Product key burning method, system, device, terminal equipment and storage medium
By generating and distributing product keys through a key management server, and combining MAC address and authorization data for authentication, the security and flexibility issues of product key burning in existing technologies are resolved, and an efficient and secure key burning process is achieved.
Patent Information
- Application Number
- CN202111639522.2
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2021-12-29
- Publication Date
- 2025-12-09
- Estimated Expiration
- 2041-12-29
AI Technical Summary
Existing technologies for burning product keys lack security, flexibility, and customization, making it difficult to integrate with product software and hardware development. Furthermore, the loss of USB dongles poses a high security risk, and product keys cannot be uniformly managed.
The product key is generated and distributed through the key management server. The product information of the device to be programmed is read and programmed into the device. Authentication is performed using MAC address and authorization data, reducing the reliance on USB dongles and realizing server-based key management.
It improves the security, flexibility, and traceability of product key burning, reduces security risks in equipment production, and increases burning efficiency and operational efficiency.
Smart Images

Figure CN114297685B_ABST
Abstract
Description
TECHNICAL FIELD
[0001] The present application relates to the field of data security, in particular to a product key burning method, system, device, terminal equipment and storage medium. BACKGROUND
[0002] The industrial control field is a highly competitive market participated by many companies around the world. For product and technology providers, a mature protection and authorization technology is needed to adapt to the gradually expanding product market share, leading technology advantage, strengthen product security and protect intellectual property rights.
[0003] Software encryption technology is divided into hardware-based encryption and software-based encryption according to whether a dedicated hardware device is used. Hardware-based encryption means that encryption needs to be bound to a dedicated hardware device. The main hardware encryption method is currently encryption lock, commonly known as encryption dog. Software-based encryption means encryption without a dedicated hardware device. Generally, a digital license bound to terminal device software and hardware information is used, also known as electronic authorization form.
[0004] Current product software protection solutions mainly use single software protection, which has relatively poor flexibility and customization, making it difficult to combine with actual product software and hardware development and unable to achieve independent control of related technologies. Among them, the software protection technology based on a secure encryption chip mainly connects product equipment through an offline software tool of a host computer, uses a USB (Universal Serial Bus) dongle authorization method to burn a product key for a device product with an on-board encryption chip, cannot uniformly control the product key, is difficult to ensure the security of product key burning, and has the security risk of lost USB dongle.
[0005] Therefore, it is necessary to provide a solution to improve the security of product key burning. SUMMARY
[0006] The main purpose of the present application is to provide a product key burning method, system, device, terminal equipment and storage medium, aiming to solve the problem of product key burning security.
[0007] To achieve the above purpose, the present application provides a product key burning method, which is applied to a host computer, and the product key burning method comprises the following steps:
[0008] reading product information of a device to be burned;
[0009] uploading the product information and a local physical address to a key management server;
[0010] receive a product key generated and issued by the key management server according to the product information and the local physical address, and burn the product key to the device to be burned.
[0011] Optionally, the step of reading the product information of the device to be burned further comprises:
[0012] sending a registration request to the key management server, wherein the registration request comprises an initial account, device information and a local physical address;
[0013] obtaining authorization data corresponding to the initial account issued by the key management server according to the device information and the local physical address, wherein the authorization data comprises an authorized account and / or an authorized password corresponding to the initial account;
[0014] applying for a burning permission to the key management server through the authorization data, the burning permission being used to execute the step of reading the product information of the device to be burned and subsequent steps.
[0015] Optionally, the step of applying for the burning permission to the key management server through the authorization data comprises:
[0016] obtaining an authorized account issued by the key management server according to the registration request;
[0017] obtaining login data input by a user, the login data comprising a login account and / or a login password;
[0018] performing login verification on the login data according to the authorization data;
[0019] if the login data passes the login verification, sending the authorization data and the local physical address to the key management server;
[0020] receiving the burning permission returned by the key management server according to the authorization data and the local physical address.
[0021] Optionally, the step of receiving the product key generated and issued by the key management server according to the product information and the local physical address, and burning the product key to the device to be burned further comprises:
[0022] checking whether the device to be burned is authorized successfully by the product key;
[0023] if the device to be burned is authorized successfully by the product key, burning local user data to the device to be burned, the local user data being used to identify the function permission of the device;
[0024] checking whether the user data burned in the to-be-burned device is consistent with the local user data;
[0025] if the user data burned in the to-be-burned device is consistent with the local user data, sending first prompt information to the key management server;
[0026] if the user data burned in the to-be-burned device is not consistent with the local user data, returning to execute the step of burning the local user data into the to-be-burned device and subsequent steps if the to-be-burned device is authorized successfully by the product key;
[0027] if the number of executions is greater than the preset number of executions, sending second prompt information to the key management server.
[0028] Optionally, the product key burning method is applied to a key management server, and the product key burning method comprises:
[0029] receiving product information and a local physical address uploaded by an upper computer;
[0030] generating a product key according to the product information and the local physical address;
[0031] querying whether the product key exists in a database, and judging whether to issue the product key to the upper computer according to the authority of an authorized account corresponding to the product information.
[0032] Optionally, the step of querying whether the product key exists in the database and judging whether to issue the product key to the upper computer according to the authority of the authorized account comprises:
[0033] querying whether the product key exists in the database, and checking the authority of the authorized account to obtain or generate the product key;
[0034] if the product key exists in the database and the authorized account has the authority to obtain the product key, issuing the product key;
[0035] if the product key does not exist in the database and the authorized account has the authority to generate the product key, storing the product key in the database and issuing the key;
[0036] if the above conditions are not met, sending third prompt information to the upper computer.
[0037] Furthermore, to achieve the above object, the present application also provides a product key burning system, which comprises a device to be burned, a host computer and a key management server; the device to be burned is connected to the host computer, and the host computer is connected to the key management server.
[0038] The device to be burned is configured to provide product information to the host computer.
[0039] The host computer is configured to read the product information in the device to be burned, upload the product information and a local physical address to the key management server, receive a product key issued by the key management server, and burn the product key to the device to be burned.
[0040] The key management server is configured to receive the product information and the local physical address uploaded by the host computer, generate the product key according to the product information and the local physical address, query whether the product key exists in a database, and determine whether to issue the product key to the host computer according to the authority of an authorized account corresponding to the product information.
[0041] Furthermore, to achieve the above object, the present application also provides a product key burning device, which comprises:
[0042] A reading module is configured to read product information of a device to be burned.
[0043] An uploading module is configured to upload the product information and a local physical address to a key management server.
[0044] A burning module is configured to receive a product key generated and issued by the key management server according to the product information and the local physical address, and burn the product key to the device to be burned.
[0045] Furthermore, to achieve the above object, the present application also provides a terminal device, which comprises a memory, a processor, and a product key burning program stored in the memory and executable on the processor, and the product key burning program, when executed by the processor, implements the steps of the product key burning method.
[0046] Furthermore, to achieve the above object, the present application also provides a computer readable storage medium, which stores a product key burning program, and the product key burning program, when executed by a processor, implements the steps of the product key burning method.
[0047] The product key burning method, device, terminal equipment and storage medium provided by the embodiment of the present application burn the product key to the to-be-burned equipment by reading the product information of the to-be-burned equipment, uploading the product information and the local physical address to a key management server, receiving the product key generated and issued by the key management server according to the product information and the local physical address, and burning the product key to the to-be-burned equipment. The generation and issuance of the product key are controlled by the key management server, and the security of the product key burning is improved. BRIEF DESCRIPTION OF DRAWINGS
[0048] Figure 1 The figure is a functional module schematic diagram of the terminal equipment to which the product key burning device of the present application belongs.
[0049] Figure 2 The figure is a flow schematic diagram of the first exemplary embodiment of the product key burning method of the present application.
[0050] Figure 3 The figure is a flow schematic diagram of the second exemplary embodiment of the product key burning method of the present application.
[0051] Figure 4 The figure is a flow schematic diagram of the third exemplary embodiment of the product key burning method of the present application. Figure 3 The figure is a specific flow schematic diagram of step S03 in the embodiment.
[0052] Figure 5 The figure is a flow schematic diagram of the fourth exemplary embodiment of the product key burning method of the present application.
[0053] Figure 6 The figure is a flow schematic diagram of the fourth exemplary embodiment of the product key burning method of the present application.
[0054] Figure 7 The figure is a basic architecture schematic diagram of the product key burning system in the embodiment of the present application.
[0055] The implementation, functional features and advantages of the present application will be further described with reference to the embodiments and the accompanying drawings. DETAILED DESCRIPTION
[0056] It should be understood that the specific embodiments described herein are merely intended to explain the present application and not to limit the present application.
[0057] The main solution of the embodiment of the present application is to burn the product key to the to-be-burned equipment by reading the product information of the to-be-burned equipment, uploading the product information and the local physical address to a key management server, receiving the product key generated and issued by the key management server according to the product information and the local physical address, and burning the product key to the to-be-burned equipment. The generation and issuance of the product key are controlled by the key management server, and the security of the product key burning is improved.
[0058] The technical terms involved in the embodiments of the present application are as follows:
[0059] USB (Universal Serial Bus): a peripheral bus standard, used to standardize the connection and communication of computers and external devices;
[0060] PC (Personal Computer): refers to a multi-purpose computer suitable for personal use in size, price and performance. Desktop computers, notebook computers to small notebook computers and tablet computers and ultrabooks, etc. all belong to personal computers;
[0061] MAC address (Media Access Control Address): also known as LAN address, Ethernet address or physical address, it is an address used to confirm the location of a network device. It is used to uniquely identify a network card in a network. A device with one or more network cards will have a unique MAC address for each network card;
[0062] ID (Identity Document): also known as serial number or account number, it is a relatively unique code in a certain system, which is equivalent to an "identity card". The identity number is generally unchanged in a specific thing, and the rules for identifying the thing are determined by the designer.
[0063] Because the protection of product software in the prior art is relatively single, and the flexibility and customization are relatively poor, it is difficult to combine with the actual development of product software, and it is also impossible to achieve independent controllability of related technologies. The software protection technology based on a secure encryption chip is more commonly used, which mainly connects product equipment through an offline software tool of a host computer, and uses an authorization method of inserting a USB dongle to burn a product key of a device product with an on-board encryption chip. This method has the security risk of losing the USB dongle, low efficiency and poor flexibility in burning the product key of the device, and cannot uniformly control the product key.
[0064] The present application provides a solution by serverizing the burning of the product key, i.e. controlling the generation, storage and issuance of the product key through the server, removing the limiting factors and security risks of USB dongle authorization burning, making the factory burning of the product key more efficient, greatly improving the security, flexibility and traceability of the product key burning, and also providing some valuable data to help further improve the operation efficiency and production decision of future products.
[0065] Specifically, refer to Figure 1 , Figure 1The product key burning device belongs to a terminal device. The product key burning device can be a device independent of the terminal device and capable of burning a product key. The product key burning device can be in the form of hardware or software and carried on the terminal device. The terminal device can be a smart mobile terminal such as a mobile phone or a tablet computer, or a fixed terminal device or a server with a data processing function.
[0066] In this embodiment, the terminal device to which the product key burning device belongs includes at least an output module 110, a processor 120, a memory 130, and a communication module 140.
[0067] The memory 130 stores an operating system and a product key burning program. The product key burning device can store the product information of a to-be-burned device read by the product key burning device and information such as a product key generated by the key management server according to the product information and the local physical address and sent by the key management server in the memory 130. The output module 110 can be a display screen. The communication module 140 can include a WIFI module, a mobile communication module, and a Bluetooth module, and communicate with external devices or servers through the communication module 140.
[0068] When the product key burning program in the memory 130 is executed by the processor, the following steps are implemented:
[0069] reading product information of a to-be-burned device;
[0070] uploading the product information and a local physical address to a key management server;
[0071] receiving a product key generated by the key management server according to the product information and the local physical address and sent by the key management server, and burning the product key to the to-be-burned device.
[0072] Further, when the product key burning program in the memory 130 is executed by the processor, the following steps are implemented:
[0073] sending a registration request to the key management server, wherein the registration request includes an initial account, device information, and a local physical address;
[0074] obtaining authorization data corresponding to the initial account issued by the key management server according to the device information and the local physical address, wherein the authorization data includes an authorized account and / or an authorized password corresponding to the initial account;
[0075] applying for a burning right to the key management server through the authorization data, wherein the burning right is used to execute the step of reading product information of a to-be-burned device and subsequent steps.
[0076] Further, the product key burning program in the memory 130, when executed by the processor, further implements the following steps:
[0077] Obtaining an authorization account issued by the key management server according to the registration request;
[0078] Obtaining login data input by the user, the login data including a login account and / or a login password;
[0079] Performing login verification on the login data according to the authorization data;
[0080] If the login data passes the login verification, sending the authorization data and the local physical address to the key management server;
[0081] Receiving the burning permission returned by the key management server according to the authorization data and the local physical address.
[0082] Further, the product key burning program in the memory 130, when executed by the processor, further implements the following steps:
[0083] Checking whether the to-be-burned device is successfully authorized by the product key;
[0084] If the to-be-burned device is successfully authorized by the product key, burning local user data into the to-be-burned device, the local user data being used to identify the function permission of the device;
[0085] Reading back and checking whether the user data burned in the to-be-burned device is consistent with the local user data;
[0086] If the user data burned in the to-be-burned device is consistent with the local user data, sending first prompt information to the key management server;
[0087] If the user data burned in the to-be-burned device is not consistent with the local user data, returning to execute the step of burning the local user data into the to-be-burned device and subsequent steps if the to-be-burned device is successfully authorized by the product key;
[0088] When the execution times are greater than a preset execution times, sending second prompt information to the key management server.
[0089] Further, the product key burning program in the memory 130, when executed by the processor, further implements the following steps:
[0090] Receiving product information and a local physical address uploaded by the upper computer;
[0091] Generating a product key according to the product information and the local physical address;
[0092] querying whether the product key exists in the database, and judging whether to issue the product key to the host computer according to the authority of the authorized account corresponding to the product information.
[0093] Further, the product key burning program in the memory 130, when executed by the processor, also implements the following steps:
[0094] querying whether the product key exists in the database, and checking the authority of the authorized account to obtain or generate the product key;
[0095] if the product key exists in the database and the authorized account has the authority to obtain the product key, issuing the product key;
[0096] if the product key does not exist in the database and the authorized account has the authority to generate the product key, storing the product key in the database and issuing the key;
[0097] if the above conditions are not met, sending third prompt information to the host computer.
[0098] The embodiment achieves the above scheme, specifically by reading product information of a device to be burned; uploading the product information and a local physical address to a key management server; receiving a product key generated and issued by the key management server according to the product information and the local physical address, and burning the product key to the device to be burned. The generation and issuance of the product key are controlled by the key management server, which improves the security of product key burning.
[0099] Based on the terminal device architecture but not limited to the above architecture, the method embodiment of the present application is proposed.
[0100] The execution subject of the method embodiment can be a product key burning device or a terminal device, and the present embodiment takes the product key burning device as an example.
[0101] Reference Figure 2 , Figure 2 The flowchart of the first exemplary embodiment of the product key burning method of the present application is shown. The execution subject of the present embodiment is a host computer. The product key burning method comprises:
[0102] Step S10, reading product information of a device to be burned;
[0103] The host computer is a PC end key burning tool, in which a burning program is installed. Different host computers have different MAC addresses and device information. The device to be burned can access the host computer through the network port or the USB port, and the product information of the device to be burned is read by the host computer. Among them, the device to be burned can be a device with a network port (for example: a notebook computer), or a device with only a USB interface (for example: a dongle). Since the dongle and other devices cannot directly connect with the key management server (because the dongle does not have a network port or other communication interface). Therefore, the host computer is used as a hub station to connect the key management server and the dongle, and to share part of the work of the key management server (such as reading product information or security verification, etc.).
[0104] As an optional embodiment, before step S10, the following process is further included: after the host computer sends a registration request to the key management server, the authorization data issued by the key management server according to the registration request can be obtained, and the burning permission is applied to the key management server according to the authorization data. When the administrator approves, the key management server can issue authorization data according to the registration request of the host computer. The product key burning personnel applies for the burning permission to the key management server according to the obtained authorization data, and further reads the product information of the device to be burned through the burning permission, and further completes the device burning process (that is, executes step S10 and the subsequent steps).
[0105] When the host computer obtains the burning authorization, the product information of the device to be burned can be read through the burning program. The product information includes but is not limited to product unique ID information and product label information matched with the product, or a combination of one or more information. Among them, the product label is used to represent the device type of the device to be burned.
[0106] Step S20, upload the product information and the local physical address to the key management server;
[0107] The host computer uploads the product information (including product unique ID information and product label information matched with the product) and the local physical address to the key management server. The key management server can generate the corresponding product key according to the received product information and the local physical address, and then issue the product key to the host computer. The local physical address refers to the MAC address of the host computer.
[0108] It is worth noting that in order to improve the accuracy of the verification, not only the product information is sent to the key management server, but also the local physical address is sent to the key management server, so as to improve the verification accuracy of the key management server through the two kinds of information.
[0109] Step S30, receiving the product key generated and issued by the key management server according to the product information and the local physical address, and burning the product key to the to-be-burned device.
[0110] After the host computer uploads the product information (including product unique ID information and product labels matched with the product) and the local physical address to the key management server, the key management server can generate a uniquely determined product key according to the product information and the local physical address, and determine whether to issue the product key to the host computer by querying whether the product key exists in the database and judging the authority of the authorized account corresponding to the product information.
[0111] Further, after the host computer receives the product key issued by the key management server, it can be burned into the to-be-burned device. After the burning is completed, it is checked whether the to-be-burned device can be authorized using the product key. If the check passes, the factory user data is burned, and then further read-back checking is performed to determine whether the user data burned in the to-be-burned device is consistent with the factory user data. After both checks pass in turn, it can be concluded that the product key burning process is completed. The user data is used to identify the function authority of the to-be-burned device.
[0112] In this embodiment, by sending a registration request to the key management server, obtaining the authorization data corresponding to the initial account issued by the key management server according to the registration request, and applying for burning authority to the key management server according to the authorization data, the product information of the to-be-burned device is read based on the burning authority, and the product information and the local physical address are uploaded to the key management server. The product key generated and issued by the key management server according to the product information and the local physical address is received, and the product key is burned to the to-be-burned device. By using MAC address and authorization data for authentication, the security of the authentication process is further improved. The key management server controls the generation and issuance of the product key, improving the security of the product key burning. In addition, the host computer helps the key management server to share part of the processing flow, such as checking the account information and product information of the key, so as to reduce the processing load of the key management server. In a high-concurrency scenario, it has good processing efficiency, thereby further improving the processing efficiency of the product key burning.
[0113] Reference Figure 3 , Figure 3 This is a flowchart of a second exemplary embodiment of the product key burning method of the present application. The execution subject of this embodiment is a host computer. Based on the above Figure 2 embodiment, in this embodiment, before step S10, the product key burning method further comprises:
[0114] Step S01, send a registration request to the key management server, wherein the registration request includes an initial account, device information and a local physical address;
[0115] Before reading the product information of the device to be burned by the host computer, the host computer needs to be registered to ensure the safety and controllability of the operation. During the registration process of the host computer, the product key burning personnel needs to send the initial account containing the request key and the product device of the host computer to the key management server through the host computer, and register the local physical address (MAC address) of the running host computer.
[0116] Step S02, obtain the authorization data corresponding to the initial account issued by the key management server according to the device information and the local physical address, wherein the authorization data includes the authorization account and / or the authorization password corresponding to the initial account;
[0117] When the key management service receives the registration request, it will generate the authorization data corresponding to the initial account according to the device information and the local physical address in it, such as the authorization account and the authorization password corresponding to the initial account, and then issue the authorization data corresponding to the initial account to the host computer. Among them, the authorization data can be only the authorization account corresponding to the initial account, or only the authorization password corresponding to the initial account, or the authorization account and the authorization password corresponding to the initial account.
[0118] Step S03, apply for burning permission to the key management server through the authorization data, and the burning permission is used to execute the step of reading the product information of the device to be burned and the subsequent steps.
[0119] After the host computer obtains the authorization data, it can log in to the burning program according to the authorization account in the authorization data, and then apply for burning permission to the key management server for subsequent reading of product information and burning process for the device to be burned.
[0120] In this embodiment, by sending a registration request to the key management server, obtaining the authorization data corresponding to the initial account issued by the key management server according to the device information and the local physical address, wherein the authorization data includes the authorization account and / or the authorization password corresponding to the initial account; through the authorization data, apply for burning permission to the key management server, and the burning permission is used to execute the step of reading the product information of the device to be burned and the subsequent steps. By sending a registration request to the key management server and obtaining the burning permission, the key management server can better control the product key burning process, and ensure the security, flexibility and traceability of the burning key.
[0121] Refer toFigure 4 , Figure 4 For Figure 3 The specific flowchart of step S03 in the embodiment. The execution subject of this embodiment is the host computer. This embodiment is based on the above-mentioned Figure 3 As shown in the embodiment, in this embodiment, the above-mentioned step S03 comprises:
[0122] Step S031, obtaining the login data input by the user, wherein the login data comprises a login account and / or a login password;
[0123] In the process of login of the product key burning personnel through the user page, the host computer can obtain the login data input by the user, such as the login account and the login password, so as to verify the identity information of the user.
[0124] Step S032, performing login verification on the login data according to the authorization data;
[0125] By comparing the obtained authorization data with the login data of the user, such as whether the authorization account in the authorization data matches the login account in the user data and whether the login password corresponding to the login account is the corresponding authorization password, login verification is performed to ensure the security of the authorization process.
[0126] Step S033, if the login data login verification passes, sending the authorization data and the local physical address to the key management server;
[0127] If the login account and the login password of the user respectively match the corresponding authorization account and authorization password, it means that the login verification of the login data passes, and the authorization data and the local physical address can be sent to the key management server according to the burning program, so as to obtain the burning permission for reading the product information and the burning process of the product equipment.
[0128] Step S034, receiving the burning permission returned by the key management server according to the authorization data and the local physical address.
[0129] When the key management server obtains the authorization data and the local physical address sent by the host computer, it can generate the burning permission according to the authorization data and the local physical address, and then return the burning permission to the host computer. The authorization data includes but is not limited to one kind of data or a combination of multiple data such as authorization account and / or authorization password.
[0130] It is worth noting that in order to improve the accuracy of verification, the authorization data is not only sent to the key management server, but also the local physical address is sent to the key management server, so as to improve the verification accuracy of the key management server through the two kinds of information.
[0131] It is worth noting that in all the processes of the present application, the local physical address has three major roles: ① used by the key management server to determine whether to issue an authorized account and / or an authorized password according to the local physical address; ② used by the key management server to check whether the host computer has the right to burn according to the local physical address; ③ used by the key management server to determine whether to issue a product key according to the local physical address.
[0132] Specifically, the host computer generates an authorization request according to the obtained authorization data and the local physical address of the host computer, and then sends the authorization request (including authorization data and local physical address in the authorization request) to the key management server to obtain a burning authorization, and then reads the product information of the device to be burned according to the burning authorization. The host computer requests the product key from the key management server based on the product information and the local physical address.
[0133] It is worth noting that in the prior art, only account information and password information are generally used for authentication information, while in the embodiment of the present application, local physical address and authorization data are used for authentication, further improving the security of the authentication process.
[0134] In this embodiment, by obtaining user input login data, the login data includes login account and / or login password; the login data is checked according to the authorization data; if the login data login check is passed, the authorization data and the local physical address are sent to the key management server; and the burning right returned by the key management server according to the authorization data and the local physical address is received. In the authentication process, the local physical address of the device where the host computer is located is added as authentication information, which helps to further improve the security of the authentication process and thus the security of the product key burning process.
[0135] Reference Figure 5 , Figure 5 This is a flowchart of a third exemplary embodiment of the product key burning method of the present application. The execution of this embodiment is for the host computer. Based on the above Figure 2 mentioned embodiments, in this embodiment, after step S30, the product key burning method further includes:
[0136] Step S41, check whether the device to be burned is successfully authorized by the product key;
[0137] After the host computer receives the product key issued by the key management server, it can be burned into the device to be burned. After the burning is completed, it is still necessary to further check whether the product key can be used for authorization to ensure the availability of the burned product key.
[0138] Step S42, if the to-be-burned device is successfully authorized by the product key, burn the local user data into the to-be-burned device, and the local user data is used to identify the function permission of the device;
[0139] If the to-be-burned device can be authorized by the burned product key, the local user information read by the host computer can be burned into the product device, so that the function permission of the factory product device can be identified. The user data is used to identify the function permission of the to-be-burned device.
[0140] Step S43, read back and check whether the user data burned in the to-be-burned device is consistent with the local user data;
[0141] After burning the user information into the to-be-burned device, further checking is needed, that is, read back and check whether the user data burned in the to-be-burned device is consistent with the local user data read by the host computer, to ensure the accuracy of the burned data.
[0142] Step S44, if the user data burned in the to-be-burned device is consistent with the local user data, send first prompt information to the key management server;
[0143] If the read back check shows that the user data burned in the to-be-burned device is completely consistent with the local user data, it means that the burning is successful, and first prompt information containing the information that the product key burning is successful can be sent to the key management server.
[0144] Step S45, if the user data burned in the to-be-burned device is not consistent with the local user data, return to execute the step of burning the local user data into the to-be-burned device and the subsequent steps if the to-be-burned device is successfully authorized by the product key;
[0145] If the read back check shows that the user information burned in the to-be-burned device is not completely consistent with the local user information, it means that this time of burning fails, and the burning step S42 and the subsequent steps need to be executed again until the user data burned in the to-be-burned device is consistent with the local user data.
[0146] Step S46, when the execution times are greater than the preset execution times, send second prompt information to the key management server.
[0147] After the step S42 and the subsequent steps are repeatedly executed, the number of times of repeated execution is counted, and if the number of times of repeated execution is greater than a preset number of times of execution, it is indicated that the burning is unsuccessful, and in the embodiment of the present application, the preset number of times of execution is 3. If the burning is unsuccessful, a prompt information of burning failure is returned to the key management server, and a corresponding user operation log is generated by the key management server.
[0148] In the embodiment, whether the to-be-burned device is successfully authorized by the product key is checked, if the to-be-burned device is successfully authorized by the product key, the local user data is burned into the to-be-burned device, the local user data is used to identify the function permission of the device, the user data burned in the to-be-burned device is read back to check whether the user data burned in the to-be-burned device is consistent with the local user data, if the user data burned in the to-be-burned device is consistent with the local user data, a first prompt information is sent to the key management server, if the user data burned in the to-be-burned device is not consistent with the local user data, the step that if the to-be-burned device is successfully authorized by the product key, the local user data is burned into the to-be-burned device and the subsequent steps are returned to be executed, and when the number of times of execution is greater than a preset number of times of execution, a second prompt information is sent to the key management server. By burning the local user data into the to-be-burned device, the function permission of the device can be identified, and by sequentially performing two checks, it can be ensured that the burned data is accurate, and the accuracy of the product key burning process is improved.
[0149] Reference Figure 6 , Figure 6 The figure is a flowchart of a fourth exemplary embodiment of a product key burning method of the present application. The execution of the embodiment is paid attention to the key management server. Based on the above-mentioned Figure 2 The product key burning method provided by the embodiment of the present application includes the following steps:
[0150] Step A10, receiving product information uploaded by the upper computer and a local physical address;
[0151] After the product information of the to-be-burned device and the local physical address of the device where the upper computer is located are read and uploaded by the upper computer, the product information and the local physical address are received by the key management server, and then a corresponding product key can be generated.
[0152] Step A20, generating a product key according to the product information and the local physical address;
[0153] After the key management server receives the product information and the local physical address, the product unique ID information in the product information and the product label matched with the product can be read, and a uniquely determined product key corresponding to the product unique ID information, the product label and the local physical address can be generated.
[0154] In step A30, it is determined whether the product key exists in the database, and whether the product key is issued to the upper computer according to the authority of the authorized account corresponding to the product information.
[0155] After the key management server generates the uniquely determined product key corresponding to the product information and the local physical address, it is determined whether the product key exists in the database. If the product key exists and the authorized account corresponding to the product information has the burning authority, the key management server issues the product key. If the product key does not exist and the authorized account corresponding to the product information has the burning authority, the product key is stored in the database and the product key is issued. If it is other conditions, a prompt information of application key failure and the corresponding authority description are returned.
[0156] In the embodiment, the product information and the local physical address uploaded by the upper computer are received, the product key is generated according to the product information and the local physical address, it is determined whether the product key exists in the database, and whether the product key is issued to the upper computer according to the authority of the authorized account corresponding to the product information. By serverizing the burning of the product key, that is, by controlling the generation, storage and issuance of the product key through the server, the factory burning of the product key is more efficient and safe.
[0157] In addition, the embodiment of the application further provides a product key burning system, which comprises a to-be-burned device, an upper computer and a key management server.
[0158] The to-be-burned device is configured to provide product information to the upper computer.
[0159] The upper computer is configured to read the product information in the to-be-burned device, upload the product information and a local physical address to the key management server, receive the product key issued by the key management server and burn the product key to the to-be-burned device.
[0160] The key management server is configured to receive the product information and the local physical address uploaded by the host computer, and generate the product key according to the product information and the local physical address; query whether the product key exists in the database, and determine whether to issue the product key to the host computer according to the authority of the authorized account corresponding to the product information.
[0161] Reference Figure 7 , Figure 7 The basic architecture of the product key burning system in the embodiment of the application is shown in FIG. 1. Figure 7 As shown in FIG. 1, the product device to be burned can be connected to the product key burning host computer through a network port or a USB port. The host computer can be connected to the internal network or the external network through a network cable. According to the product information of the device to be read and the configuration data corresponding to the product, the host computer requests the server to burn the corresponding product key and device factory data. It is worth noting that the product device to be burned can be a device with a network port (for example, a notebook computer), or a device with only a USB interface (for example, a dongle). Since the dongle and other devices cannot be directly connected to the server (because the dongle does not have a network port or other communication interface), the host computer (i.e., the PC key burning tool) is used as a hub to connect the server and the dongle. The host computer has the following advantages: the host computer helps the server to share part of the processing flow (for example, reading product information or security verification), thereby reducing the processing load of the key management server, and having good processing efficiency in a high-concurrency scenario.
[0162] The specific product key burning process includes the following steps:
[0163] The host computer is registered. The worker responsible for burning the product key applies for the burning authority to the key management server through the host computer, mainly including: requesting an authorized account and / or an authorized password based on an initial account, device information and a local physical address. The key management server registers the local physical address of the host computer running the key burning program.
[0164] The product device to be burned is connected to the host computer. The product key burning personnel log in to the burning program in the host computer through the authorized account and / or the authorized password. The burning program reads the local physical address, the authorized account and / or the authorized password of the host computer to apply for the burning authority to the server.
[0165] The authorized host computer program reads the product information (product unique ID information and product label matched with the product) and user data of the product device to be burned, and uploads the product information and the local physical address to the key management server.
[0166] The key management server generates a corresponding unique product key according to the product information uploaded by the burning program and the local physical address, and queries whether the product key exists in the database. If the product key exists and the authorized account has the permission to generate the product key, the server issues the product key; if the product key does not exist and the authorized account has the permission to generate the product key, the key is stored in the database and the key is issued; otherwise, the application key fails, and the corresponding permission is returned.
[0167] The key burning program in the host computer obtains the product key returned by the key management server, and burns it into the to-be-burned device. After burning, it is checked whether the to-be-burned device can use the key for authorization. If the check is passed, the user data is burned, and then further read-back user check is performed to check whether it is consistent. After both checks are passed in turn, the product key burning success is returned to the key management server, otherwise, if the burning is unsuccessful for 3 times in succession, the failure is returned, and the key management server generates the corresponding user operation log.
[0168] The product key burning server is realized by the embodiment, that is, the generation, storage and issuance of the product key are controlled by the key management server, the restriction factors and security risks of the USB dongle authorization burning are removed, the product key burning at the factory is more efficient; by using the local physical address and the authorized account and / or the authorized password for authentication, the security of the authentication process is further improved. In addition, the host computer helps the key management server to share part of the processing flow, such as reading product information or security check, which reduces the processing load of the key management server, has good processing efficiency in a high-concurrency scenario, and greatly improves the security, flexibility and traceability of the product key burning. In addition, some valuable data will be provided to further improve the operation efficiency and production decision of future products.
[0169] In addition, the embodiment of the application also provides a product key burning device, which comprises:
[0170] A reading module is configured to read product information of a to-be-burned device.
[0171] An uploading module is configured to upload the product information and a local physical address to a key management server.
[0172] A burning module is configured to receive a product key generated and issued by the key management server according to the product information and the local physical address, and burn the product key into the to-be-burned device.
[0173] The principle and implementation process of the product key burning are realized in the embodiment, please refer to the above embodiments, which will not be repeated here.
[0174] Furthermore, the embodiment of the present application also provides a terminal device, which comprises a memory, a processor and a product key burning program stored in the memory and executable on the processor, and the product key burning program realizes the steps of the product key burning method when executed by the processor.
[0175] Since the product key burning program is executed by the processor, all the technical solutions of all the foregoing embodiments are adopted, and thus all the beneficial effects brought by all the technical solutions of all the foregoing embodiments are at least achieved, which will not be repeated here.
[0176] Furthermore, the embodiment of the present application also provides a computer readable storage medium, which stores a product key burning program, and the product key burning program realizes the steps of the product key burning method when executed by the processor.
[0177] Since the product key burning program is executed by the processor, all the technical solutions of all the foregoing embodiments are adopted, and thus all the beneficial effects brought by all the technical solutions of all the foregoing embodiments are at least achieved, which will not be repeated here.
[0178] Compared with the prior art, the product key burning method, system, device, terminal device and storage medium provided by the embodiment of the present application improve the security, flexibility and traceability of product key burning by reading product information of a device to be burned, uploading the product information and a local physical address to a key management server, receiving a product key generated and issued by the key management server according to the product information and the local physical address, and burning the product key to the device to be burned.
[0179] It should be noted that, in this document, the terms "comprising", "including", or any other variant thereof are intended to cover non-exclusive inclusions, so that a process, method, article or system including a series of elements does not only include those elements, but also includes other elements not explicitly listed, or further includes elements inherent to such a process, method, article or system. Without more limitations, the element defined by the statement "comprising a" does not exclude the presence of another identical element in the process, method, article or system including the element.
[0180] The serial numbers of the above embodiments of the present application are only for description, and do not represent the advantages and disadvantages of the embodiments.
[0181] Through the above description of the embodiments, those skilled in the art can clearly understand that the above-mentioned example method can be realized by means of software and a necessary general hardware platform, and of course, it can also be realized by hardware, but in many cases, the former is a better embodiment. Based on such understanding, the technical solutions of the present application can be embodied in the form of a software product, which is stored in a storage medium (such as a ROM / RAM, a magnetic disk, or an optical disc) and includes a plurality of instructions for causing a terminal device (which can be a mobile phone, a computer, a server, a controlled terminal, or a network device) to execute the method of each embodiment of the present application.
[0182] The above is only the preferred embodiment of the present application, and does not limit the patent scope of the present application, and any equivalent structure or equivalent flow transformation made by using the content of the specification and drawings of the present application, or directly or indirectly applied to other related technical fields, are also included in the patent protection scope of the present application.
Claims
1. A method for burning a product key, characterized in that, The product key burning method is applied to a host computer, and the product key burning method includes: Read the product information of the device to be programmed; Upload the product information and local physical address to the key management server; Receive the product key generated and issued by the key management server based on the product information and the local physical address, and burn the product key to the device to be burned; Check whether the device to be programmed has been successfully authorized using the product key; If the device to be programmed is successfully authorized by the product key, the local user data will be programmed into the device to be programmed. The local user data is used to identify the device's functional permissions. The back-read check verifies whether the user data burned into the device to be burned is consistent with the local user data. If the user data burned into the device to be burned is not consistent with the local user data, then return to the step of burning the local user data into the device to be burned if the device to be burned is successfully authorized by the product key, and the subsequent steps.
2. The product key burning method as described in claim 1, characterized in that, Before the step of reading the product information of the device to be programmed, the following also includes: A registration request is sent to the key management server, wherein the registration request includes an initial account, device information, and a local physical address; Obtain the authorization data corresponding to the initial account issued by the key management server based on the device information and the local physical address, wherein the authorization data includes the authorization account and / or authorization password corresponding to the initial account; Using the authorized data, a burning permission is requested from the key management server. The burning permission is used to execute the step of reading the product information of the device to be burned and subsequent steps.
3. The product key burning method as described in claim 2, characterized in that, The step of requesting burning permission from the key management server using the authorized data includes: Obtain login data input by the user, the login data including login account and / or login password; Login verification is performed on the login data based on the authorization data; If the login data login verification passes, the authorization data and the local physical address are sent to the key management server; Receive the burning permission returned by the key management server based on the authorization data and the local physical address.
4. The product key burning method as described in claim 1, characterized in that, After the step of checking whether the user data burned in the device to be burned is consistent with the local user data, the following is also included: If the user data burned into the device to be burned is consistent with the local user data, then a first prompt message is sent to the key management server; If the user data burned into the device to be burned is not consistent with the local user data, then return to the step of burning the local user data into the device to be burned if the device to be burned is successfully authorized by the product key, and the subsequent steps also include: If the number of executions exceeds the preset number of executions, a second prompt message is sent to the key management server.
5. A method for burning a product key, characterized in that, The product key burning method is applied to a key management server, and the product key burning method includes: Receive product information and local physical address uploaded by the host computer; Generate a product key based on the product information and the local physical address; The system queries the database to determine if the product key exists, and based on the permissions of the authorized account corresponding to the product information, determines whether to send the product key to the host computer so that the host computer can burn the product key to the device to be burned. It then checks whether the device to be burned has been successfully authorized by the product key. If the device to be burned has been successfully authorized by the product key, the local user data is burned to the device to be burned. The system then reads back to check whether the user data burned to the device to be burned is consistent with the local user data. If the user data burned to the device to be burned is inconsistent with the local user data, the system returns to the step of burning the local user data to the device if the device to be burned has been successfully authorized by the product key, and proceeds with subsequent steps. The local user data is used to identify the device's functional permissions.
6. The product key burning method as described in claim 5, characterized in that, The steps of querying the database to determine whether the product key exists and determining whether to send the product key to the host computer based on the authorized account's permissions include: Query whether the product key exists in the database, and check the authorization account's permission to obtain or generate the product key; If the product key exists in the database and the authorized account has permission to obtain the product key, then the product key is issued. If the product key does not exist in the database, and the authorized account has the permission to generate the product key, then the product key is stored in the database and the key is issued. If the above conditions are not met, a third prompt message will be sent to the host computer.
7. A product key burning system, characterized in that, The product key burning system includes a device to be burned, a host computer, and a key management server; the device to be burned is connected to the host computer, and the host computer is connected to the key management server. The device to be programmed is used to provide product information to the host computer; The host computer is used to read the product information in the device to be programmed and upload the product information and local physical address to the key management server. Receive the product key issued by the key management server and burn the product key to the device to be burned; check whether the device to be burned has been successfully authorized by the product key. If the device to be programmed is successfully authorized by the product key, the local user data is programmed into the device to be programmed. The local user data is used to identify the device's functional permissions. A readback check is performed to verify whether the user data programmed into the device to be programmed is consistent with the local user data. If the user data burned into the device to be burned is not consistent with the local user data, then return to the step of burning the local user data into the device to be burned if the device to be burned is successfully authorized by the product key, and the subsequent steps. The key management server is used to receive product information and the local physical address uploaded by the host computer, and generate the product key based on the product information and the local physical address; query whether the product key exists in the database, and determine whether to send the product key to the host computer based on the permissions of the authorized account corresponding to the product information.
8. A product key burning device, characterized in that, The product key burning device includes: The reading module is used to read the product information of the device to be programmed; The upload module is used to upload the product information and local physical address to the key management server; The programming module is used to receive the product key generated and issued by the key management server based on the product information and the local physical address, and to program the product key to the device to be programmed. The programming module is also used to check whether the device to be programmed has been successfully authorized by the product key; if the device to be programmed has been successfully authorized by the product key, the local user data is programmed into the device to be programmed, and the local user data is used to identify the device's functional permissions. The module also reads back to check whether the user data programmed into the device to be programmed is consistent with the local user data; if the user data programmed into the device to be programmed is not consistent with the local user data, the module returns to the step of programming the local user data into the device to be programmed if the device to be programmed has been successfully authorized by the product key, and subsequent steps.
9. A terminal device, characterized in that, The terminal device includes a memory, a processor, and a product key burning program stored in the memory and executable on the processor. When the product key burning program is executed by the processor, it implements the steps of the product key burning method as described in any one of claims 1 to 4 or 5 to 6.
10. A computer-readable storage medium, characterized in that, The computer-readable storage medium stores a product key burning program, which, when executed by a processor, implements the steps of the product key burning method as described in any one of claims 1 to 4 or 5 to 6.
Citation Information
Patent Citations
Key information burning method and device
CN105187444A
Authorization key generation method, authorization key generation device and authorization server
CN111414588A