Cloud secure printing system and method
By combining the U-KEY device with PIN code two-factor authentication and cloud server platform resource scheduling, the problems of low device utilization and insufficient security in cloud printing are solved, and efficient and secure print file transmission and management are achieved.
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- HUADI COMP GROUP
- Filing Date
- 2022-10-10
- Publication Date
- 2026-05-19
AI Technical Summary
Existing cloud printing technologies suffer from low resource utilization and insufficient security, particularly in terms of identity verification, document transfer, and auditing and data backup mechanisms for printing activities.
The system employs a two-factor authentication method combining a U-KEY device and a PIN code to perform initial and secondary authentication of the user's identity. It also enables resource sharing and scheduling of multiple printers through a cloud server platform. The U-KEY device is used for file encryption and decryption, while the cloud server performs file splitting and scheduling.
It improves the security of printing user identities and device utilization, enhances the security of printed file transmission, and facilitates the auditing and management of printing tasks.
Smart Images

Figure CN115543232B_ABST
Abstract
Description
Technical Field
[0001] This invention belongs to the field of cloud printing technology, and more specifically, relates to a cloud secure printing system and method. Background Technology
[0002] As information technology is increasingly applied to all sectors of society, the demands for information security in national economic and social development are constantly increasing, and the increasingly prominent information security issues are bringing new challenges to national political, economic, cultural, and defense security.
[0003] Cloud printing refers to the integration of printing service provider resources based on the internet to build a shared printing platform and provide printing services to the entire society. Cloud printing enables printing to transcend the geographical limitations of local area networks via the internet, allowing for cross-network, multi-terminal, and remote printing anytime, anywhere, meeting the needs of cloud-based application software. Currently, the general process of cloud printing is as follows: using the internet as a carrier, terminal devices upload the documents to be printed to the cloud server platform, and the cloud platform then distributes the data information to the printer, thereby enabling remote, off-site printing.
[0004] The biggest advantages of cloud printing compared to local printers are: 1. It is not limited by distance and can meet the needs of multiple terminals in different locations; 2. The terminal system does not require the installation of printer drivers, and printing can be done anytime, anywhere; 3. It avoids some problems of traditional print shops, such as long queues, remote locations, and poor service, and has the advantages of high efficiency, convenience, and speed.
[0005] However, the utilization rate of printing equipment resources on the market is relatively low, and there are security risks in cloud printing, such as the identification of the printing initiator, document transmission, auditing of printing behavior, and data backup mechanisms. Summary of the Invention
[0006] The purpose of this invention is to propose a cloud-secure printing system and method to improve the security of the cloud printing identity authentication process and the utilization rate of printing equipment.
[0007] In a first aspect, the present invention proposes a cloud-secure printing system, comprising: a printing terminal, a cloud server platform, a printer resource pool, and a U-KEY device, wherein the printing terminal and the printer resource pool are respectively communicatively connected to the cloud server platform;
[0008] The printer resource pool includes multiple printers, and both the printing terminal and the printer have a U-KEY interface.
[0009] The printing terminal is used for:
[0010] After recognizing the inserted U-KEY device, a PIN code input window is displayed to the user, and the PIN code entered by the user is sent to the cloud server platform for identity authentication.
[0011] In addition, after receiving the information that the identity authentication has been passed, the system initiates a print task request to the cloud server platform and uploads the documents to be printed to the cloud server platform;
[0012] Any printer in the printer resource pool is used for:
[0013] After recognizing the inserted U-KEY device, a PIN code input window is displayed to the user, and the PIN code entered by the user is sent to the cloud server platform for identity authentication.
[0014] Furthermore, after receiving the authentication information, the system requests the corresponding print list from the cloud server platform and prints the files after receiving the print file queue from the cloud platform.
[0015] The cloud server platform is used for:
[0016] The user's identity is authenticated based on the PIN code uploaded by the printing terminal and the printer resource pool;
[0017] After receiving the file uploaded by the printing terminal, a corresponding print file queue is generated;
[0018] Furthermore, once the printer identity authentication is successful after inserting the U-KEY device, a corresponding print file queue is sent to the printer.
[0019] Optionally, the printing terminal is further configured to: encrypt the document to be printed using the hardware code of the U-KEY device, and upload the encrypted print file to the cloud server platform.
[0020] Optionally, the cloud server platform is also used to: decrypt the received print files, split and schedule files according to the status of the print resource pool and file attributes, and distribute the print file queue to each printer.
[0021] Optionally, the printing terminal and the printer are also used to: after receiving the identity authentication failure information issued by the cloud server platform, display a prompt to the user that the PIN code was entered incorrectly and to re-enter the PIN code; if the PIN code is entered incorrectly a set number of times, the PIN code input will be temporarily locked for a set period of time.
[0022] Optionally, while sending the PIN code to the cloud server platform for identity authentication, the printing terminal and the printer also send the key information stored in the U-KEY device to the cloud server platform.
[0023] The cloud server platform authenticates the key information along with the PIN code.
[0024] Optionally, the key information includes the U-KEY device authentication key and the user key.
[0025] Optionally, the printer is also used to: return the printing status to the cloud server platform after printing is completed;
[0026] The cloud server platform generates a print log after receiving the print status returned by the printer.
[0027] Optionally, the cloud server platform includes a cloud print management center server, an identity authentication server, and a print audit server;
[0028] The cloud printing management center server is used to monitor the status of the printing resource pool and the decomposition and scheduling of printing tasks.
[0029] The identity authentication server is used to authenticate the user's identity based on the PIN code uploaded by the printing terminal and the printer resource pool;
[0030] The print audit server is used to generate print logs and provide print log query services.
[0031] In a second aspect, the present invention provides a cloud-secure printing method, based on the cloud-secure printing system described in any one of the first aspects, the method comprising:
[0032] After recognizing the inserted U-KEY device, the printing terminal displays a PIN code input window to the user and sends the PIN code entered by the user to the cloud server platform for identity authentication.
[0033] The cloud server platform authenticates the user's identity based on the PIN code uploaded by the printing terminal, and sends authentication success information to the printing terminal after successful authentication.
[0034] After receiving the authentication information, the printing terminal initiates a print task request to the cloud server platform and uploads the document to be printed to the cloud server platform.
[0035] After receiving the file uploaded by the printing terminal, the cloud server platform generates a corresponding print file queue.
[0036] After recognizing the inserted U-KEY device, any printer in the printer resource pool will display a PIN code input window to the user and send the PIN code entered by the user to the cloud server platform for identity authentication.
[0037] The cloud server platform authenticates the user's identity based on the PIN code uploaded by the printer, and sends authentication success information to the printer after successful authentication.
[0038] After receiving the authentication information, the printer requests the corresponding print list from the cloud server platform.
[0039] The cloud server platform sends the corresponding print file queue to the printer;
[0040] The printer is connected to the print file queue sent by the cloud platform and then prints.
[0041] Optionally, it also includes: the printing terminal encrypts the file to be printed using the hardware code of the U-KEY device, and uploads the encrypted print file to the cloud server platform;
[0042] The cloud server platform decrypts the received print files, splits and schedules the files according to the status of the print resource pool and file attributes, and then distributes the print file queue to each printer.
[0043] The beneficial effects of this invention are as follows:
[0044] This invention performs initial authentication of the user's identity in the cloud by combining the U-KEY with a PIN code when the user inserts the U-KEY into the printing terminal. After successful initial authentication, the user performs secondary authentication again in the cloud when printing files stored in the cloud, using the U-KEY combined with a PIN code. This ensures the consistency of the printing user's identity. The presence of the PIN code greatly reduces the risk of hardware theft, resulting in higher security. At the same time, the cloud server platform enables the shared scheduling of resources for multiple printer devices, improving printing efficiency and equipment utilization compared to a single printing device.
[0045] Furthermore, this invention uses a UKEY hardware code to encrypt and decrypt print files, which greatly improves encryption security and print file transmission security compared to simple software encryption; at the same time, it records detailed logs for print jobs, making it easier to audit and manage print operations.
[0046] The system of the present invention has other features and advantages that will be apparent from or will be set forth in detail in the accompanying drawings and following detailed description, which together serve to explain the particular principles of the invention. Attached Figure Description
[0047] The above and other objects, features and advantages of the present invention will become more apparent from the accompanying drawings, in which like reference numerals generally denote like parts.
[0048] Figure 1 A schematic diagram of a cloud-secure printing system according to Embodiment 1 of the present invention is shown.
[0049] Figure 2 A swimlane diagram illustrating the data request and response process in the printing flow of a cloud secure printing system according to Embodiment 1 of the present invention is shown.
[0050] Figure 3 A flowchart illustrating the steps of a cloud-secure printing method according to Embodiment 2 of the present invention is shown.
[0051] Figure 4 A flowchart of a cloud-secure printing method according to Embodiment 2 of the present invention is shown. Detailed Implementation
[0052] The invention will now be described in more detail with reference to the accompanying drawings. While preferred embodiments of the invention are shown in the drawings, it should be understood that the invention can be implemented in various forms and should not be limited to the embodiments set forth herein. Rather, these embodiments are provided so that the invention will be thorough and complete, and will fully convey the scope of the invention to those skilled in the art.
[0053] Example 1
[0054] like Figure 1 and Figure 2 As shown, a cloud-secure printing system includes: a printing terminal, a cloud server platform, a printer resource pool, and a U-KEY device, wherein the printing terminal and the printer resource pool are respectively connected to the cloud server platform.
[0055] The printer resource pool includes multiple printers, and both the printing terminal and the printer have a U-KEY interface;
[0056] The printing terminal is used for:
[0057] After recognizing the inserted U-KEY device, a PIN code input window is displayed to the user, and the PIN code entered by the user is sent to the cloud server platform for identity authentication;
[0058] In addition, after receiving the information that the identity authentication has been passed, the user initiates a print job request to the cloud server platform and uploads the documents to be printed to the cloud server platform.
[0059] Any printer in the printer resource pool is used for:
[0060] After recognizing the inserted U-KEY device, a PIN code input window is displayed to the user, and the PIN code entered by the user is sent to the cloud server platform for identity authentication;
[0061] In addition, after receiving the authentication information, it requests the corresponding print list from the cloud server platform and prints the files after receiving the print file queue from the cloud platform.
[0062] Cloud server platforms are used for:
[0063] The user's identity is authenticated based on the PIN code uploaded by the printing terminal and printer resource pool;
[0064] After receiving the file uploaded by the printing terminal, a corresponding print file queue is generated;
[0065] Additionally, once the printer with the U-KEY device inserted is successfully authenticated, the corresponding print file queue is sent to the printer.
[0066] Specifically, in this embodiment, the cloud secure printing system is deployed via Ethernet. The hardware deployment includes printing terminals, a cloud printing management center server, an identity authentication server, multiple printers of the same model, and related U-keys. The cloud printing management center server monitors the status of the print resource pool and schedules print tasks. The identity authentication server authenticates users based on the PIN codes uploaded by the printing terminals and the printer resource pool. The print audit server generates print logs and provides a query service for these logs. In other embodiments, the identity authentication service may be hosted on the same server as the cloud printing management center service and the print audit service.
[0067] U-KEY, short for USB-KEY, also known as a smart password key, is a small, reliable, and high-speed storage device that connects directly to a computer via USB (Universal Serial Bus interface). It features password verification and stores key information. Printing terminals and printers are equipped with corresponding U-KEY interfaces, i.e., USB interfaces.
[0068] When a user inserts their U-KEY into the printing terminal, this system uses a combination of the U-KEY and a PIN code to perform initial authentication of the user's printing activity in the cloud. After successful initial authentication, when the user prints files stored in the cloud, they again use the U-KEY and PIN code for secondary authentication in the cloud. This ensures the consistency of the printing user's identity, implementing a "two-factor" authentication mode of U-KEY + PIN code. Compared to existing facial recognition authentication, this method is more accurate and convenient. Compared to card swiping authentication, the presence of a PIN code significantly reduces the risk of hardware theft. Compared to "username + password" authentication, this method offers higher security. Furthermore, the cloud server platform enables shared scheduling of resources across multiple printer devices, improving printing efficiency and equipment utilization compared to a single printing device.
[0069] In this embodiment, the printing terminal is also used to: encrypt the file to be printed using the hardware code of the U-KEY device, and upload the encrypted print file to the cloud server platform.
[0070] The cloud server platform is also used to: decrypt received print files, split and schedule files according to the status of the print resource pool and file attributes, and distribute the print file queue to each printer.
[0071] Specifically, the printing terminal also uses the hardware code of the U-KEY device to encrypt the documents to be printed, and the cloud server platform uses the same hardware code to decrypt the documents. The U-KEY hardware code is used to encrypt and decrypt the printed documents, which greatly improves the security of the encryption method and the security of the transmission of printed documents compared to simple software encryption.
[0072] In this embodiment, the printing terminal and printer are also used to: after receiving the information that identity authentication has failed from the cloud server platform, display a prompt to the user that the PIN code was entered incorrectly and to re-enter the PIN code; if the PIN code is entered incorrectly a set number of times, the PIN code will be temporarily locked for a set period of time.
[0073] Specifically, by limiting the number of times a user can enter a PIN password and temporarily locking the PIN code when there are too many incorrect entries, the risk of U-KEY hardware devices being stolen can be reduced and the security of cloud printing can be improved. Preferably, the limit for the number of consecutive incorrect PIN code entries is 3 times, and the duration of temporarily locking the PIN code after multiple consecutive entries is preferably 30 minutes.
[0074] In this embodiment, the printing terminal and printer send the PIN code to the cloud server platform for identity authentication, and also send the key information stored in the U-KEY device to the cloud server platform; the cloud server platform authenticates the key information at the same time as authenticating the PIN code. The key information includes the U-KEY device authentication key and the user key.
[0075] Specifically, the printing terminal and printer share a U-KEY + PIN code mode for identity authentication. During identity authentication, the key information stored in the U-KEY and the user's identity information are both authenticated on the identity authentication server, thereby improving the security of identity authentication during the user's printing process.
[0076] In this embodiment, the printer is also used to: return the printing status to the cloud server platform after printing is completed;
[0077] The cloud server platform generates a print log after receiving the print status returned by the printer.
[0078] Specifically, the identity authentication server records detailed logs of print jobs, making it easier for administrators to audit and manage print operations.
[0079] Example 2
[0080] like Figure 3 As shown, this embodiment proposes a cloud secure printing method based on the cloud secure printing system of Embodiment 1. The method includes:
[0081] S1: After recognizing the inserted U-KEY device, the printing terminal displays a PIN code input window to the user and sends the PIN code entered by the user to the cloud server platform for identity authentication.
[0082] S2: The cloud server platform authenticates the user's identity based on the PIN code uploaded by the printing terminal, and sends authentication success information to the printing terminal after successful authentication;
[0083] S3: After receiving the authentication information, the printing terminal initiates a print job request to the cloud server platform and uploads the documents to be printed to the cloud server platform.
[0084] S4: After receiving the file uploaded by the printing terminal, the cloud server platform generates a corresponding print file queue;
[0085] S5: After recognizing the inserted U-KEY device, any printer in the printer resource pool will display a PIN code input window to the user and send the PIN code entered by the user to the cloud server platform for identity authentication.
[0086] S6: The cloud server platform authenticates the user's identity based on the PIN code uploaded by the printer, and sends authentication information to the printer after successful authentication;
[0087] S7: After receiving the authentication information, the printer requests the corresponding print list from the cloud server platform;
[0088] S8: The cloud server platform sends the corresponding print file queue to the printer;
[0089] S9: The printer will print after receiving the print file queue from the cloud platform.
[0090] In this implementation, the process of the printing terminal uploading the file to be printed to the cloud server platform includes: the printing terminal encrypting the file to be printed using the hardware code of the U-KEY device, and uploading the encrypted print file to the cloud server platform;
[0091] After receiving the file uploaded by the printing terminal, the cloud server platform generates a corresponding print file queue. Specifically, the cloud server platform decrypts the received print file, splits and schedules the file according to the status of the print resource pool and the file attributes, and then distributes the print file queue to each printer.
[0092] In a specific example, such as Figure 4 As shown, the user inserts a key into the terminal to authenticate their identity on the cloud printing system client. After successful authentication, the user selects a file to apply for and submit a print job. The encrypted file and related information are then submitted to the printing service server. The user inserts a USB key for identification into the printer resource pool. Once the printer recognizes the USB key, a PIN code input window pops up on the operation screen. The user enters the PIN code and submits it. Authentication is performed by the server providing identity verification to ensure identity consistency. If an incorrect PIN is entered, the user is prompted to re-enter it. If three consecutive incorrect entries are made, the key is temporarily locked for 30 minutes. When the PIN is entered correctly, the printer requests the user's print list from the print server. The cloud printing management center server splits and schedules the files based on the print resource pool status and the files, and then distributes the print files to each printer. After printing is complete, the user retrieves and organizes the print files, removes the USB key, and the printer operation interface is locked.
[0093] The cloud printing system and method of the present invention have the following advantages compared with existing printing systems:
[0094] (1) The "two-factor" authentication method of UKEY + PIN code is more accurate and easier to implement than facial recognition authentication; compared with card swiping authentication, the presence of PIN code greatly reduces the risk of hardware device theft; compared with "username + password" authentication, it is more secure.
[0095] (2) Using UKEY hardware code to encrypt and decrypt print files greatly improves encryption security and print file transmission security compared to simple software encryption.
[0096] (3) It enables the sharing and scheduling of resources of multiple printing devices, which improves printing efficiency and equipment utilization compared to a single printing device;
[0097] (4) Detailed logs are recorded for printing tasks, making it easier to audit and manage printing.
[0098] The various embodiments of the present invention have been described above. These descriptions are exemplary and not exhaustive, nor are they limited to the disclosed embodiments. Many modifications and variations will be apparent to those skilled in the art without departing from the scope and spirit of the described embodiments.
Claims
1. A cloud-secure printing system, characterized in that, include: The system includes a printing terminal, a cloud server platform, a printer resource pool, and a U-KEY device, wherein the printing terminal and the printer resource pool are respectively connected to the cloud server platform. The printer resource pool includes multiple printers, and both the printing terminal and the printer have a U-KEY interface. The printing terminal is used for: After recognizing the inserted U-KEY device, a PIN code input window is displayed to the user, and the PIN code entered by the user is sent to the cloud server platform for identity authentication. In addition, after receiving the information that the identity authentication has been passed, the system initiates a print task request to the cloud server platform and uploads the documents to be printed to the cloud server platform; Any printer in the printer resource pool is used for: After recognizing the inserted U-KEY device, a PIN code input window is displayed to the user, and the PIN code entered by the user is sent to the cloud server platform for identity authentication. Furthermore, after receiving the authentication information, the system requests the corresponding print list from the cloud server platform and prints the files after receiving the print file queue from the cloud server platform. The cloud server platform is used for: The user's identity is authenticated based on the PIN code uploaded by the printing terminal and the printer resource pool; After receiving the file uploaded by the printing terminal, a corresponding print file queue is generated; Furthermore, once the printer identity authentication is successful after inserting the U-KEY device, a corresponding print file queue is sent to the printer.
2. The cloud-secure printing system according to claim 1, characterized in that, The printing terminal is also used to: encrypt the file to be printed using the hardware code of the U-KEY device, and upload the encrypted print file to the cloud server platform.
3. The cloud-secure printing system according to claim 2, characterized in that, The cloud server platform is also used to: decrypt the received print files, split and schedule files according to the status of the printer resource pool and file attributes, and distribute the print file queue to each printer.
4. The cloud-secure printing system according to claim 1, characterized in that, The printing terminal and the printer are also used to: after receiving the identity authentication failure information issued by the cloud server platform, display a prompt to the user that the PIN code is entered incorrectly and to re-enter the PIN code; if the PIN code is entered incorrectly for a set number of consecutive times, the PIN code input will be temporarily locked for a set period of time.
5. The cloud-secure printing system according to claim 1, characterized in that, While sending the PIN code to the cloud server platform for identity authentication, the printing terminal and the printer also send the key information stored in the U-KEY device to the cloud server platform. The cloud server platform authenticates the key information along with the PIN code.
6. The cloud-secure printing system according to claim 5, characterized in that, The key information includes the U-KEY device authentication key and the user key.
7. The cloud-secure printing system according to claim 1, characterized in that, The printer is also used to: return the printing status to the cloud server platform after printing is completed; The cloud server platform generates a print log after receiving the print status returned by the printer.
8. The cloud-secure printing system according to claim 1, characterized in that, The cloud server platform includes a cloud print management center server, an identity authentication server, and a print audit server; The cloud printing management center server is used to monitor the status of the printer resource pool and the decomposition and scheduling of printing tasks. The identity authentication server is used to authenticate the user's identity based on the PIN code uploaded by the printing terminal and the printer resource pool; The print audit server is used to generate print logs and provide print log query services.
9. A cloud-secure printing method, based on the cloud-secure printing system according to any one of claims 1-8, characterized in that, The method includes: After recognizing the inserted U-KEY device, the printing terminal displays a PIN code input window to the user and sends the PIN code entered by the user to the cloud server platform for identity authentication. The cloud server platform authenticates the user's identity based on the PIN code uploaded by the printing terminal, and sends authentication success information to the printing terminal after successful authentication. After receiving the authentication information, the printing terminal initiates a print task request to the cloud server platform and uploads the document to be printed to the cloud server platform. After receiving the file uploaded by the printing terminal, the cloud server platform generates a corresponding print file queue. After recognizing the inserted U-KEY device, any printer in the printer resource pool will display a PIN code input window to the user and send the PIN code entered by the user to the cloud server platform for identity authentication. The cloud server platform authenticates the user's identity based on the PIN code uploaded by the printer, and sends authentication success information to the printer after successful authentication. After receiving the authentication information, the printer requests the corresponding print list from the cloud server platform. The cloud server platform sends the corresponding print file queue to the printer; The printer receives the print file queue from the cloud server platform and then prints.
10. The cloud-secure printing method according to claim 9, characterized in that, Also includes: The printing terminal uses the hardware code of the U-KEY device to encrypt the file to be printed, and uploads the encrypted print file to the cloud server platform; The cloud server platform decrypts the received print files, splits and schedules the files according to the status of the printer resource pool and file attributes, and distributes the print file queue to each printer.