A digital token management system and method

By designing a digital token management system, using front-end devices and back-end processing devices, and combining mechanical devices to click on digital tokens to obtain passwords, the problem of non-automation of digital token management in the existing technology is solved, and efficient and secure digital token management is achieved.

CN115758473BActive Publication Date: 2025-05-27CHINA CONSTRUCTION BANK
View PDF 2 Cites 0 Cited by

Patent Information

Application Number
CN202211365966.6
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-10-31
Publication Date
2025-05-27
Estimated Expiration
2042-10-31

AI Technical Summary

Technical Problem

The existing digital token management methods cannot realize the automated management of digital tokens, resulting in problems such as waste of manpower, loss of tokens and misuse of tokens.

Method used

By designing a digital token management system, the front-end and back-end processing devices can be used to realize the automated management of digital tokens. The specific steps include the user entering the request and authorized information, generating a token permission request and a token password request, and clicking on a digital token through a mechanical device to obtain the password, and finally parsing the image to obtain the password and the valid time.

Benefits of technology

It realizes automated management of digital tokens, reduces manual intervention, avoids token loss and misuse, and improves work efficiency.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN115758473B_ABST
    Figure CN115758473B_ABST
Patent Text Reader

Abstract

The present invention provides a digital token management system and method. The system includes: a front-end device, a back-end processing device, and a mechanical device. The front-end device receives a token permission request from a user, records the permission after approval. The front-end device receives a token password request from the user, and the back-end processing device compares the token password request with the recorded permission information. If the comparison is successful, the mechanical device clicks on the digital token while collecting an image of the digital token displaying the password. The back-end processing device analyzes the password and the front-end device displays the password. In this solution, the digital token is pre-stored in a storage box. By means of an online permission application and an online password acquisition application, the password of the digital token is applied for. After the application is approved, the mechanical device clicks on the digital token, and the obtained password is fed back to the requester. The application of the digital token and the acquisition of the password are fully automated without manual intervention, achieving the purpose of automated management of digital tokens.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the field of information security technology, and in particular, to a digital token management system and method. Background Art

[0002] Currently, as a physical authentication method, digital tokens are particularly widely used in government affairs and banking with high requirements for confidentiality and permission management. When grass-roots personnel perform some classified or high-risk operations, they need to apply for authorized operations. At this time, they need to ask the authorizer for a digital token for authorization. However, as a physical device, the authorizer cannot guarantee to carry it with them at all times, resulting in inability to authorize in time and affecting work efficiency. Therefore, it is necessary to uniformly manage digital tokens.

[0003] The existing management method is to add a token administrator to keep all digital tokens of the authorizers and be in the same office environment as the operators. After the authorizer approves online, the operator applies for and receives the digital token from the person offline according to the approval record, and returns the token to the token administrator after use, which has problems such as waste of manpower, token loss, and token misuse.

[0004] In summary, the existing digital token management methods cannot achieve the automated management of digital tokens. Summary of the Invention

[0005] In view of this, embodiments of the present invention provide a digital token management system and method to achieve the purpose of automated management of digital tokens.

[0006] To achieve the above object, embodiments of the present invention provide the following technical solutions:

[0007] A first aspect of an embodiment of the present invention discloses a digital token management system, including:

[0008] A front-end device, configured to generate a token permission request for applying for the use permission of the digital token corresponding to the authorizer based on the name of the requester, the name of the authorizer, and the usage period input by the user, send the token permission request to a background processing device for verification, and after the verification passes, generate a prompt message for notifying the authorizer to approve the token permission request; receive the name of the authorizer input by the user, obtain the name of the currently logged-in user as the name of the requester, and generate a token password request for applying for the password of the digital token corresponding to the authorizer based on the name of the authorizer, the name of the requester, and the current time, and send the token password request to the background processing device for verification; receive and display the password and the password validity period returned by the background processing device; wherein, each authorizer has only one corresponding digital token;

[0009] The background processing device is used to, when receiving the token permission request, verify whether the requester and the authorizer conform to a preset corresponding relationship. If so, the verification passes. When the token permission request is approved, record the permission information that the requester has the right to obtain the digital token password corresponding to the authorizer within the usage period. When receiving the token password request, verify whether the requester has the right to obtain the digital token password corresponding to the authorizer at the current time. If so, generate a control instruction and send it to the mechanical device. When receiving the image returned by the mechanical device, analyze the image to obtain the password and password validity period displayed on the digital token, and send the password and the password validity period to the front-end device for display;

[0010] The mechanical device is used to receive the control instruction and, based on the control instruction, click the button on the digital token corresponding to the authorizer pre-stored in the storage box, and collect the image when the digital token displays the password, and send the image to the background processing device.

[0011] Preferably, the front-end device includes:

[0012] A token permission request module, which is used to respond to the user's permission request operation, generate and display a pre-set first page template, generate a token permission request for applying for the use permission of the digital token corresponding to the authorizer based on the name of the requester, the name of the authorizer, and the usage period input by the user in the first page template, and send the token permission request to the background processing device for verification;

[0013] An approval module, which is used to, after the token permission request is verified to pass, display an approval list including the token permission request, and receive the approval instruction input by the authorizer for the token permission request;

[0014] A notification module, which is used to notify the authorizer to approve the token permission request. If the approval passes, notify the requester that the token permission request has been approved, and the requester has the right to use the digital token corresponding to the authorizer within the time period. Otherwise, generate a prompt message for notifying the requester that the token permission request has not been approved;

[0015] A token password request module, which is used to generate and display a pre-set second page template in response to the password request operation of the requester, receive the name of the authorized person entered by the requester in the second page template, obtain the name of the currently logged-in user as the name of the requester, generate a token password request for applying to obtain the password of the digital token corresponding to the authorized person based on the name of the authorized person, the name of the requester, and the current time, and send the token password request to the background processing device for verification;

[0016] A display module, which is used to receive and display the password and the password validity period returned by the background processing device.

[0017] Preferably, the background processing device includes:

[0018] A first verification module, which is used to, when receiving the token permission request, verify whether the requester and the authorized person conform to the corresponding relationship according to the corresponding relationship between the requester and the authorized person pre-saved in the storage module. If so, the verification passes;

[0019] The storage module is used to save the corresponding relationship between the requester and the authorized person; when the token permission request is approved, record the permission information that the requester has the right to obtain the digital token password corresponding to the authorized person within the usage period; record the coordinate information of each digital token placed in the storage box;

[0020] A second verification module, which is used to, when receiving the token password request, verify whether the requester has the right to obtain the digital token password corresponding to the authorized person at the current time based on the permission information recorded in the storage module. If so, generate a control instruction by the mechanical control module and send it to the mechanical equipment;

[0021] The mechanical control module is used to find the coordinate information of the digital token corresponding to the authorized person pre-placed in the storage box from the storage module, generate a control instruction based on the coordinate information and send it to the mechanical equipment;

[0022] An image analysis module, which is used to, when receiving the image of the digital token displaying the password collected and returned by the mechanical equipment, analyze the image to obtain the password and the password validity period displayed on the digital token, and send the password and the password validity period to the front-end device for display.

[0023] Preferably, the image analysis module includes:

[0024] A receiving unit, which is used to receive the image of the digital token displaying the password collected and returned by the mechanical equipment;

[0025] A conversion unit for calculating a weighted average of the RGB three-channel pixel values in the image to obtain a grayscale image, and converting the grayscale image into a black-and-white binary image using the Otsu algorithm;

[0026] An extraction unit for performing pixel dilation on the binary image and cropping out the image of the display panel part of the digital token in the binary image to obtain a valid image;

[0027] A correction unit for correcting the valid image into a rectangle using a perspective transformation matrix;

[0028] A segmentation unit for segmenting the corrected valid image into a password image and a password remaining time image;

[0029] An identification unit for using an image recognition library in the python software library to identify the password image and the password remaining time image, and obtaining the password and the password valid time displayed on the digital token;

[0030] A sending unit for sending the password and the password valid time to the front-end device for display.

[0031] Preferably, the image parsing module further includes:

[0032] A first judgment unit for obtaining the previous password of the digital token and the password valid time of the previous password from the storage unit, and judging whether the password is the same as the previous password;

[0033] A second judgment unit for comparing the password valid time with the password valid time of the previous password when the password is the same as the previous password;

[0034] A third judgment unit for, when the password is the same as the previous password and the password valid time is less than the password valid time of the previous password, obtaining the expiration time point of the previous password based on the time point when the previous password was obtained from the storage unit and the password valid time of the previous password, and judging whether the time point when the password was obtained is after the expiration time point of the previous password;

[0035] The storage unit for storing the previous password, the password valid time of the previous password, and the time point when the previous password was obtained, and updating the previous password, the password valid time of the previous password, and the time point when the previous password was obtained to the password, the password valid time, and the time point when the password was obtained after the sending unit sends the password and the password valid time to the front-end device for display;

[0036] The sending unit is further configured to:

[0037] When the password is inconsistent with the previous password, the password is sent to the front-end device, and the front-end device displays the password, the password validity time and the text information indicating that the password is successfully obtained; when the password is consistent with the previous password, and the password validity time is greater than or equal to the password validity time of the previous password, the password is sent to the front-end device, and the front-end device displays the password, the password validity time and the text information indicating that the password is successfully obtained; when the password is consistent with the previous password, the password validity time is less than the password validity time of the previous password, and the time point of password acquisition is after the expiration time point of the previous password, the password is sent to the front-end device, and the front-end device displays the password, the password validity time and the text information indicating that the password is successfully obtained; when the password is consistent with the previous password, the password validity time is less than the password validity time of the previous password, and the time point of password acquisition is before the expiration time point of the previous password, the front-end device displays the text information indicating that the password acquisition failed.

[0038] Preferably, the storage box is a rectangular parallelepiped structure with an open upper surface, and the interior of the storage box is divided into storage areas with uniform length and width, wherein each storage area corresponds to unique coordinate information, each storage area stores a digital token, and the background processing device records the coordinate information of each digital token stored in the storage box;

[0039] The mechanical equipment includes:

[0040] A longitudinal transmission rod (1), a vertical transmission rod (2), a transverse transmission rod (3), and a clicking and camera device (4), wherein the longitudinal transmission rod (1), the vertical transmission rod (2), and the transverse transmission rod (3) are respectively connected to a stepping motor, and the stepping motor is connected to the background processing device;

[0041] The longitudinal transmission rod (1) is arranged on any edge of the storage box, the vertical transmission rod (2) is connected to the longitudinal transmission rod (1), the transverse transmission rod (3) is connected to the vertical transmission rod (2), and the clicking and camera device (4) is connected to the transverse transmission rod (3);

[0042] The mechanical equipment is specifically used for:

[0043] The stepper motor receives the control instruction, drives the longitudinal transmission rod (1) and the transverse transmission rod (3), aligns the clicking and imaging device (4) with the digital token, drives the vertical transmission rod (2), causes the clicking and imaging device (4) to click the button on the digital token and collect an image of the digital token, and sends the image to the background processing device.

[0044] A second aspect of an embodiment of the present invention discloses a digital token management method, the method comprising:

[0045] Based on the name of the requester, the name of the authorizer, and the usage period input by the user, generate a token permission request for applying for the usage permission of the digital token corresponding to the authorizer;

[0046] Verify the token permission request, and if the requester and the authorizer conform to a preset corresponding relationship, generate a prompt message for notifying the authorizer to approve the token permission request;

[0047] When the token permission request is approved, record the permission information that the requester has the right to obtain the digital token password corresponding to the authorizer during the usage period;

[0048] Obtain the name of the currently logged-in user as the name of the requester, and based on the name of the authorizer, the name of the requester, and the current time, generate a token password request for applying to obtain the password of the digital token corresponding to the authorizer;

[0049] Verify whether the requester has the permission to obtain the digital token password corresponding to the authorizer at the current time. If so, generate a control instruction to control the mechanical device to click the button on the digital token corresponding to the authorizer pre-stored in the storage box, and collect an image when the digital token displays the password;

[0050] Analyze the image to obtain and display the password and password validity period displayed on the digital token.

[0051] Preferably, the generating a token permission request for applying for the usage permission of the digital token corresponding to the authorizer based on the name of the requester, the name of the authorizer, and the usage period input by the user includes:

[0052] In response to the user's permission request operation, generate and display a pre-set first page template, and based on the name of the requester, the name of the authorizer, and the usage period input by the user in the first page template, generate a token permission request for applying for the usage permission of the digital token corresponding to the authorizer;

[0053] Obtaining the name of the currently logged-in user and using it as the name of the requester, and generating a token password request for applying to obtain the password of the digital token corresponding to the authorizer based on the name of the authorizer, the name of the requester, and the current time, includes:

[0054] In response to the password request operation of the requester, generating and displaying a pre-set second page template, obtaining the name of the currently logged-in user and using it as the name of the requester based on the name of the authorizer entered by the requester in the second page template, and generating a token password request for applying to obtain the password of the digital token corresponding to the authorizer based on the name of the authorizer, the name of the requester, and the current time.

[0055] Preferably, verifying whether the requester has the permission to obtain the password of the digital token corresponding to the authorizer at the current time. If so, generating a control instruction to control the mechanical device to click the button on the digital token corresponding to the authorizer pre-stored in the storage box, and collecting the image when the digital token displays the password, includes:

[0056] Verifying whether the requester has the permission to obtain the password of the digital token corresponding to the authorizer at the current time. If so, finding the coordinate information of the digital token corresponding to the authorizer pre-stored in the storage box, and based on the coordinate information, generating a control instruction to control the mechanical device to click the button on the digital token corresponding to the authorizer pre-stored in the storage box, and collecting the image when the digital token displays the password.

[0057] Preferably, parsing the image to obtain and display the password and password validity period displayed on the digital token, includes:

[0058] Calculating the weighted average of the RGB three-channel pixel values in the image to obtain a grayscale image, and using the Otsu algorithm to convert the grayscale image into a black-and-white binary image;

[0059] Performing pixel dilation on the binary image, and cropping out the image of the display panel part of the digital token in the binary image to obtain a valid image;

[0060] Using a perspective transformation matrix to correct the valid image into a rectangle;

[0061] Dividing the corrected valid image into a password image and a password remaining time image;

[0062] Using an image recognition library in the python software library to recognize the password image and the password remaining time image, and obtaining the password and password validity period displayed on the digital token;

[0063] Displaying the password and the password validity period.

[0064] Based on the digital token management system and method provided by the above embodiments of the present invention, the system includes a front-end device, which is configured to generate a token permission request for applying for the digital token usage permission corresponding to the authorized person based on the name of the requester, the name of the authorized person, and the usage period input by the user, send the token permission request to the background processing device for verification, and after the verification passes, generate a prompt message for notifying the authorized person to approve the token permission request; receive the name of the authorized person input by the user, obtain the name of the currently logged-in user as the name of the requester, and generate a token password request for applying for the password of the digital token corresponding to the authorized person based on the name of the authorized person, the name of the requester, and the current time, and send the token password request to the background processing device for verification; receive and display the password and the password validity period returned by the background processing device; wherein, each authorized person has only one corresponding digital token; the background processing device is configured to, when receiving the token permission request, verify whether the requester and the authorized person conform to a preset corresponding relationship, and if so, the verification passes; when the token permission request is approved, record the permission information that the requester has the right to obtain the password of the digital token corresponding to the authorized person within the usage period; when receiving the token password request, verify whether the requester has the right to obtain the password of the digital token corresponding to the authorized person at the current time, and if so, generate a control instruction and send it to the mechanical device; when receiving the image returned by the mechanical device, parse the image to obtain the password and the password validity period displayed on the digital token, and send the password and the password validity period to the front-end device for display; the mechanical device is configured to receive the control instruction and based on the control instruction, click the button on the digital token corresponding to the authorized person pre-stored in the storage box, and collect the image when the digital token displays the password, and send the image to the background processing device. In this solution, the digital token is pre-stored in the storage box, and the password of the digital token is applied for through the online permission application and the online password acquisition application. After the application passes, the mechanical device clicks the digital token, and the obtained password is fed back to the requester. The application of the digital token and the acquisition of the password are fully automated without manual intervention, achieving the purpose of automated management of the digital token. Description of the Drawings

[0065] In order to more clearly illustrate the technical solutions in the embodiments of the present invention or the prior art, the following will briefly introduce the drawings required for the description of the embodiments or the prior art. Obviously, the drawings in the following description are only the embodiments of the present invention. For those of ordinary skill in the art, other drawings can be obtained based on the provided drawings without creative efforts.

[0066] Figure 1 It is a structural diagram of a digital token management system disclosed in an embodiment of the present invention;

[0067] Figure 2 It is a schematic diagram of a token permission application page template disclosed in an embodiment of the present invention;

[0068] Figure 3 It is an example diagram of the corresponding relationship between a requester and an authorizer disclosed in an embodiment of the present invention;

[0069] Figure 4 It is an example diagram of an approval list disclosed in an embodiment of the present invention;

[0070] Figure 5 It is a schematic diagram of a token password request page template disclosed in an embodiment of the present invention;

[0071] Figure 6 It is an example diagram of permission verification disclosed in an embodiment of the present invention;

[0072] Figure 7 It is a top view of a storage box disclosed in an embodiment of the present invention;

[0073] Figure 8 It is a structural diagram of a digital token disclosed in an embodiment of the present invention;

[0074] Figure 9 It is a structural diagram of a mechanical device disclosed in an embodiment of the present invention;

[0075] Figure 10 It is a structural diagram of an image parsing module disclosed in an embodiment of the present invention;

[0076] Figure 11 It is a digital token management method disclosed in an embodiment of the present invention. Detailed implementation manners

[0077] Next, the technical solutions in the embodiments of the present invention will be clearly and completely described in conjunction with the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only a part of the embodiments of the present invention, rather than all the embodiments. All other embodiments obtained by those of ordinary skill in the art based on the embodiments of the present invention without creative efforts shall fall within the protection scope of the present invention.

[0078] In this application, the terms "comprise", "include" or any other variants thereof are intended to cover non-exclusive inclusion, such that a process, method, article or device comprising a series of elements includes not only those elements but also other elements not expressly listed, or elements inherent to such process, method, article or device. Without further limitation, an element defined by the statement "comprising one..." does not exclude the presence of additional identical elements in the process, method, article or device comprising the said element.

[0079] As can be seen from the background art, the existing digital token management means are managed manually, lacking automation.

[0080] Therefore, the embodiments of the present invention disclose a digital token management system and method. The digital tokens of each authorized person are stored in storage boxes divided into uniform interval sizes. The system receives a request from a requester for the usage permission of a digital token through the front-end page of the system. When the requester obtains the usage permission of a certain digital token, the requester can request to obtain the dynamic password of the digital token through the front-end page of the system. When the system receives the request for obtaining the password and verifies that the requester has the permission to obtain the dynamic password of the digital token at the current time, a mechanical device is used to click the button on the digital token, and the password and password validity period on the digital token are obtained and displayed, achieving the purpose of automated management of digital tokens.

[0081] As Figure 1 shown, it is an architecture diagram of a digital token management system disclosed in an embodiment of the present invention. The system includes: a front-end device 10, a background processing device 20, and a mechanical device 30.

[0082] Specifically, the background processing device 20 is communicatively connected to the front-end device 10 and the mechanical device 30 respectively. Among them, the front-end device 10 includes: a token permission request module 11, a token password request module 12, an approval module 13, a display module 14, and a notification module 15. The background processing device 20 includes: a first verification module 21, a second verification module 22, a storage module 23, a mechanical control module 24, and an image analysis module 25. The mechanical device 30 includes: a transmission device 31 and an image acquisition device 32.

[0083] As Figure 2 shown, it is a schematic diagram of a token permission application page template disclosed in an embodiment of the present invention, which includes: a requester name input box, an authorized person name input box, a usage period input box, and an application description input box.

[0084] The token permission request module 11 displays in response to a user's permission request operation Figure 2The page shown is received, and the name of the requester, the name of the authorizer, and the usage period input by the user are received, a token permission request for applying for the digital token usage permission corresponding to the authorizer is generated, and the token permission request is sent to the first verification module 21.

[0085] Among them, the application description is a selectable input item. The user can input remarks in the application description input box according to the actual situation, or can not input content.

[0086] It should be noted that each authorizer has only one corresponding digital token. In the token permission application, the user currently logged in to the system can initiate a token permission request for himself or other requesters.

[0087] Preferably, Figure 2 On the page shown, the input box for the authorizer's name and the input box for the requester's name are drop-down selection boxes, and the user selects the corresponding authorizer's name or requester's name from the drop-down list.

[0088] After receiving the token permission request, the first verification module 21 compares whether the requester and the authorizer in the token permission request conform to the corresponding relationship pre-saved in the storage module 23. If so, the verification passes; otherwise, the verification fails.

[0089] It should be noted that in the actual organizational structure, there is a many-to-many corresponding relationship between the requester and the authorizer, and the authorizer can only authorize the token permission requests of the corresponding requesters.

[0090] To more conveniently understand the above-mentioned corresponding relationship between the requester and the authorizer, as Figure 3 shown, it is an example diagram of the corresponding relationship between the requester and the authorizer disclosed in the present invention.

[0091] Specifically, the requesters corresponding to authorizer A are requesters 1 to 4. Therefore, authorizer A can authorize the token permission requests of requesters 1 to 4.

[0092] The requesters corresponding to authorizer B are requesters 3 to 6. Therefore, authorizer B can authorize the token permission requests of requesters 3 to 6.

[0093] The requesters corresponding to authorizer C are requesters 5 to 8. Therefore, authorizer C can authorize the token permission requests of requesters 5 to 8.

[0094] The requesters corresponding to authorizer D are requesters n and m. Therefore, authorizer D can authorize the token permission requests of requesters m and n.

[0095] After the verification of the token permission request passes, the approval module 13 generates an approval list including the token permission request, and displays the approval list to the authorizer corresponding to the request, and the authorizer approves the token permission requests in the approval list.

[0096] Preferably, if the verification of the token permission request fails, the notification module 15 generates and displays a prompt message indicating verification failure.

[0097] As Figure 4 shown, it is an example diagram of an approval list disclosed in an embodiment of the present invention.

[0098] Among them, Figure 4 The left half shows the specific request information of the token permission requests of each requester, and there are "Pass" and "Fail" buttons on the right side of each request information.

[0099] When the authorizer clicks the "Pass" button on the right side of one of the request information, the token permission request corresponding to the request information is approved. If the "Fail" button is clicked, the token permission request corresponding to the request information is not approved.

[0100] After the token permission request is approved, based on the name of the requester, the name of the authorizer, and the usage period in the token permission request, the storage module 23 records the permission information indicating that the requester can obtain the digital token password corresponding to the authorizer during the usage period.

[0101] Preferably, after the approval passes, the notification module 15 generates and displays a prompt message indicating approval. If the approval fails, the notification module 15 generates and displays a prompt message indicating disapproval.

[0102] The process of the digital token management system obtaining the digital token password of the authorizer will be described in detail below.

[0103] As Figure 5 shown, it is a schematic diagram of a token password request page template disclosed in an embodiment of the present invention, which includes an input box for the name of the authorizer.

[0104] In response to the password acquisition request operation of the requester, the token password request module 12 generates and displays Figure 5 the page shown, receives the name of the authorizer input by the requester, obtains the name of the currently logged-in user as the name of the requester, generates a token password request based on the name of the requester, the name of the authorizer, and the current time, and sends the token password request to the second verification module 22 for verification.

[0105] It should be noted that since there cannot be a situation of proxy application during the process of applying for a token password, the token password request module 12 automatically obtains the name of the currently logged-in user and uses the name of the currently logged-in user as the name of the requester, without the need for the user to manually input.

[0106] When the second verification module 22 receives a token password request, it verifies whether the requester has the permission to obtain the digital token password corresponding to the authorizer at the current time based on the token password request and the permission information recorded in the storage module 23.

[0107] For a clearer understanding of the above permission verification process, please refer to Figure 6 , which is an example diagram of permission verification disclosed in an embodiment of the present invention. Among them, multiple pieces of permission information are stored in the storage module 23, and each piece of permission information includes the name of the requester, the name of the authorizer, and the usage period.

[0108] In a specific implementation, after obtaining the name of the requester, the name of the authorizer, and the current time in the token password request, it is searched in the storage module 23 whether there is permission information that corresponds one-to-one with the token password request and whose usage period includes the current time. If so, the verification passes; if not, the verification fails.

[0109] For example, the token password request includes: requester X, authorizer Y, and current time T. Only when the permission information found is: requester X, authorizer Y, usage period T 1 (including T), can the verification pass.

[0110] If the permission verification fails, the notification module 15 generates and displays a prompt message for prompting the user that the password acquisition fails.

[0111] If the permission verification passes, the mechanical control module 24 generates a control instruction and sends it to the mechanical device 30.

[0112] In a specific implementation, the mechanical control module 24 searches in the storage module for the coordinate information of the digital token corresponding to the authorizer pre-stored in the storage box, generates a control instruction based on the coordinate information, and sends it to the mechanical device 30.

[0113] As Figure 7 shown, it is a top view of a storage box disclosed in an embodiment of the present invention.

[0114] Specifically, the storage box is a cuboid structure with an open upper surface. The interior of the storage box is divided into unified storage intervals with a length of L and a width of d. Among them, each storage interval corresponds to unique coordinate information, and each storage interval stores a digital token. The storage module 23 records the coordinate information of each digital token stored in the storage box.

[0115] For example, Figure 7 If the token α in Figure 7 is stored in the second row and the second column, then its coordinates are (2, 2), and the storage module 23 records that the token α is stored in the storage box at the coordinates (2, 2).

[0116] After the transmission device 31 in the mechanical device 30 receives the control instruction, it clicks the button on the digital token corresponding to the authorized person pre-stored in the storage box, and the image acquisition device 32 acquires the image when the digital token displays the password, and sends the image to the image analysis module 25.

[0117] To facilitate the understanding of the process of clicking the digital token button to acquire the password image, as Figure 8 shown, it is a structural diagram of a digital token disclosed in an embodiment of the present invention.

[0118] Specifically, in the figure, 1 is the panel display part, which is divided into two parts 3 and 4. Among them, 3 is the part for displaying the available time of the password. The password effective time of the token shown in the figure is 30s, which is represented by a total of 6 squares. Currently, there are 3 remaining squares, indicating that there are still 15s of effective time left. 4 is the part for displaying the dynamic password. The dynamic password is a group of random numbers with a fixed number of digits. The current dynamic password is 123456.

[0119] In the figure, 2 is the panel operation part, which is a button with a determined shape and size. After pressing it, a random dynamic password will be generated on the panel and the remaining effective time of the password will be updated. In particular, when the previous password effective time has not expired, clicking this button will only update the remaining effective time and will not update the dynamic password.

[0120] After the image analysis module 25 receives the image of the digital token displaying the password acquired and returned by the image acquisition device 32, it analyzes the image to obtain the password and the password effective time displayed on the digital token, and sends the password and the password effective time to the display module 14 for display.

[0121] Based on the digital token management system disclosed in the above embodiment of the present invention, in this solution, the digital token is pre-stored in the storage box, and the password of the digital token is applied for and obtained through the methods of online permission application and online password acquisition application. When the application is approved, the mechanical device clicks the digital token and feeds back the obtained password to the requester. The application of the digital token and the acquisition of the password are fully automated without manual intervention, achieving the purpose of automated management of the digital token.

[0122] Corresponding to the mechanical device 30 in the digital token management system disclosed in the above embodiment of the present invention, as Figure 9As shown in the figure, it is a structural diagram of a mechanical device disclosed in an embodiment of the present invention. The mechanical device includes: a longitudinal transmission rod 1, a vertical transmission rod 2, a transverse transmission rod 3, a clicking and imaging device 4. Among them, the longitudinal transmission rod 1, the vertical transmission rod 2, and the transverse transmission rod 3 correspond to the transmission device 31 in the mechanical device 30, and the clicking and imaging device 4 corresponds to the image acquisition device 32 in the mechanical device 30.

[0123] Specifically, the longitudinal transmission rod 1, the vertical transmission rod 2, and the transverse transmission rod 3 are each connected to a different stepper motor, and each stepper motor is connected to the mechanical control module 24.

[0124] The longitudinal transmission rod 1 is arranged on any edge of the storage box. The vertical transmission rod 2 is connected to the longitudinal transmission rod 1, the transverse transmission rod 3 is connected to the vertical transmission rod 2, and the clicking and imaging device 4 is connected to the transverse transmission rod 3.

[0125] In a specific implementation, each stepper motor receives a control instruction sent by the mechanical control module 24. First, it drives the longitudinal transmission rod 1 and the transverse transmission rod 3 respectively to align the clicking and imaging device 4 with the target digital token. Then, it drives the vertical transmission rod 2 to move downward. At this time, the clicking and imaging device 4 also moves downward accordingly until it clicks on the button on the target digital token and acquires an image of the display panel of the digital token, and sends the image to the image analysis module 25.

[0126] Based on the structure of the mechanical device 30 disclosed in the above embodiment of the present invention, the process of generating a control signal for controlling the mechanical device 30 will be described in detail below.

[0127] Assume that the password of the current acquired token α is to be obtained. The token α is stored in the r-th row and the c-th column in the storage box. When the vertical transmission rod 2 stays at the initial position (0, 0), the horizontal and vertical distances (x, y) for moving the clicking and imaging device 4 to the storage position of the token α can be calculated by formula (1).

[0128]

[0129] Among them, d is the width of the storage interval in the storage box, L is the length of the storage interval in the storage box, Δx and Δy are the horizontal offset and the vertical offset respectively, which are obtained by actually measuring the relative position of the position of the digital token button and the storage interval.

[0130] If the ratio of the input pulse quantity of the stepper motor to the rotation angle of the motor is p1, and the ratio of the rotation angle of the stepper motor to the linear sliding distance on the transmission rod is P2, then the rectangular pulse width t required for inputting to move a unit distance s is: t = sρ2ρ1.

[0131] Then, the mechanical control module 24 moves the click and camera device 4 to the horizontal position (x, y) of the token storage space. If the distance that the click and camera device 4 needs to move down is z, the rectangular pulse widths output by the mechanical control module 24 to the three motors are as follows:

[0132]

[0133] Among them, t x is the rectangular pulse width required for the stepper motor driving the lateral transmission rod 2, t y is the rectangular pulse width required for the stepper motor driving the longitudinal transmission rod 1, and t z is the rectangular pulse width required for the stepper motor driving the vertical transmission rod 3.

[0134] Based on the mechanical equipment disclosed in the above embodiments of the present invention, in this solution, the digital token is pre-stored in the storage box, and the password of the digital token is applied for through the online permission application and the online password acquisition application. When the application is approved, the mechanical equipment clicks the digital token and feeds the obtained password back to the requester. The application of the digital token and the acquisition of the password are fully automated without manual intervention, achieving the purpose of automated management of the digital token.

[0135] Corresponding to the image parsing module 25 in the digital token management system disclosed in the above embodiments of the present invention, as Figure 10 shown, it is the structural diagram of an image parsing module disclosed in the embodiments of the present invention. The image parsing module includes: a receiving unit 101, a conversion unit 102, an extraction unit 103, a correction unit 104, a segmentation unit 105, an identification unit 106, and a sending unit 107.

[0136] Specifically, the receiving unit 101 is used to receive the image when the mechanical equipment collects and returns the displayed password of the digital token.

[0137] The conversion unit 102 is used to calculate the weighted average of the RGB three-channel pixel values in the image to obtain a grayscale image, and use the Otsu algorithm to convert the grayscale image into a black-and-white binary image.

[0138] In a specific implementation, the Otsu algorithm (OTSU) is used to calculate the inter-class variance between the foreground and the background, and the value at the maximum inter-class variance is used as the binary segmentation threshold to convert the grayscale image into a black-and-white binary image.

[0139] The extraction unit 103 is used to perform pixel dilation on the binary image, intercept the image of the display panel part of the digital token in the binary image, and obtain an effective image.

[0140] In a specific implementation, perform pixel dilation on the binary image to obtain the corresponding four corner coordinate positions of the token display panel part in the binary image, and intercept the image with the quadrilateral formed by the four corner coordinate positions to obtain the valid part of the image.

[0141] The correction unit 104 is used to correct the valid image into a rectangle by using the perspective transformation matrix.

[0142] In a specific implementation, since the obtained valid image may not be rectangular, it is necessary to use the perspective transformation matrix to transform it into a rectangle, and the transformation matrix is as follows:

[0143]

[0144] where u, v and x, y are the pixel coordinates before and after the perspective transformation respectively.

[0145] The segmentation unit 105 is used to segment the corrected valid image into a password image and a password remaining time image.

[0146] The recognition unit 106 is used to recognize the password image and the password remaining time image by using the image recognition library in the python software library, and obtain the password and the password valid time displayed on the digital token.

[0147] The sending unit 107 is used to send the password and the password valid time to the front-end device 10 for display.

[0148] It should be noted that the digital token belongs to a one-time password (OTP) system. Once the dynamic password is used, it will become invalid. However, the password generation method of the digital token depends on timestamp synchronization, that is, the next password will be generated after a certain period of time. Therefore, when the requester obtains the password, it is possible to obtain the invalid password that has been obtained and used by the previous requester, resulting in the misuse of the token.

[0149] In an embodiment, to solve the problem of token misuse, the image parsing module further includes:

[0150] The first judgment unit is used to obtain the previous password of the digital token and the password valid time of the previous password from the storage unit, and judge whether the current password is the same as the previous password;

[0151] The second judgment unit is used to compare the size of the current password valid time and the password valid time of the previous password when the current password is the same as the previous password;

[0152] A third judgment unit, configured to, when the password is the same as the previous password and the password validity period is less than that of the previous password, obtain the expiration time point of the previous password based on the time point when the previous password is obtained and the password validity period of the previous password stored in the storage unit, and judge whether the time point of the current password acquisition is after the expiration time point of the previous password;

[0153] A storage unit, configured to store the previous password, the password validity period of the previous password, and the acquisition time point of the previous password, and update the previous password, the password validity period of the previous password, and the acquisition time point of the previous password to the current password, the current password validity period, and the acquisition time point of the current password after the sending unit sends the current password and the current password validity period to the front-end device for display;

[0154] The sending unit is further configured to:

[0155] When the current password is different from the previous password, send the current password to the front-end device, and the front-end device displays the current password, the current password validity period, and the text information indicating successful password acquisition;

[0156] When the password is the same as the previous password and the password validity period is greater than or equal to that of the previous password, send the password to the front-end device, and the front-end device displays the password, the password validity period, and the text information indicating successful password acquisition;

[0157] When the password is the same as the previous password, the password validity period is less than that of the previous password, and the time point of password acquisition is after the expiration time point of the previous password, send the current password to the front-end device, and the front-end device displays the current password, the current password validity period, and the text information indicating successful password acquisition;

[0158] When the password is the same as the previous password, the password validity period is less than that of the previous password, and the time point of password acquisition is before the expiration time point of the previous password, the front-end device displays the text information indicating failed password acquisition.

[0159] In an embodiment, in order to facilitate the applicant to confirm the password value of the previous application, when the password acquisition fails, the sending unit also sends the current password and the current password validity period to the front-end device for display, and at the same time displays the text information indicating failed password acquisition.

[0160] To facilitate understanding of the process of password analysis by the above image parsing module after obtaining the password and the password validity period, the embodiments of the present invention list the following examples of password analysis.

[0161] For example, for token α, if the password was P1 during the previous use, the acquisition time point was t1, and the password validity period was T1; when obtaining the token password this time, the password data is P2, the acquisition time is t2, and the password validity period is T2.

[0162] If the values of passwords P1 and P2 are inconsistent, it means that the two passwords are different, and there will be no problem of misusing the token.

[0163] If the values of passwords P1 and P2 are the same, it is possible that two token password requests obtain the same dynamic password. In this case, continue to compare the password validity periods, including the following three steps:

[0164] Step 1: If the previous password validity period T1 is less than T2 when compared with the current password validity period T2, it means that the current password has a longer validity period than the previous password. This indicates that the two passwords have the same value but different timing logics, and there will be no problem of misusing the token.

[0165] Step 2: If the previous password validity period T1 is greater than or equal to T2 when compared with the current password validity period T2, it is possible that two usage requests obtain the same dynamic password. Further compare the password application time points t1 and t2.

[0166] Step 3: If t2 ≤ t1 + (T1 - T2), it means that the current token password was accurately obtained before the previous password expired, and it can be determined that the current password application obtained the same password as the previous one.

[0167] In Step 3, considering the calculation error of the system, introduce the empirical value of time offset Δt (Δt > 0). If t2 ≤ t1 + (T1 - T2) + Δt, then it is determined that the current password application obtained the same password as the previous one.

[0168] Based on an image parsing module disclosed in the embodiments of the present invention, in this solution, the digital token is pre-stored in a storage box, and the password of the digital token is applied for by means of online permission application and online password acquisition application. When the application is approved, the mechanical device clicks on the digital token to collect the image when the digital token displays the password, and automatically analyzes to obtain the image display password and the password validity period. The application of the digital token and the acquisition of the password are fully automated without manual intervention, achieving the purpose of automated management of the digital token.

[0169] Corresponding to a digital token management system disclosed in the embodiments of the present invention, as Figure 11 shown, a digital token management method disclosed in the embodiments of the present invention is provided. The method includes:

[0170] S101: Generate a token permission request for applying the usage permission of the digital token corresponding to the authorizer based on the name of the requester, the name of the authorizer, and the usage period input by the user.

[0171] In S101, each authorizer has only one corresponding digital token.

[0172] In the specific implementation process of S101, in response to the user's permission request operation, generate and display a pre-set first page template, and generate a token permission request for applying the usage permission of the digital token corresponding to the authorizer based on the name of the requester, the name of the authorizer, and the usage period input by the user in the first page template.

[0173] S102: Verify the token permission request. If the requester and the authorizer meet the pre-set corresponding relationship, generate a prompt message for notifying the authorizer to approve the token permission request.

[0174] In S102, there is a many-to-many corresponding relationship between the requester and the authorizer, and the authorizer can only authorize the corresponding requester.

[0175] S103: When the token permission request is approved, record the permission information that the requester has the right to obtain the digital token password corresponding to the authorizer within the usage period.

[0176] S104: Obtain the name of the currently logged-in user as the name of the requester, and generate a token password request for applying to obtain the digital token password corresponding to the authorizer based on the name of the authorizer, the name of the requester, and the current time.

[0177] In S104, since there cannot be a situation of proxy application during the process of applying for the token password, the currently logged-in user is used as the requester.

[0178] In the specific implementation process of S104, in response to the requester's password request operation, generate and display a pre-set second page template, obtain the name of the currently logged-in user as the name of the requester based on the name of the authorizer input by the requester in the second page template, and generate a token password request for applying to obtain the digital token password corresponding to the authorizer based on the name of the authorizer, the name of the requester, and the current time.

[0179] S105: Verify whether the requester has the permission to obtain the digital token password corresponding to the authorizer at the current time. If so, execute S106; if not, the verification fails.

[0180] S106: Generate a control instruction to control the mechanical device to click the button on the digital token corresponding to the authorizer pre-stored in the storage box, and collect the image when the digital token displays the password.

[0181] In S106, the storage box has a cuboid structure with an open upper surface. The interior of the storage box is divided into uniform storage intervals with a length of L and a width of d. Among them, each storage interval corresponds to unique coordinate information, and each storage interval stores a digital token.

[0182] In the specific implementation of S106, it is verified whether the requester has the permission to obtain the digital token password corresponding to the authorizer at the current time. If so, the coordinate information of the digital token corresponding to the authorizer pre-stored in the storage box is searched. Based on the coordinate information, a control instruction is generated to control the mechanical device to click the button on the digital token corresponding to the authorizer pre-stored in the storage box, and the image when the digital token displays the password is collected.

[0183] S107: Analyze the image to obtain and display the password and password validity period shown on the digital token.

[0184] The specific implementation process of S107 mainly includes the following steps:

[0185] S1071: Calculate the weighted average of the RGB three-channel pixel values in the image to obtain a grayscale image, and use the Otsu algorithm to convert the grayscale image into a black-and-white binary image.

[0186] S1072: Perform pixel dilation on the binary image, and intercept the image of the display panel part of the digital token in the binary image to obtain a valid image.

[0187] S1073: Use the perspective transformation matrix to correct the valid image into a rectangle.

[0188] S1074: Divide the corrected valid image into a password image and a password remaining time image.

[0189] S1075: Use the image recognition library in the python software library to recognize the password image and the password remaining time image to obtain the password and password validity period shown on the digital token.

[0190] S1076: Display the password and password validity period.

[0191] Based on the digital token management system disclosed in the above embodiments of the present invention, in this solution, the digital tokens are pre-stored in the storage box, and the password of the digital token is applied for through the methods of online permission application and online password acquisition application. When the application is approved, the mechanical device clicks the digital token, and the obtained password is fed back to the requester. The application of the digital token and the acquisition of the password are fully automated without manual intervention, achieving the purpose of automated management of digital tokens.

[0192] Each embodiment in this specification is described in a progressive manner. For the same or similar parts among the embodiments, reference can be made to each other. Each embodiment focuses on the differences from other embodiments. In particular, for a system or system embodiment, since it is basically similar to the method embodiment, the description is relatively simple. For the relevant parts, reference can be made to the description of the method embodiment. The systems and system embodiments described above are merely illustrative. The units described as separate components may or may not be physically separated, and the components shown as units may or may not be physical units, that is, they may be located in one place or distributed to multiple network units. Some or all of the modules can be selected according to actual needs to achieve the purpose of the solution of this embodiment. A person of ordinary skill in the art can understand and implement it without creative work.

[0193] Those skilled in the art can further realize that the units and algorithm steps of each example described in combination with the embodiments disclosed herein can be implemented by electronic hardware, computer software, or a combination of the two. To clearly illustrate the interchangeability of hardware and software, the composition and steps of each example have been generally described according to functions in the above description. Whether these functions are executed in a hardware or software manner depends on the specific application and design constraints of the technical solution. Those skilled in the art can use different methods to implement the described functions for each specific application, but such implementation should not be considered to exceed the scope of the present invention.

[0194] The above description of the disclosed embodiments enables those skilled in the art to implement or use the present invention. Various modifications to these embodiments will be obvious to those skilled in the art. The general principles defined herein can be implemented in other embodiments without departing from the scope of the present invention. Therefore, the present invention will not be limited to the embodiments shown herein, but will be accorded the widest scope consistent with the principles and novel features disclosed herein.

Claims

1. A digital token management system, characterized in that, it includes: A front-end device, which is used to generate a token permission request for applying for the digital token usage permission corresponding to the authorized person based on the name of the requester, the name of the authorized person, and the usage period input by the user, send the token permission request to the background processing device for verification, and after the verification passes, generate a prompt message for notifying the authorized person to approve the token permission request; receive the name of the authorized person input by the user, obtain the name of the currently logged-in user as the name of the requester, and generate a token password request for applying for the password of the digital token corresponding to the authorized person based on the name of the authorized person, the name of the requester, and the current time, and send the token password request to the background processing device for verification; receive and display the password and password validity period returned by the background processing device; wherein, each authorized person has only one corresponding digital token; The background processing device is used to, when receiving the token permission request, verify whether the requester and the authorized person conform to a preset corresponding relationship, and if so, the verification passes; when the token permission request is approved, record the permission information that the requester has the right to obtain the digital token password corresponding to the authorized person within the usage period; when receiving the token password request, verify whether the requester has the right to obtain the digital token password corresponding to the authorized person at the current time, and if so, generate a control instruction and send it to the mechanical device; when receiving the image returned by the mechanical device, analyze the image to obtain the password and password validity period displayed on the digital token, and send the password and the password validity period to the front-end device for display; The mechanical device is used to receive the control instruction and based on the control instruction, click the button on the digital token corresponding to the authorized person pre-stored in the storage box, and collect the image when the digital token displays the password, and send the image to the background processing device.

2. The system according to claim 1, characterized in that, the front-end device includes: A token permission request module, which is used to respond to the user's permission request operation, generate and display a pre-set first page template, generate a token permission request for applying for the digital token usage permission corresponding to the authorized person based on the name of the requester, the name of the authorized person, and the usage period input by the user in the first page template, and send the token permission request to the background processing device for verification; An approval module, which is used to, after the token permission request passes the verification, display an approval list including the token permission request, and receive the approval instruction input by the authorized person for the token permission request; A notification module, which is used to notify the authorizer to approve the token permission request. If the approval is passed, it notifies the requester that the token permission request has been approved, and the requester has the permission to use the digital token corresponding to the authorizer during the usage period. Otherwise, it generates a prompt message for notifying the requester that the token permission request has not been approved; A token password request module, which is used to generate and display a pre-set second page template in response to the password request operation of the requester, receive the name of the authorizer entered by the requester in the second page template, obtain the name of the currently logged-in user as the name of the requester, generate a token password request for applying to obtain the password of the digital token corresponding to the authorizer based on the name of the authorizer, the name of the requester, and the current time, and send the token password request to the background processing device for verification; A display module, which is used to receive and display the password and password validity period returned by the background processing device.

3. The system according to claim 1, wherein, the background processing device includes: A first verification module, which is used to, when receiving the token permission request, verify whether the requester and the authorizer conform to the corresponding relationship according to the corresponding relationship between the requester and the authorizer pre-saved in the storage module. If so, the verification is passed; The storage module, which is used to save the corresponding relationship between the requester and the authorizer; when the token permission request is approved, record the permission information that the requester has the right to obtain the password of the digital token corresponding to the authorizer during the usage period; record the coordinate information of each digital token placed in the storage box; A second verification module, which is used to, when receiving the token password request, verify whether the requester has the permission to obtain the password of the digital token corresponding to the authorizer at the current time based on the permission information recorded in the storage module. If so, the mechanical control module generates a control instruction and sends it to the mechanical equipment; The mechanical control module, which is used to find the coordinate information of the digital token corresponding to the authorizer pre-placed in the storage box from the storage module, generate a control instruction based on the coordinate information and send it to the mechanical equipment; An image analysis module, which is used to, when receiving the image of the digital token display password collected and returned by the mechanical equipment, analyze the image to obtain the password and password validity period displayed on the digital token, and send the password and the password validity period to the front-end device for display.

4. The system according to claim 3, wherein, the image analysis module includes: A receiving unit, which is used to receive the image of the digital token display password collected and returned by the mechanical equipment; A conversion unit, which is used to calculate the weighted average value of the RGB three-channel pixel values in the image to obtain a grayscale image, and use the Otsu algorithm to convert the grayscale image into a black-and-white binary image; An extraction unit, which is used to perform pixel dilation on the binary image, intercept the image of the display panel part of the digital token in the binary image to obtain a valid image; A correction unit for correcting the effective image into a rectangle by using a perspective transformation matrix; A segmentation unit for segmenting the corrected effective image into a password image and a password remaining time image; An identification unit for identifying the password image and the password remaining time image by using an image recognition library in the python software library to obtain the password and the password valid time displayed on the digital token; A sending unit for sending the password and the password valid time to the front-end device for display.

5. The system according to claim 4, wherein, the image parsing module further includes: A first judgment unit for obtaining the previous password of the digital token and the password valid time of the previous password from the storage unit, and judging whether the password is the same as the previous password; A second judgment unit for comparing the password valid time with the password valid time of the previous password when the password is the same as the previous password; A third judgment unit for, when the password is the same as the previous password and the password valid time is less than the password valid time of the previous password, obtaining the expiration time point of the previous password based on the time point when the previous password is obtained and the password valid time of the previous password stored in the storage unit, and judging whether the time point when the password is obtained is after the expiration time point of the previous password; The storage unit is used for storing the previous password, the password valid time of the previous password and the obtaining time point of the previous password, and updating the previous password, the password valid time of the previous password and the obtaining time point of the previous password to the password, the password valid time and the obtaining time point of the password after the sending unit sends the password and the password valid time to the front-end device for display; The sending unit is further used for: When the password is inconsistent with the previous password, send the password to the front-end device, and the front-end device displays the password, the password validity period, and text information indicating successful password acquisition; when the password is consistent with the previous password and the password validity period is greater than or equal to the password validity period of the previous password, send the password to the front-end device, and the front-end device displays the password, the password validity period, and text information indicating successful password acquisition; when the password is consistent with the previous password, the password validity period is less than the password validity period of the previous password, and the time point of password acquisition is after the expiration time point of the previous password, send the password to the front-end device, and the front-end device displays the password, the password validity period, and text information indicating successful password acquisition; when the password is consistent with the previous password, the password validity period is less than the password validity period of the previous password, and the time point of password acquisition is before the expiration time point of the previous password, the front-end device displays text information indicating failed password acquisition.

6. The system according to claim 1, characterized in that the storage box is a cuboid structure with an open upper surface, and the interior of the storage box is divided into storage intervals with unified length and width. Among them, each storage interval corresponds to unique coordinate information, and each storage interval stores a digital token. The background processing device records the coordinate information of each digital token stored in the storage box; The mechanical equipment includes: a longitudinal transmission rod (1), a vertical transmission rod (2), a transverse transmission rod (3), a clicking and imaging device (4), wherein the longitudinal transmission rod (1), the vertical transmission rod (2), and the transverse transmission rod (3) are respectively connected to a stepping motor, and the stepping motor is connected to the background processing device; The longitudinal transmission rod (1) is arranged on any edge of the storage box, the vertical transmission rod (2) is connected to the longitudinal transmission rod (1), the transverse transmission rod (3) is connected to the vertical transmission rod (2), and the clicking and imaging device (4) is connected to the transverse transmission rod (3); The mechanical equipment is specifically used for: The stepping motor receives the control instruction, drives the longitudinal transmission rod (1) and the transverse transmission rod (3) to align the clicking and imaging device (4) with the digital token, drives the vertical transmission rod (2) to make the clicking and imaging device (4) click the button on the digital token and collect the image of the digital token, and sends the image to the background processing device.

7. A digital token management method, characterized in that the method includes: generating a token permission request for applying for the digital token usage permission corresponding to the authorizer based on the name of the requester, the name of the authorizer, and the usage period input by the user; Verify the token permission request. If the requester and the authorizer meet the pre-set corresponding relationship, generate a prompt message for notifying the authorizer to approve the token permission request; When the token permission request is approved, record the permission information that the requester has the right to obtain the digital token password corresponding to the authorizer during the usage period; Obtain the name of the currently logged-in user and use it as the name of the requester. Based on the name of the authorizer, the name of the requester, and the current time, generate a token password request for applying to obtain the digital token password corresponding to the authorizer; Verify whether the requester has the permission to obtain the digital token password corresponding to the authorizer at the current time. If so, generate a control instruction to control the mechanical device to click the button on the digital token corresponding to the authorizer pre-stored in the storage box, and collect the image when the digital token displays the password; Analyze the image to obtain and display the password and password validity period displayed on the digital token.

8. The method according to claim 7, wherein, the generating a token permission request for applying for the usage permission of the digital token corresponding to the authorizer based on the name of the requester, the name of the authorizer, and the usage period input by the user includes: In response to the user's permission request operation, generate and display a pre-set first page template. Based on the name of the requester, the name of the authorizer, and the usage period input by the user in the first page template, generate a token permission request for applying for the usage permission of the digital token corresponding to the authorizer; the obtaining the name of the currently logged-in user and using it as the name of the requester, and generating a token password request for applying to obtain the digital token password corresponding to the authorizer based on the name of the authorizer, the name of the requester, and the current time includes: In response to the password request operation of the requester, generate and display a pre-set second page template. Based on the name of the authorizer input by the requester in the second page template, obtain the name of the currently logged-in user and use it as the name of the requester. Based on the name of the authorizer, the name of the requester, and the current time, generate a token password request for applying to obtain the digital token password corresponding to the authorizer.

9. The method according to claim 7, wherein, the verifying whether the requester has the permission to obtain the digital token password corresponding to the authorizer at the current time. If so, generating a control instruction to control the mechanical device to click the button on the digital token corresponding to the authorizer pre-stored in the storage box, and collecting the image when the digital token displays the password includes: Verify whether the requester has the permission to obtain the digital token password corresponding to the authorizer at the current time. If so, find the coordinate information of the digital token corresponding to the authorizer pre-stored in the storage box. Based on the coordinate information, generate a control instruction to control the mechanical device to click the button on the digital token corresponding to the authorizer pre-stored in the storage box, and collect the image when the digital token displays the password.

10. The method according to claim 7, wherein, the parsing of the image to obtain and display the password and the password validity period shown on the digital token includes: calculating a weighted average of the RGB three-channel pixel values in the image to obtain a grayscale image, and converting the grayscale image into a black-and-white binary image by using the Otsu algorithm; performing pixel dilation on the binary image, and cropping out the image of the display panel part of the digital token in the binary image to obtain a valid image; correcting the valid image into a rectangle by using a perspective transformation matrix; segmenting the corrected valid image into a password image and a password remaining time image; using an image recognition library in the python software library to recognize the password image and the password remaining time image to obtain the password and the password validity period shown on the digital token; displaying the password and the password validity period.

Citation Information

Patent Citations

  • Access method and device based on token permission verification, equipment and storage medium

    CN112560067A

  • Personalized and cryptographically secure access control in operating systems

    CN113168476A