File transmission method and device, file server and terminal
By assigning temporary passwords to a file server and using binary data SMS to transmit OTP, the problem of low security in 5G message file transmission is solved, and the security of terminal authentication and file download is improved.
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2021-09-24
- Publication Date
- 2026-03-27
AI Technical Summary
Existing 5G message file transmission has low security issues, especially since SIP protocol plaintext transmission is easily intercepted, and the recipient's authentication is insufficient, resulting in a high risk of file download failure.
By assigning a preset temporary password through a file server, the target file can only be downloaded when the terminal carries the password. Binary data SMS transmission OTP is used to enhance identity authentication and security.
It improves the security of file transfer, prevents unauthorized terminals from accessing files, and enhances the privacy protection of data transmission.
Smart Images

Figure CN115865891B_ABST
Abstract
Description
TECHNICAL FIELD
[0001] The present application relates to the field of communication technology, in particular to a file transmission method and device, a file server and a terminal. BACKGROUND
[0002] 5G message is a basic communication service based on 4G network and 5G network for mobile terminal users, which is an upgrade of short message service (SMS) on 4G network or 5G network and is compatible with SMS.
[0003] In the existing 5G message transmission, the sender uploads files based on HTTP (Hyper Text Transfer Protocol), and then sends the file address to the receiver through SIP (Session Initiation Protocol) Message signaling. According to whether the receiver is online, two transmission modes are provided: when the receiver 5G message is online, the file content is downloaded using HTTP protocol according to the SIP Message content; when the receiver 5G message is not online, the user clicks the URL carried in the short message to download through the browser. Since SIP is a text protocol, the file information transmitted through SIP Message is in clear text, which is easy to be stolen and poses a security risk. SUMMARY
[0004] The present application aims to provide a file transmission method and device, a file server and a terminal to solve the problem of low file transmission security using the existing file transmission method.
[0005] To achieve the above-mentioned purpose, the present application provides a file transmission method applied to a file server, comprising:
[0006] receiving a first request message sent by a first terminal for requesting to download a target file;
[0007] In the case that the first request message carries a preset temporary password, the target file corresponding to the first request message is transmitted to the first terminal, and the preset temporary password is assigned to the first terminal by the file server.
[0008] Before receiving the first request message sent by the first terminal for requesting to download the target file, the method further comprises:
[0009] receiving a second request message sent by the first terminal for requesting to download the target file;
[0010] In the case that the target file corresponding to the second request message needs to be downloaded securely, a preset temporary password is generated;
[0011] sending the preset temporary password to the first terminal through the message processing device.
[0012] The method further comprises:
[0013] sending the preset temporary password to the message processing device, and sending binary data short message carrying the preset temporary password to the first terminal through the message processing device.
[0014] The method further comprises:
[0015] obtaining a target file transmitted by a second terminal and security indication information associated with the target file, the security indication information being used to indicate that the target file needs to be downloaded securely.
[0016] The application further provides a file transmission method applied to a terminal, wherein the terminal is a first terminal, and the method comprises:
[0017] sending a first request message for requesting to download a target file to a file server, the first request message carrying a preset temporary password, and the preset temporary password being assigned to the first terminal by the file server.
[0018] receiving the target file corresponding to the first request message transmitted by the file server.
[0019] The method further comprises:
[0020] sending a second request message for requesting to download a target file to a file server, so that the file server generates a preset temporary password in the case that the target file corresponding to the second request message needs to be downloaded securely.
[0021] receiving the preset temporary password sent by a message processing device, and the preset temporary password being sent to the message processing device by the file server.
[0022] The method further comprises:
[0023] sending a first request message for requesting to download a target file to a file server in the case that the preset temporary password sent by the message processing device is received.
[0024] The method further comprises:
[0025] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0026] The target file is transmitted by a second terminal to the file server, and the target file is associated with security indication information, which is used to indicate that the target file needs to be downloaded securely.
[0027] Before sending a second request message for requesting to download the target file to the file server, the method further comprises:
[0028] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0029] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0030] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0031] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0032] The application further provides a file transmission device, comprising:
[0033] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0034] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0035] The application further provides a file server, comprising a processor and a transceiver, wherein the transceiver receives and sends data under the control of the processor, and the processor is used to perform the following operations:
[0036] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0037] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0038] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0039] The receiving message processing device sends a binary data short message carrying the preset temporary password.
[0040] generating a preset temporary password in a case that a target file corresponding to the second request message needs to be downloaded securely;
[0041] sending the preset temporary password to the first terminal by the message processing device.
[0042] The processor is further configured to:
[0043] sending the preset temporary password to the message processing device, and sending, by the message processing device, a binary data short message carrying the preset temporary password to the first terminal.
[0044] The processor is further configured to:
[0045] obtaining a target file transmitted by a second terminal and security indication information associated with the target file, the security indication information being used to indicate that the target file needs to be downloaded securely.
[0046] The application further provides a file server, including a memory, a processor and a program stored in the memory and executable on the processor; the processor implements the file transmission method as described in the above embodiments when executing the program.
[0047] The application further provides a file transmission device, including:
[0048] a first sending module configured to send a first request message for requesting to download a target file to a file server, the first request message carrying a preset temporary password, the preset temporary password being assigned to the first terminal by the file server;
[0049] a second receiving module configured to receive the target file transmitted by the file server corresponding to the first request message.
[0050] The application further provides a terminal, which is a first terminal, including a processor and a transceiver, the transceiver receiving and sending data under the control of the processor, and the processor being configured to execute the following processes:
[0051] sending, by the transceiver, a first request message for requesting to download a target file to a file server, the first request message carrying a preset temporary password, the preset temporary password being assigned to the first terminal by the file server;
[0052] receiving the target file transmitted by the file server corresponding to the first request message.
[0053] The transceiver is further configured to:
[0054] sending a second request message for requesting to download a target file to a file server, so that the file server generates a preset temporary password in a case that the target file corresponding to the second request message needs to be downloaded in a secure manner;
[0055] receiving the preset temporary password sent by the message processing device, the preset temporary password being sent by the file server to the message processing device;
[0056] sending a first request message for requesting to download a target file to a file server in a case that the preset temporary password sent by the message processing device is received.
[0057] The transceiver is further configured to:
[0058] receiving a binary data short message sent by the message processing device, the binary data short message carrying the preset temporary password.
[0059] The target file is transmitted to the file server by a second terminal, and the target file is associated with security indication information, the security indication information being used for indicating that the target file needs to be downloaded in a secure manner.
[0060] The processor is further configured to:
[0061] receiving, by the transceiver, a download link including a file address of a target file sent by a message processing device, the download link being sent by a file server to the message processing device;
[0062] generating a second request message for requesting to download a target file in a case that an access operation on the download link is received by a user;
[0063] sending the second request message to the file server.
[0064] The application further provides a terminal, which is a first terminal and comprises a memory, a processor and a program stored in the memory and executable on the processor; the processor implements the file transmission method when executing the program.
[0065] The application further provides a computer readable storage medium, which stores a computer program, the program being executable on a processor to implement the steps in the file transmission method.
[0066] The above technical solution of the application has at least the following beneficial effects:
[0067] In the embodiment of the present application, a first request message for requesting to download a target file is received from a first terminal; and the target file corresponding to the first request message is transmitted to the first terminal in the case that the first request message carries a preset temporary password, which is assigned to the first terminal by a file server, so that the preset temporary password is bound to the terminal by assigning the preset temporary password to the terminal by the file server, thereby ensuring that only the specified terminal, i.e., the terminal carrying the preset temporary password in the request, can obtain the file, and further improving the security of file transmission. BRIEF DESCRIPTION OF DRAWINGS
[0068] Figure 1 One of flowcharts of a file transmission method according to an embodiment of the present application;
[0069] Figure 2 One of flowcharts of a file transmission method according to an embodiment of the present application;
[0070] Figure 3 One of flowcharts of a file transmission method according to an embodiment of the present application;
[0071] Figure 4 One of flowcharts of a file transmission method according to an embodiment of the present application;
[0072] Figure 5 One of module diagrams of a file transmission device according to an embodiment of the present application;
[0073] Figure 6 A structure diagram of a file server according to an embodiment of the present application;
[0074] Figure 7 One of module diagrams of a file transmission device according to an embodiment of the present application;
[0075] Figure 8 A structure diagram of a terminal according to an embodiment of the present application. DETAILED DESCRIPTION
[0076] To make the technical problems, technical solutions and advantages of the present application clearer, the following will be described in detail with reference to the accompanying drawings and specific embodiments.
[0077] With the advent of the 5G era, short message service needs to be upgraded to rich media message service, which is referred to as 5G message service. The 5G message service not only supports multimedia message interaction between individual users, but also enables industry customers to provide new interactive digital services based on rich media for their users. 5G message is a basic communication service based on 4G network and 5G network for mobile terminal users, which is an upgrade of short multimedia message service under 4G network or 5G network, and is compatible with short multimedia message service
[0078] The existing 5G message transmission, the sender uploads files based on HTTP; and then sends the file address to the receiver through SIP Message signaling. According to whether the receiver is online, two transmission modes are provided: when the receiver 5G message is online, the file content is downloaded using the HTTP protocol according to the SIP Message content; when the receiver 5G message is not online, the user clicks the URL carried in the short message to download through the browser.
[0079] Although the file uploading and downloading both adopt the HTTPS encrypted transmission mode, and the platform adopts the GBA authentication process when uploading or downloading, the receiver's identity is not judged when the receiver downloads the file; for example, the file sent by the sender to a specific receiver a is not judged whether the receiver a receives the file in the receiving process, but any terminal that is online in the 5G message can receive the file.
[0080] In addition, since the SIP protocol is a text protocol, the file information transmitted through the SIP Message is in clear code, and if there is a background monitoring or Trojan program on the terminal, the related SIP signaling can be easily intercepted from the network card of the terminal through TCP dump, the related file download address can be obtained by analyzing the message, and then the download address is forwarded to another 5G message terminal to download through the other terminal, so that the file can be easily obtained;
[0081] In addition, when the receiver 5G message is not online, the system will be converted into a short message + URL link mode to send to the receiver, and if the receiver has a third-party short message monitoring program, the download link can be easily forwarded to other terminals, and then the user file can be obtained. In summary, the existing file transmission method has low file transmission security.
[0082] In order to solve the above problems, the application provides a file transmission method, device, file server and terminal, wherein the method and device are based on the same application concept, and the principles of solving problems are similar, so the implementation of the device and the method can be mutually referred, and the repeated parts will not be described.
[0083] As shown in the flowchart of the file transmission method provided by the embodiment of the application, the method is applied to a file server and includes the following steps. Figure 1
[0084] Step 101: receiving a first request message for requesting to download a target file sent by a first terminal;
[0085] In this step, the first request message supports the HTTP protocol, which can be an HTTPS GET request.
[0086] Step 102: transmitting the target file corresponding to the first request message to the first terminal in the case that the first request message carries a preset temporary password, the preset temporary password being assigned to the first terminal by the file server.
[0087] In this step, it is necessary to point out that the file server stores the target file, which is transmitted to the file server by the second terminal.
[0088] Since the preset temporary password is assigned to the first terminal by the file server, when the file server receives the first request message carrying the preset temporary password sent by the first terminal, it is equivalent to the identity authentication of the first terminal. Only the terminal that passes the identity authentication can obtain the target file, thereby improving the security of file transmission.
[0089] The file transmission method of the embodiment of the application receives the first request message for requesting to download the target file sent by the first terminal; in the case that the first request message carries a preset temporary password, the target file corresponding to the first request message is transmitted to the first terminal, the preset temporary password being assigned to the first terminal by the file server. In this way, the file server assigns the preset temporary password to the terminal, so that the preset temporary password is bound to the terminal, thereby ensuring that only the specified terminal, that is, the terminal carrying the preset temporary password in the request, can obtain the file, and further improving the security of file transmission.
[0090] It is necessary to point out that the first request message carries the preset temporary password, which means that the first terminal has obtained the preset temporary password assigned by the file server before sending the first request message. How to realize the file server assigning the preset temporary password can be selected as follows:
[0091] As an optional implementation, before receiving the first request message for requesting to download the target file sent by the first terminal, the method of the embodiment of the application can further include:
[0092] receiving the second request message for requesting to download the target file sent by the first terminal;
[0093] It is necessary to point out that before the first terminal sends the second request message, the first terminal receives the download link of the file address of the target file sent by the message processing device (such as the 5G message center), and generates the second request message for requesting to download the target file after receiving the access operation (such as click input) of the user to the download link. Then, the first terminal sends the second request message to the file server.
[0094] generating a preset temporary password in a case that a target file corresponding to the second request message needs to be downloaded securely;
[0095] It should be noted that whether the target file needs to be downloaded securely can be determined by the indication information stored in the file server. If the stored indication information is security indication information for indicating that the target file needs to be downloaded securely, the target file needs to be downloaded securely. If the stored indication information is indication information for indicating that the target file does not need to be downloaded securely, the target file does not need to be downloaded securely.
[0096] The preset temporary password is sent to the first terminal by the message processing device.
[0097] The step can specifically include:
[0098] The preset temporary password is sent to the message processing device, and the message processing device sends a binary data short message to the first terminal, the binary data short message carrying the preset temporary password.
[0099] It should be noted that the message processing device sends the preset temporary password to the first terminal in the form of a short message. The preset temporary password can be an OTP (One Time Password, one-time password). The short message is not a normal text message, but a binary data short message in a special format.
[0100] Here, the first terminal, i.e. the 5G message terminal, specifies a port to listen to the binary data short message when accessing wirelessly (such as wifi) and obtaining a registration configuration file from the message processing device (such as a 5G message center). The preset temporary password obtained by the first terminal is stored in the first terminal in a manner invisible to the user, and cannot be obtained by third-party software, greatly enhancing the security of file transmission.
[0101] As an optional implementation manner, the method of the embodiment of the application further includes:
[0102] The target file transmitted by the second terminal and security indication information associated with the target file are obtained, the security indication information being used to indicate that the target file needs to be downloaded securely.
[0103] Here, the second terminal can transmit the target file through HTTPS POST signaling. In order to facilitate the file server to subsequently determine whether the target file needs to be downloaded securely, the second terminal can transmit the security indication information associated with the target file (which can be generated by a security marking operation of a user of the second terminal on the transmitted target file) when transmitting the target file. Specifically, the security indication information associated with the target file can be added in the HTTPS POST signaling.
[0104] The file transmission method provided by the embodiment of the present application comprises the following steps: receiving a first request message for requesting to download a target file sent by a first terminal; and transmitting the target file corresponding to the first request message to the first terminal when the first request message carries a preset temporary password, wherein the preset temporary password is assigned to the first terminal by a file server. In this way, the preset temporary password is bound to the terminal by assigning the preset temporary password to the terminal by the file server, so that only the specified terminal, i.e., the terminal carrying the preset temporary password in the request, can obtain the file, thereby improving the security of file transmission.
[0105] As shown in Figure 2 FIG. 1 is a flowchart of a file transmission method provided by an embodiment of the present application, which is applied to a terminal, i.e., a first terminal, and comprises the following steps:
[0106] Step 201: transmitting a first request message for requesting to download a target file to a file server, wherein the first request message carries a preset temporary password, and the preset temporary password is assigned to the first terminal by the file server.
[0107] In this step, the first request message supports HTTP protocol, which can be an HTTPS GET request.
[0108] Here, since the preset temporary password is assigned to the first terminal by the file server, when the file server receives the first request message carrying the preset temporary password sent by the first terminal, it is equivalent to the identity authentication of the first terminal. Only the terminal passing the identity authentication can obtain the target file, thereby improving the security of file transmission.
[0109] Step 202: receiving the target file corresponding to the first request message transmitted by the file server.
[0110] In this step, when the file server determines that the first request message carries the preset temporary password, it transmits the target file corresponding to the first request message to the first terminal. That is, the first terminal receives the target file corresponding to the first request message transmitted by the file server.
[0111] The file transmission method provided by the embodiment of the present application comprises the following steps: transmitting a first request message for requesting to download a target file to a file server, wherein the first request message carries a preset temporary password, and the preset temporary password is assigned to the first terminal by the file server; and receiving the target file corresponding to the first request message transmitted by the file server. In this way, the preset temporary password is bound to the terminal by assigning the preset temporary password to the terminal by the file server, so that only the specified terminal, i.e., the terminal carrying the preset temporary password in the request, can obtain the file, thereby improving the security of file transmission.
[0112] It should be noted that the preset temporary password is carried in the first request message, which indicates that the first terminal has obtained the preset temporary password allocated by the file server before sending the first request message. How to obtain the preset temporary password allocated by the file server can be selected as follows:
[0113] As an optional implementation, before sending the first request message for requesting to download the target file to the file server, the method of the embodiment of the application can further include:
[0114] sending a second request message for requesting to download the target file to the file server, so that the file server generates a preset temporary password in the case that the target file corresponding to the second request message needs to be securely downloaded;
[0115] It should be noted that before this step is performed, the method of the embodiment of the application can further include:
[0116] First, receiving a download link including a file address of the target file sent by a message processing device, the download link being sent by the file server to the message processing device;
[0117] Based on this, sending a second request message for requesting to download the target file to the file server, that is, this step can specifically include:
[0118] generating the second request message for requesting to download the target file in the case that the user performs an access operation on the download link;
[0119] sending the second request message to the file server.
[0120] That is, before the first terminal sends the second request message, the first terminal receives a download link of a file address of the target file sent by a message processing device (such as a 5G message center), and generates the second request message for requesting to download the target file when receiving a user access operation (such as a click input) on the download link. Then, the first terminal sends the second request message to the file server. Then, the file server generates a preset temporary password in the case that the target file corresponding to the second request message needs to be securely downloaded.
[0121] Then, receiving the preset temporary password sent by the message processing device, the preset temporary password being sent by the file server to the message processing device;
[0122] After the above steps are performed, sending a first request message for requesting to download the target file to the file server can include:
[0123] In a case that the preset temporary password sent by the message processing device is received, a first request message for requesting to download the target file is sent to the file server.
[0124] That is, after receiving the preset temporary password, the first terminal reinitiates the first request message for requesting to download the target file, and the first request message carries the preset temporary password.
[0125] As an optional implementation, the receiving of the preset temporary password sent by the message processing device can include:
[0126] Receiving a binary data short message sent by the message processing device, and the binary data short message carries the preset temporary password.
[0127] It should be noted that the message processing device sends the preset temporary password to the first terminal in the form of a short message, and the preset temporary password can be an OTP (One Time Password, one-time password). The short message is not a normal text message, but a binary data short message in a special format.
[0128] Here, the first terminal, i.e., the 5G message terminal, specifies a port to listen to the binary data short message when accessing through wireless (such as wifi) and obtains a registration configuration file from the message processing device (such as a 5G message center). Moreover, the preset temporary password obtained by the first terminal is stored in the first terminal in a manner invisible to the user, and cannot be obtained by third-party software, which greatly enhances the security of file transmission.
[0129] Optionally, the target file is transmitted to the file server by a second terminal, and the target file is associated with security indication information, and the security indication information is used to indicate that the target file needs to be downloaded securely.
[0130] It should be noted that the second terminal can transmit the target file through HTTPS POST signaling. In order to facilitate the file server to subsequently judge whether the target file needs to be downloaded securely, the second terminal can transmit the security indication information associated with the target file (which can be generated by the user of the second terminal through a security marking operation on the transmitted target file) when transmitting the target file. Specifically, the security indication information associated with the target file can be added in the HTTPS POST signaling.
[0131] The file transmission method of the embodiment of the application, by sending a first request message for requesting to download a target file to a file server, the first request message carrying a preset temporary password, the preset temporary password being allocated to the first terminal by the file server; receiving the target file corresponding to the first request message transmitted by the file server, thus, by allocating the preset temporary password to the terminal by the file server, the preset temporary password is bound to the terminal, so as to ensure that only the specified terminal, that is, the terminal carrying the preset temporary password in the request, can obtain the file, thereby improving the security of file transmission.
[0132] The following two embodiments are described from the perspective of interaction between devices, and the implementation process of the file transmission method of the application is specifically described.
[0133] Embodiment one is described with reference to Figure 3
[0134] It should be noted that this embodiment corresponds to the processing mode of the receiving terminal 5G message online. In the figure, UE A is the sender terminal (second terminal), UE B is the receiver terminal (first terminal), and 5GMC is the 5G message center (message processing device).
[0135] S1: UE A selects media content to be sent in the terminal locally;
[0136] S2: UE A selects to send a file including the media content in a secure manner;
[0137] That is, the file including the media content needs to be downloaded securely.
[0138] S3-4: UE A performs GBA authentication and uploads the file to the file server through HTTPS POST; the file server returns an HTTPS 200 OK message to UE A after uploading successfully;
[0139] It should be noted that the HTTPS 200 OK message carries the XML of the file storage location.
[0140] Here, when UE A uploads the file through the HTTPS POST signaling, the indication information can be added in the HTTPS POST signaling, specifically, the indication information can be represented by a preset field, so as to identify that the file needs to be downloaded securely, for the file server to distinguish whether the file transmission needs special processing, that is, whether it needs to be downloaded securely.
[0141] For example, the following field is added:
[0142] x-3gpp-secutity-ft: true.
[0143] Here, the file server receives the file uploaded by UE A, and if the file carries the extension header x-3gpp-secutity-ft: true, the file is marked to indicate that the identity of the receiver needs to be verified before the file can be downloaded.
[0144] S5-6: UE A sends a SIP Message carrying the file address of the file storage to the 5GMC, and the 5GMC returns a 200 OK message after receiving the SIP Message.
[0145] S7-8: The 5GMC sends the SIP Message to UE B, and UE B returns a 200 OK message after receiving the SIP Message.
[0146] S9-12: If UE B chooses to download the file, it initiates HTTPS GET to download the media content. When the file server receives the file download request, it determines that the file needs to be downloaded securely, and then uses a binary data SMS to send an OTP to UE B through the 5GMC.
[0147] It should be noted that the binary data SMS carries the OTP, and the SMS carrying the OTP is not a normal text message, but a special format data message. According to the GSMA RCC.14 protocol, when the 5G message terminal accesses through wifi, it specifies a port to listen to this binary data SMS after obtaining the registration configuration file from the 5GMC.
[0148] Here, after the file server receives the file download request, it sends a 200 OK message with empty content to UE B. At this time, UE B receives the 200 OK message with empty content and does not make further processing, but waits to receive the binary data SMS carrying the OTP.
[0149] S13-14: UE B receives the SMS and automatically intercepts the OTP, and reinitiates the HTTPS request to download the file, which carries the OTP information.
[0150] S15-18: After successful download, UE B sends a message receipt.
[0151] Example Two Reference Figure 4
[0152] It should be noted that this embodiment corresponds to the processing method of the receiver terminal 5G message offline. In the figure, UE A is the sender terminal (second terminal), UE B is the receiver terminal (first terminal), and 5GMC is the 5G message center (message processing device).
[0153] S1001: UE A selects media content to be sent in terminal locally;
[0154] S1002: UE A selects to send file including the media content in a secure way;
[0155] That is, the file including the media content needs to be downloaded securely.
[0156] S1003-1004: UE A performs GBA authentication and uploads the file to the file server through HTTPS POST; the file server returns HTTPS 200 OK message to UE A after uploading successfully;
[0157] It should be noted that the HTTPS 200 OK message carries the XML of the file storage location.
[0158] Here, when UE A uploads the file through HTTPS POST signaling, the indication information can be added in the HTTPS POST signaling, specifically, the indication information can be represented by a preset field, so as to identify that the file needs to be downloaded securely, for making the file server distinguish whether the file transmission needs special processing, that is, whether it needs to be downloaded securely.
[0159] For example, the following field is added:
[0160] x-3gpp-secutity-ft: true.
[0161] Here, when the file server receives the file uploaded by UE A, if it finds that the file carries the extension header x-3gpp-secutity-ft: true, the file is marked to indicate that the identity of the receiver needs to be verified before the file can be downloaded.
[0162] S1005-1006: UE A sends SIP Message carrying the file address of the file storage to 5GMC, and 5GMC returns 200 OK message after receiving the SIP Message;
[0163] S1007-1008: When 5GMC determines that UE B is not online, it sends the file address of the file storage to UE B through SMS+URL, and UE B returns 200 OK message after receiving the message;
[0164] S1009-1012: If UE B clicks the URL in the SMS to download the file, HTTPS GET is started to download the media content; when the file server receives the file download request, it determines that the file needs to be downloaded securely, and then uses binary data short message to send OTP to UE B through 5GMC.
[0165] It should be noted that the binary data message carries the OTP, and the message carrying the OTP is not a normal text message, but a special format data message. According to the GSMA RCC.14 protocol, when a 5G message terminal accesses through WiFi, the terminal specifies a port to listen to the binary data message when obtaining a registration configuration file in 5GMC.
[0166] Here, the UE B file server receives the file download request and sends a 200OK message with empty content to the UE B. At this time, the UE B receives the 200OK message with empty content and does not make further processing, and waits to receive the binary data message carrying the OTP.
[0167] S1013-1014: The UE B receives the message and automatically activates the local 5G message application to automatically intercept the OTP and re-initiate the HTTPS request to download the file, wherein the OTP information is carried.
[0168] It should be noted that if the UE B does not support 5G message, the corresponding file cannot be downloaded.
[0169] S1015-1018: After successful downloading, the UE B sends a message reply.
[0170] As shown in Figure 5 The embodiment of the application also provides a file transmission device, which comprises:
[0171] The first receiving module 501 is configured to receive a first request message for requesting to download a target file sent by a first terminal.
[0172] The first transmission module 502 is configured to transmit a target file corresponding to the first request message to the first terminal in a case where the first request message carries a preset temporary password, wherein the preset temporary password is allocated to the first terminal by a file server.
[0173] Optionally, the device of the embodiment of the application can further comprise:
[0174] The third receiving module is configured to receive a second request message for requesting to download a target file sent by a first terminal.
[0175] The first processing module is configured to generate a preset temporary password in a case where a target file corresponding to the second request message needs to be downloaded securely.
[0176] The second sending module is configured to send the preset temporary password to the first terminal through a message processing device.
[0177] Optionally, the second sending module can comprise:
[0178] The first sending unit is configured to send the preset temporary password to the message processing device, and the message processing device is configured to send a binary data short message carrying the preset temporary password to the first terminal.
[0179] Optionally, the device of the embodiment of the present application can further comprise:
[0180] The obtaining module is configured to obtain a target file transmitted by a second terminal and security indication information associated with the target file, the security indication information being used to indicate that the target file needs to be downloaded securely.
[0181] The file transmission device of the embodiment of the present application receives a first request message for requesting to download a target file sent by a first terminal; in the case that the first request message carries a preset temporary password, the file transmission device transmits the target file corresponding to the first request message to the first terminal, the preset temporary password being assigned to the first terminal by a file server, so that the preset temporary password is bound to the terminal by assigning the preset temporary password to the terminal by the file server, thereby ensuring that only a specified terminal, that is, a terminal carrying the preset temporary password in the request, can obtain the file, and further improving the security of file transmission.
[0182] In order to better achieve the above-mentioned purpose, as shown in Figure 6 The embodiment of the present application further provides a file server, comprising a processor 600 and a transceiver 610, the processor being configured to perform the following processes:
[0183] The transceiver 610 receives a first request message for requesting to download a target file sent by a first terminal;
[0184] In the case that the first request message carries a preset temporary password, the file server transmits the target file corresponding to the first request message to the first terminal, the preset temporary password being assigned to the first terminal by the file server.
[0185] Optionally, the processor 600 is further configured to:
[0186] The transceiver 610 receives a second request message for requesting to download a target file sent by a first terminal;
[0187] In the case that the target file corresponding to the second request message needs to be downloaded securely, a preset temporary password is generated;
[0188] The message processing device sends the preset temporary password to the first terminal.
[0189] Optionally, the processor 600 is further configured to:
[0190] sending the preset temporary password to the message processing device, and sending, by the message processing device, a binary data short message to the first terminal, the binary data short message carrying the preset temporary password.
[0191] Optionally, the processor 600 is further configured to:
[0192] obtain a target file transmitted by a second terminal and security indication information associated with the target file, the security indication information being used to indicate that the target file needs to be downloaded securely.
[0193] The file server of the embodiment of the present application receives a first request message for requesting to download a target file sent by a first terminal; in a case where the first request message carries a preset temporary password, the file server transmits the target file corresponding to the first request message to the first terminal, the preset temporary password being assigned to the first terminal by the file server. In this way, the preset temporary password is assigned to the terminal by the file server, so that the preset temporary password is bound to the terminal, thereby ensuring that only a specified terminal, i.e., a terminal carrying the preset temporary password in the request, can obtain the file, and further improving the security of file transmission.
[0194] The embodiment of the present application further provides a file server, which comprises a memory, a processor and a computer program stored in the memory and executable on the processor, the processor implements each process in the file transmission method embodiment and achieves the same technical effects when executing the program, and thus details are not repeated here.
[0195] As shown in Figure 7 The embodiment of the present application further provides a file transmission device, which comprises:
[0196] A first sending module 701 is configured to send a first request message for requesting to download a target file to a file server, the first request message carrying a preset temporary password, the preset temporary password being assigned to the first terminal by the file server;
[0197] A second receiving module 702 is configured to receive the target file corresponding to the first request message transmitted by the file server.
[0198] Optionally, the device of the embodiment of the present application can further comprise:
[0199] A third sending module is configured to send a second request message for requesting to download a target file to a file server, so that the file server generates a preset temporary password in a case where the target file corresponding to the second request message needs to be downloaded securely.
[0200] The fourth receiving module is used for receiving the preset temporary password sent by the message processing device, wherein the preset temporary password is sent by the file server to the message processing device.
[0201] Further, the first sending module 701 can include:
[0202] The second sending unit is used for sending a first request message for requesting to download a target file to the file server if the preset temporary password sent by the message processing device is received.
[0203] Optionally, the fourth receiving module can include:
[0204] The receiving unit is used for receiving a binary data short message sent by the message processing device, wherein the binary data short message carries the preset temporary password.
[0205] Optionally, the target file is transmitted to the file server by a second terminal, and the target file is associated with security indication information, wherein the security indication information is used for indicating that the target file needs to be downloaded in a secure manner.
[0206] Optionally, the device of the embodiment of the present application can further include:
[0207] The fifth receiving module is used for receiving a download link including a file address of a target file sent by the message processing device, wherein the download link is sent by the file server to the message processing device.
[0208] The third sending module can include:
[0209] The processing unit is used for generating a second request message for requesting to download a target file if an access operation on the download link by a user is received.
[0210] The third sending unit is used for sending the second request message to the file server.
[0211] The terminal of the embodiment of the present application sends a first request message for requesting to download a target file to a file server, wherein the first request message carries a preset temporary password, and the preset temporary password is allocated to the first terminal by the file server; and the terminal receives a target file corresponding to the first request message transmitted by the file server, so that the preset temporary password is allocated to the terminal by the file server, the preset temporary password is bound to the terminal, only a specified terminal, that is, a terminal carrying the preset temporary password in the request, can obtain the file, and the security of file transmission is improved.
[0212] As Figure 8As shown, the embodiment of the present application further provides a terminal, which is a first terminal, comprising a processor 800 and a transceiver 810, and further comprising a user interface 820, wherein the processor is configured to perform the following processes:
[0213] The transceiver 810 is configured to send a first request message for requesting to download a target file to a file server, wherein the first request message carries a preset temporary password, and the preset temporary password is assigned to the first terminal by the file server.
[0214] The transceiver 810 is configured to receive the target file transmitted by the file server and corresponding to the first request message.
[0215] Optionally, the transceiver 810 is further configured to:
[0216] The transceiver 810 is configured to send a second request message for requesting to download a target file to a file server, so that the file server generates a preset temporary password in the case that the target file corresponding to the second request message needs to be downloaded securely.
[0217] The transceiver 810 is configured to receive the preset temporary password sent by a message processing device, wherein the preset temporary password is sent to the message processing device by the file server.
[0218] The transceiver 810 is configured to send a first request message for requesting to download a target file to a file server in the case that the preset temporary password sent by the message processing device is received.
[0219] Optionally, the transceiver 810 is further configured to:
[0220] The transceiver 810 is configured to receive a binary data short message sent by a message processing device, wherein the binary data short message carries the preset temporary password.
[0221] Optionally, the target file is transmitted to the file server by a second terminal, and the target file is associated with security indication information, wherein the security indication information is used to indicate that the target file needs to be downloaded securely.
[0222] Optionally, the processor 800 is further configured to:
[0223] The transceiver is configured to receive a download link including a file address of a target file sent by a message processing device, wherein the download link is sent to the message processing device by the file server.
[0224] The processor 800 is configured to generate a second request message for requesting to download a target file in the case that an access operation of the download link by a user is received.
[0225] The transceiver 810 is configured to send the second request message to the file server.
[0226] The terminal of the embodiment of the present application sends a first request message for requesting to download a target file to a file server, the first request message carries a preset temporary password, the preset temporary password is assigned to the first terminal by the file server; and the terminal receives the target file transmitted by the file server corresponding to the first request message. In this way, the preset temporary password is assigned to the terminal by the file server, so that the preset temporary password is bound to the terminal, thereby ensuring that only the specified terminal, i.e., the terminal carrying the preset temporary password in the request, can obtain the file, and the security of file transmission is improved.
[0227] The embodiment of the present application also provides a terminal, which is a first terminal, comprising a memory, a processor and a computer program stored in the memory and executable on the processor, the processor implements each process in the file transmission method embodiment and achieves the same technical effects when executing the program, and details are not repeated here to avoid repetition.
[0228] The embodiment of the present application also provides a computer readable storage medium, which stores a computer program, the program is executed by a processor to implement each process in the file transmission method embodiment and achieve the same technical effects, and details are not repeated here to avoid repetition. The computer readable storage medium is, for example, a read-only memory (ROM), a random access memory (RAM), a magnetic disk or an optical disk.
[0229] Those skilled in the art should understand that the embodiments of the present application can be provided as a method, a system or a computer program product. Therefore, the present application can adopt a completely hardware embodiment, a completely software embodiment or an embodiment combining software and hardware aspects. Moreover, the present application can adopt a computer program product in the form of one or more computer readable storage media (including but not limited to disk storage and optical storage) containing computer usable program code.
[0230] The present application is described with reference to flowcharts and / or block diagrams according to the method, device (system) and computer program product of the embodiments of the present application. It should be understood that each flow and / or block in the flowcharts and / or block diagrams, and the combination of the flows and / or blocks in the flowcharts and / or block diagrams can be implemented by computer program instructions. These computer program instructions can be provided to a general-purpose computer, a special-purpose computer, an embedded processor or other programmable data processing devices to produce a machine, so that the instructions executed by the computer or other programmable data processing devices produce a device for implementing the functions specified in the flowcharts and / or block diagrams. Figure 1 The device for implementing the functions specified in one flow or multiple flows and / or one block or multiple blocks.
[0231] These computer program instructions may also be stored in a computer-readable storage medium that can direct a computer or other programmable data processing device to function in a particular manner, such that the instructions stored in the computer-readable storage medium produce a paper article including an instruction means, the instruction means being implemented in a process Figure 1 One or more processes and / or boxes Figure 1 The function specified in one or more boxes.
[0232] These computer program instructions can also be loaded onto a computer or other programmable data processing equipment, causing the computer or other programmable equipment to perform a series of operational steps to produce a computer-implemented process, thereby providing instructions that execute on the computer or other programmable equipment for implementing the process. Figure 1 One or more processes and / or boxes Figure 1 The steps of the function specified in one or more boxes.
[0233] The above description represents the preferred embodiments of the present invention. It should be noted that those skilled in the art can make various improvements and modifications without departing from the principles of the present invention, and these improvements and modifications should also be considered within the scope of protection of the present invention.
Claims
1. A file transfer method, applied to a file server, characterized in that, include: The system receives a first request message from a first terminal requesting the download of a target file; wherein the first request message supports the HTTP protocol and is an HTTPS GET request; the first request message is sent by the first terminal after receiving a SIP message carrying the file address where the target file is stored from a message processing device; the file server determines whether the target file needs to be downloaded securely through indication information carried in an HTTPS POST signaling sent by a second terminal; the second terminal is the terminal that uploads the target file to the file server via the HTTPS POST signaling; When the indication information indicates that the target file needs to be downloaded securely and the first request message carries a preset temporary password, the target file corresponding to the first request message is transmitted to the first terminal. The preset temporary password is assigned to the first terminal by the file server. The preset temporary password is a one-time password. The preset temporary password is stored in the first terminal in a way that is not visible to the user.
2. The method according to claim 1, characterized in that, Before receiving the first request message from the first terminal requesting the download of the target file, the method further includes: Receive a second request message sent by the first terminal, requesting the download of a target file; If the target file corresponding to the second request message needs to be downloaded securely, a preset temporary password is generated; The preset temporary password is sent to the first terminal via a message processing device.
3. The method according to claim 2, characterized in that, Sending the preset temporary password to the first terminal via the message processing device includes: The preset temporary password is sent to the message processing device, which then sends a binary data short message to the first terminal, the binary data short message carrying the preset temporary password.
4. The method according to claim 1, characterized in that, The method further includes: Obtain the target file transmitted by the second terminal and the security indication information associated with the target file, wherein the security indication information is used to indicate that the target file needs to be downloaded securely.
5. A file transfer method, applied to a terminal, wherein the terminal is a first terminal, characterized in that, include: A first request message is sent to a file server to request the download of a target file. This first request message carries a preset temporary password, which is assigned to the first terminal by the file server. The first request message supports the HTTP protocol and is an HTTPS GET request. The first request message is sent by the first terminal after receiving a SIP message from a message processing device containing the file address where the target file is stored. The file server determines whether the target file needs to be downloaded securely through indication information carried in an HTTPS POST signal sent by a second terminal. The second terminal is the terminal that uploads the target file to the file server via the HTTPS POST signal. The preset temporary password is a one-time password; the preset temporary password is stored in the first terminal in a manner invisible to the user. When the indication information indicates that the target file needs to be downloaded securely and the first request message carries a preset temporary password, the file server transmits the target file corresponding to the first request message to the first terminal, and the first terminal receives the target file corresponding to the first request message transmitted by the file server.
6. The method according to claim 5, characterized in that, Before sending a first request message to the file server to request the download of the target file, the method includes: A second request message is sent to the file server to request the download of a target file, so that the file server generates a preset temporary password if the target file corresponding to the second request message needs to be downloaded securely; The preset temporary password is sent by the message processing device and is sent by the file server to the message processing device. Send a first request message to the file server to request the download of the target file, including: Upon receiving the preset temporary password sent by the message processing device, a first request message is sent to the file server to request the download of the target file.
7. The method according to claim 6, characterized in that, The preset temporary password sent by the message processing device includes: The device receives a binary data short message sent by a message processing device, the binary data short message carrying the preset temporary password.
8. The method according to claim 6, characterized in that, The target file is transmitted to the file server by the second terminal, and the target file is associated with security indication information, which is used to indicate that the target file needs to be downloaded securely.
9. The method according to claim 6, characterized in that, Before sending a second request message to the file server to request the download of the target file, the method further includes: The message processing device receives a download link containing the file address of the target file, which is sent by the file server to the message processing device. Send a second request message to the file server to request the download of the target file, including: Upon receiving a user's access operation to the download link, a second request message is generated to request the download of the target file; Send the second request message to the file server.
10. A file transfer device, characterized in that, Applied to file servers, including: The first receiving module is configured to receive a first request message sent by a first terminal requesting the download of a target file; wherein the first request message supports the HTTP protocol and is an HTTPS GET request; the first request message is sent by the first terminal after receiving a SIP message carrying the file address where the target file is stored from the message processing device; the file server determines whether the target file needs to be downloaded securely through the indication information carried in the HTTPS POST signaling sent by the second terminal; the second terminal is a terminal that uploads the target file to the file server through the HTTPS POST signaling; The first transmission module is configured to transmit the target file corresponding to the first request message to the first terminal when the indication information indicates that the target file needs to be downloaded securely and the first request message carries a preset temporary password. The preset temporary password is assigned to the first terminal by a file server. The preset temporary password is a one-time password. The preset temporary password is stored in the first terminal in a manner invisible to the user.
11. A file server, comprising a processor and a transceiver, wherein the transceiver receives and transmits data under the control of the processor, characterized in that, The processor is used to perform the following operations: The transceiver receives a first request message from a first terminal requesting the download of a target file. This first request message supports the HTTP protocol and is an HTTPS GET request. The first request message is sent by the first terminal after receiving a SIP message from a message processing device carrying the file address where the target file is stored. The file server determines whether the target file needs to be securely downloaded by using indication information carried in an HTTPS POST signal sent by a second terminal. The second terminal is the terminal that uploads the target file to the file server via the HTTPS POST signal. When the indication information indicates that the target file needs to be downloaded securely and the first request message carries a preset temporary password, the target file corresponding to the first request message is transmitted to the first terminal. The preset temporary password is assigned to the first terminal by the file server. The preset temporary password is a one-time password. The preset temporary password is stored in the first terminal in a way that is not visible to the user.
12. The file server according to claim 11, characterized in that, The processor is also used for: The transceiver receives a second request message from the first terminal requesting the download of a target file. If the target file corresponding to the second request message needs to be downloaded securely, a preset temporary password is generated; The preset temporary password is sent to the first terminal via a message processing device.
13. The file server according to claim 12, characterized in that, The processor is also used for: The preset temporary password is sent to the message processing device, which then sends a binary data short message to the first terminal, the binary data short message carrying the preset temporary password.
14. The file server according to claim 11, characterized in that, The processor is also used for: Obtain the target file transmitted by the second terminal and the security indication information associated with the target file, wherein the security indication information is used to indicate that the target file needs to be downloaded securely.
15. A file server, comprising a memory, a processor, and a program stored in the memory and executable on the processor; characterized in that, When the processor executes the program, it implements the file transfer method as described in any one of claims 1 to 4.
16. A file transfer device, characterized in that, Applied to a terminal, wherein the terminal is a first terminal, comprising: A first sending module is configured to send a first request message to a file server requesting the download of a target file. The first request message carries a preset temporary password, which is assigned to the first terminal by the file server. The first request message supports the HTTP protocol and is an HTTPS GET request. The first request message is sent by the first terminal after receiving a SIP message from a message processing device carrying the file address where the target file is stored. The file server determines whether the target file needs to be downloaded securely through indication information carried in an HTTPS POST signal sent by a second terminal. The second terminal is the terminal that uploads the target file to the file server via the HTTPS POST signal. The preset temporary password is a one-time password and is stored in the first terminal in a manner invisible to the user. The second receiving module is used to receive the target file corresponding to the first request message transmitted by the file server; the target file is transmitted by the file server to the first terminal when the indication information indicates that the target file needs to be downloaded securely and the first request message carries a preset temporary password.
17. A terminal, said terminal being a first terminal, comprising a processor and a transceiver, said transceiver receiving and transmitting data under the control of the processor, characterized in that, The processor is used to perform the following process: A first request message for downloading a target file is sent to a file server via a transceiver. This first request message carries a preset temporary password, which is assigned to the first terminal by the file server. The first request message supports the HTTP protocol and is an HTTPS GET request. The first request message is sent by the first terminal after receiving a SIP message from a message processing device containing the file address where the target file is stored. The file server determines whether the target file needs to be downloaded securely through indication information carried in an HTTPS POST signal sent by a second terminal. The second terminal is the terminal that uploads the target file to the file server via the HTTPS POST signal. The preset temporary password is a one-time password and is stored in the first terminal in a manner invisible to the user. The file server receives the target file corresponding to the first request message transmitted by the file server. The target file is transmitted to the first terminal by the file server when the indication information indicates that the target file needs to be downloaded securely and the first request message carries a preset temporary password.
18. The terminal according to claim 17, characterized in that, The transceiver is also used for: A second request message is sent to the file server to request the download of a target file, so that the file server generates a preset temporary password if the target file corresponding to the second request message needs to be downloaded securely; The preset temporary password is sent by the message processing device and is sent by the file server to the message processing device. Upon receiving the preset temporary password sent by the message processing device, a first request message is sent to the file server to request the download of the target file.
19. The terminal according to claim 18, characterized in that, The transceiver is also used for: The device receives a binary data short message sent by a message processing device, the binary data short message carrying the preset temporary password.
20. The terminal according to claim 18, characterized in that, The target file is transmitted to the file server by the second terminal, and the target file is associated with security indication information, which is used to indicate that the target file needs to be downloaded securely.
21. The terminal according to claim 18, characterized in that, The processor is also used for: The transceiver receives a download link, including the file address of the target file, sent by the message processing device. The download link is sent to the message processing device by the file server. Upon receiving a user's access operation to the download link, a second request message is generated to request the download of the target file; Send the second request message to the file server.
22. A terminal, said terminal being a first terminal, comprising a memory, a processor, and a program stored in the memory and executable on the processor; characterized in that, When the processor executes the program, it implements the file transfer method as described in any one of claims 5 to 9.
23. A computer-readable storage medium having a computer program stored thereon, characterized in that, When the program is executed by the processor, it implements the steps of the file transfer method as described in any one of claims 1 to 4, or implements the steps of the file transfer method as described in any one of claims 5 to 9.
Citation Information
Patent Citations
Mail sending method, device and system
CN105357110A