constitute any limitation on the implementation process of the embodiments of the present application. The above sequence numbers of the embodiments of the present application are only for description, and do not represent the advantages or disadvantages of the embodiments.

[0257] It should be noted that in this document, the terms "comprise", "comprise", or any other variant thereof are intended to cover non-exclusive inclusion, so that processes, methods, articles, or devices that include a series of elements not only include those elements, but also include other elements not explicitly listed, or include elements inherent to such processes, methods, articles, or devices. Without more limitations, the element defined by the statement "comprises a" does not exclude the presence of additional identical elements in the process, method, article, or device that includes the element.

[0258] In several embodiments provided in the present application, it should be understood that the disclosed devices and methods can be implemented in other manners. The described device embodiments are merely schematic. For example, the division of the units is only a logical function division. There can be another division manner for the actual implementation, for example, multiple units or components can be combined or integrated into another system, or some features can be ignored or not executed. In addition, the displayed or discussed coupling, or direct coupling or communication connection between the components can be indirect coupling or communication connection through some interfaces, devices, or units, and can be electrical, mechanical, or in other forms.

[0259] The units described as separate components can or can not be physically separate, and the components shown as units can or can not be physical units; they can be located in one place, or distributed on multiple network units; and some or all of the units can be selected according to actual needs to achieve the purposes of the embodiments.

[0260] In addition, each functional unit in each embodiment of the present application can be integrated into one processing unit, or each unit can be a separate unit, or two or more units can be integrated into one unit; the integrated unit can be implemented in the form of hardware, or in the form of hardware plus software functional units.

[0261] Those of ordinary skill in the art can understand that all or part of the steps of the above-described method embodiments can be completed by a program instructing related hardware, and the aforementioned program can be stored in a computer readable storage medium, and when the program is executed, the steps of the method embodiments are executed.

[0262] Alternatively, when the integrated units of the present application are implemented in the form of software functional modules and sold or used as independent products, they can also be stored in a computer readable storage medium. Based on this understanding, the technical solutions of the embodiments of the present application can be embodied in the form of a software product, and the computer software product is stored in a storage medium, and includes several instructions for enabling an AC to execute all or part of the methods described in the embodiments of the present application. The aforementioned storage medium includes: mobile storage devices, ROM, magnetic disks, or optical disks, and various other media that can store program codes.

[0263] The above merely provides the implementation of the present application, but the protection scope of the present application is not limited thereto, any person skilled in the art can easily think of the change or replacement within the technical range disclosed by the present application, which should be covered in the protection scope of the present application. Therefore, the protection scope of the present application should be subject to the protection scope of the claims.

Claims

1. A control method applied to an electronic device, the method comprising: storing, in response to a first system of the electronic device setting a first security reference information, the first security reference information to a specific storage space of a second system; wherein the electronic device comprises the first system and the second system, the second system is a system for booting the first system, and the first system is an operating system of the electronic device; the first security reference information is obtained by verification based on a second security verification information; and the first security reference information is verification information when booting the first system; detecting, by the second system, whether the second security reference information has been stored in a storage space of the second system; when detecting that all storage spaces of the second system do not store the second security reference information, the electronic device, in a running environment of the second system, uses a collection device to obtain biological identification information of a user to set the second security reference information, and stores the second security reference information in the storage space of the second system; wherein the second security reference information is used to verify the second security verification information collected by the second system in the running environment of the second system; and the second security verification information is to-be-verified information input by the user based on the second system. 2.The method of claim 1, after the first security reference information is stored to the specific storage space of the second system, the method further comprises: in response to the second system detecting that the second security reference information is not stored in the storage space of the second system, presenting a setting interface for setting the second security reference information, the second security reference information being verification information for booting the second system; setting the second security reference information based on the setting interface, and storing the second security reference information to the storage space. 3.The method of claim 1, after the first security reference information is stored to the specific storage space of the second system, the method further comprises: in response to the second system detecting that the second security reference information is not stored in the storage space of the second system, presenting a setting interface for setting the second security reference information, the second security reference information being verification information for obtaining the first security reference information; setting the second security reference information based on the setting interface; establishing an association relationship between the second security reference information and the first security reference information; storing the association relationship to the storage space. 4.The method of claim 2 or 3, the setting the second security reference information based on the setting interface comprises: controlling an image collection device to collect a reference image based on the setting interface; obtaining the second security reference information according to the reference image; correspondingly, the second system obtaining the second security verification information comprises: in response to a second instruction for booting the second system, presenting a second security verification interface; controlling the image collection device to collect a to-be-verified image based on the second security verification interface; obtaining the second security verification information according to the to-be-verified image.

5. The method of claim 4, after the second security verification information is obtained based on the image to be verified, the method further comprises: matching the image to be verified and the reference image based on the second security verification information and the second security reference information to obtain a matching result; in a case that the matching result is a matching success, determining that the second security verification information passes the verification.

6. The method of any one of claims 1 to 3, the method further comprises: outputting the first security reference information; presenting a first security verification interface in response to a first instruction for starting the first system; obtaining first security verification information based on the first security verification interface; in a case that the first security verification information matches the first security reference information, starting the first system.

7. The method of claim 1, before the second security verification information is obtained in response to the second system, the method further comprises: presenting a first security verification interface in response to a first instruction for starting the first system; obtaining first security verification information based on the first security verification interface; in a case that a number of times of determining that the first security verification information does not match the first security reference information is greater than a number threshold, restarting the second system; or in a case that an operation for obtaining the first security reference information is received, restarting the second system.

8. A control device applied to an electronic device, the device comprising: a first storage module configured to store first security reference information to a specific storage space of a second system in response to a first system of the electronic device, wherein the electronic device comprises the first system and the second system, the second system is a system for booting the first system, the first system is an operating system of the electronic device, the first security reference information is obtained based on second security verification information passing the verification, and the first security reference information is verification information when starting the first system; a first setting module configured to detect whether the second security reference information has been stored in the storage space of the second system by the second system; when detecting that all storage spaces of the second system do not store the second security reference information, the electronic device is in a running environment of the second system, the second system uses a collection device to obtain biological identification information of a user to set the second security reference information, and stores the second security reference information in the storage space of the second system; wherein the second security reference information is used to verify the second security verification information collected by the second system in the running environment of the second system, and the second security verification information is to-be-verified information input by the user based on the second system.

9. An electronic device comprising: a processor; and a memory for storing a computer program executable on the processor; wherein the computer program is executed by the processor to implement the steps of the control method of any one of claims 1 to 7. ​ 10. A computer readable storage medium having stored therein computer- executable instructions configured to perform the steps of the control method of any one of claims 1 to 7.

Citation Information

Patent Citations

  • Electronic device and password protection method thereof

    CN103186748A

  • System for managing password of personal computer

    JP2002149601A