Database encryption method, terminal and system suitable for cloud environment

By combining the symmetric cryptographic system with cryptographic configuration management tools, soft certificates and digital envelopes are generated to protect key transmission, solving the problems of gradually decreasing data upload security and insufficient key generation and transmission in cloud databases. This implements an encryption solution with high security and low performance loss, adapting to the rapid deployment and elastic expansion of cloud environments.

CN115913621BActive Publication Date: 2025-09-09CHINA TELECOM QUANTUM TECH CO LTD
View PDF 4 Cites 0 Cited by

Patent Information

Application Number
CN202211182127.0
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2022-09-27
Publication Date
2025-09-09
Estimated Expiration
2042-09-27

AI Technical Summary

Technical Problem

In the existing technology, cloud databases have the problem of gradually decreasing security during data upload, and the protection of key generation and transmission processes is insufficient, which cannot meet the needs of rapid deployment and elastic expansion of cloud environments.

Method used

A cloud database encryption method based on a symmetric cryptographic system is adopted. The management node obtains the charging key from the key management platform for identity authentication, generates the working key ciphertext, and distributes it to the service node and client in real time. Combined with the password configuration management tool, soft certificates and digital envelopes are generated to protect key transmission, realizing a "one-time one-key" encryption mechanism.

Benefits of technology

It improves the security and performance of cloud databases, meets the needs of rapid deployment and elastic expansion in cloud environments, implements an encryption solution with high security and low performance loss, and adapts to the needs of transparent encryption of cloud databases.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN115913621B_ABST
    Figure CN115913621B_ABST
Patent Text Reader

Abstract

The present invention discloses a database encryption method, terminal, and system suitable for cloud environments, belonging to the field of cloud database technology. The method comprises: completing identity authentication with the key management platform to which it belongs based on a pre-filled key obtained from the key management platform; generating a working key ciphertext based on key application information and the key obtained from the key management platform; receiving a working key application sent by the service node and the client, and issuing the corresponding working key to the service node and the client, so that the client and the service node can parse the working key ciphertext, obtain the working key, and store it; and the service node receives and stores the encrypted data sent by the client. The data encryption mechanism between the cloud database client and the server proposed in the present invention is based on a symmetric cryptographic system, which realizes real-time working key distribution between the cloud database client and the cloud server, and improves security compared to the traditional public-private key method.
Need to check novelty before this filing date? Find Prior Art

Citation Information

Patent Citations

  • Cloud database encryption method, system and device

    CN104426973A

  • Data processing method and system, product, equipment and storage medium

    CN113987563A

  • Quantum communication encryption system and method for realizing mobile communication quantum encryption transmission

    CN111865589A

  • Quantum key management service method and system and storage medium

    CN112737781A