Cross-system electronic file security processing method, system, equipment and medium

By creating electronic file processing tasks in the initial system and synchronizing them to the trusted system through a security gateway and API open platform, the cumbersome cross-platform electronic file processing tasks are solved, and efficient electronic file security processing and convenient user operations are achieved.

CN120034531APending Publication Date: 2025-05-23BEIJING ANZHENGTONG INFORMATION TECH HLDG CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202510094238.3
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-01-21
Publication Date
2025-05-23

AI Technical Summary

Technical Problem

The electronic file processing tasks of the existing technology mid-to-cross-platform require tedious electronic sealing procedures, which consumes a lot of time and energy and reduces business processing efficiency.

Method used

Create electronic file processing tasks in the initial system, including electronic file and task configuration information, authenticate task configuration information through a security gateway, and synchronize to the trusted system through the API open platform. After verifying the user's identity information in a trusted system, the user accesses the initial system through a single point of view to perform electronic file processing tasks.

Benefits of technology

Through this method, cross-system electronic file security processing is realized, repeated login and verification steps are reduced, user operation convenience and efficiency are improved, data confidentiality and isolation between systems are ensured.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120034531A_ABST
    Figure CN120034531A_ABST
Patent Text Reader

Abstract

The invention relates to a cross-system electronic file security processing method, system, device and medium, and provides a cross-system electronic file security signature method, system, device and medium, the method comprises the following steps: creating an electronic file processing task in an initial system, the electronic file processing task comprising an electronic file and task configuration information; after the security gateway authenticates the task configuration information, synchronizing the task configuration information to the trusted system through an API open platform; verifying the identity information of the user according to the user information of the processed file in the trusted system; and after the verification is passed, the user accesses an initial system in a single-point form to process the electronic file, so that the problem of safety of cross-platform electronic task configuration information is solved.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the field of computer information processing technology, and in particular to a cross-system electronic file security processing method, system, device and medium. Background Art

[0002] With the deepening of digital transformation, electronic document processing tasks have become a common practice in business and personal affairs, and the convenience and efficiency of electronic seals have been widely recognized and adopted. In this process, digital signature technology plays a core role. It uses the security mechanism of public key encryption to ensure the accurate verification of the identity of the task processor and the integrity of the file through digital signatures, timestamp signatures, graphical signatures and other means.

[0003] However, despite the large number of electronic processing task platforms on the market, in order to ensure the security of documents and seals, they often build their own independent ecosystems, which are manifested in the isolation of services, frameworks and data. This decentralization not only increases the complexity of users' operations, but also prolongs the processing task process, especially when it comes to cross-platform operations, the experience is particularly poor. Specifically, when users face electronic document processing tasks on different platforms, they must repeat the tedious steps of registration, login, real-name authentication and even application for electronic seals, which undoubtedly consumes a lot of time and energy. This problem is particularly prominent in the business environment. The document processing tasks between enterprises and upstream and downstream partners often need to complete the above processes in multiple independent systems. The transmission of original documents across services, especially electronic contract documents, may cause problems such as document leakage and asynchronous signing of bilateral tasks. Especially when the real-name authentication within the enterprise needs to go through complex authorization and approval, this not only reduces the efficiency of document processing tasks, but sometimes even touches the validity period of the documents, affecting the smooth progress of business. In order to solve this pain point, the industry is exploring more efficient solutions to break down barriers between platforms and achieve a seamless cross-platform task processing experience. This includes standardized identity authentication processes, a unified electronic seal management system, and smarter document management tools, in order to reduce duplication of work, improve task processing efficiency, and ultimately achieve true convenience and popularization of electronic document processing tasks.

[0004] Therefore, there is an urgent need to propose a cross-system electronic document security processing method to solve the problem that cross-platform electronic document processing tasks require cumbersome electronic seal procedures, which consumes a lot of time and energy and reduces business processing efficiency. Summary of the invention

[0005] In order to overcome the problems existing in the related art, the present disclosure provides a cross-system electronic file security processing method, system, device and medium to solve the technical problem that the cross-platform electronic file processing tasks in the related art require cumbersome electronic seal procedures, which consumes a lot of time and energy and reduces the processing efficiency of the business.

[0006] One or more embodiments of this specification provide a cross-system electronic file security processing method, including the following steps:

[0007] Creating an electronic file processing task in the initial system, wherein the electronic file processing task includes an electronic file and task configuration information, wherein the task configuration information includes basic file information, processing task information, remote processing authority, trusted system information, user information for processing the file, the user's file processing authority, and a file processing order;

[0008] After the security gateway authenticates the task configuration information, the task configuration information is synchronized to the trusted system through the API open platform;

[0009] Verifying the user's identity information in the trusted system based on the user information of the processed file;

[0010] After verification, the user accesses the initial system through a single point to perform the electronic document processing task.

[0011] Preferably, the method further comprises the following steps:

[0012] After the electronic file processing task is completed, the status of the electronic file is synchronized to the trusted system.

[0013] Preferably, after the security gateway authenticates the task configuration information, synchronizing the task configuration information to the trusted system through the API open platform specifically includes the following steps:

[0014] After the security gateway authenticates the task configuration information, the task configuration information is synchronized to the corresponding trusted system in sequence through the API open platform according to the file processing order.

[0015] Preferably, before verifying the identity information of the user according to the user information of the processed file in the trusted system, the following steps are also included:

[0016] The user performs real-name authentication in the trusted system, and the authenticated user is associated with the corresponding electronic file to form an agent queue for the electronic file.

[0017] One or more embodiments of this specification provide a cross-system electronic document security processing system, including a task creation module, an authentication module, a verification module, and an operation module;

[0018] The task creation module is used to create an electronic file processing task in the initial system, wherein the electronic file processing task includes an electronic file and task configuration information, wherein the task configuration information includes basic file information, processing task information, remote processing authority, trusted system information, user information for processing the file, the user's file processing authority, and the file processing order;

[0019] The authentication module is used to synchronize the task configuration information to the trusted system through the API open platform after the security gateway authenticates the task configuration information;

[0020] The verification module is used to verify the user's identity information according to the user information of the processed file in the trusted system;

[0021] The operation module is used to verify the user's identity information according to the user information of the processed file in the trusted system.

[0022] Preferably, it also includes a synchronization module, which is used to synchronize the status of the electronic file to the trusted system after the electronic file processing task is completed.

[0023] Preferably, the authentication module is specifically configured to synchronize the task configuration information to the corresponding trusted system in sequence through the API open platform according to the file processing order after the security gateway authenticates the task configuration information.

[0024] Preferably, it also includes an authentication module, which is used to synchronize the task configuration information to the corresponding trusted system in sequence through the API open platform according to the file processing order after the security gateway authenticates the task configuration information.

[0025] One or more embodiments of the present specification provide a computer device, including a memory, a processor, and a computer program stored in the memory and executable on the processor, wherein the processor implements the above-mentioned cross-system electronic file security processing method when executing the computer program.

[0026] One or more embodiments of the present specification provide a computer-readable storage medium storing a computer program, which, when executed by a processor, implements the steps of the above-mentioned cross-system electronic file security processing method.

[0027] The present disclosure provides a cross-system electronic file security processing method, system, device and medium, which have the advantages of creating an electronic file processing task in an initial system, wherein the electronic file processing task includes an electronic file and task configuration information, wherein the task configuration information includes basic file information, processing task information, remote processing authority, trusted system information, user information for processing files, user file processing authority and file processing sequence, which is conducive to comprehensive management and monitoring of the file processing process; after the security gateway authenticates the task configuration information, it can perform preliminary legitimacy and security checks before transmitting data between systems, effectively preventing illegal tasks or malicious data from entering the trusted system, ensuring the relative purity and security of the trusted system environment, and opening the platform through the API Synchronizing the task configuration information to the trusted system is conducive to the integration and data interaction between systems; verifying the user's identity information in the trusted system based on the processing configuration information ensures that only authorized legal users can access and operate electronic files, prevents unauthorized users from obtaining sensitive information, and ensures the confidentiality of data; after the verification, the user accesses the initial system in a single-point form to perform the electronic file processing task, without the need to frequently switch between multiple systems or interfaces and repeatedly log in to verify, which greatly improves the convenience and efficiency of user operations, can separate the initial system from the trusted system, and through specific authentication and synchronization processes, achieves isolation between systems, reduces duplication of work, improves the efficiency of processing tasks, and ultimately achieves true convenience and popularization of electronic file processing tasks. BRIEF DESCRIPTION OF THE DRAWINGS

[0028] In order to more clearly illustrate one or more embodiments of this specification or the technical solutions in the prior art, the drawings required for use in the embodiments or the description of the prior art will be briefly introduced below. Obviously, the drawings described below are only some embodiments recorded in this specification. For ordinary technicians in this field, other drawings can be obtained based on these drawings without paying creative labor.

[0029] Figure 1 A flowchart of a cross-system electronic file security processing method provided for one or more embodiments of this specification;

[0030] Figure 2 A schematic diagram of the structure of a cross-system electronic file security processing system provided for one or more embodiments of this specification;

[0031] Figure 3 A schematic diagram of the structure of a computer device provided for one or more embodiments of this specification. DETAILED DESCRIPTION

[0032] In order to enable those skilled in the art to better understand the technical solutions in one or more embodiments of this specification, the technical solutions in one or more embodiments of this specification will be clearly and completely described below in conjunction with the drawings in one or more embodiments of this specification. Obviously, the described embodiments are only part of the embodiments of this specification, not all of the embodiments. Based on one or more embodiments of this specification, all other embodiments obtained by ordinary technicians in this field without creative work should fall within the protection scope of the present invention.

[0033] The present invention is described in detail below in conjunction with specific implementation methods and the accompanying drawings.

[0034] Method Embodiment

[0035] According to an embodiment of the present invention, a cross-system electronic file security processing method is provided, such as Figure 1 FIG. 1 is a flow chart of a cross-system electronic file security processing method provided by this embodiment. The cross-system electronic file security processing method according to the embodiment of the present invention includes the following steps:

[0036] S110. Create an electronic file processing task in the initial system. The electronic file processing task includes an electronic file and task configuration information. The task configuration information includes basic file information, processing task information, remote processing authority, trusted system information, user information for processing the file (name / name, ID number / code), user's file processing authority and file processing order. The initial system is responsible for the initiation and storage of the file.

[0037] S120. After the security gateway authenticates the task configuration information, the task configuration information is synchronized to the trusted system through the API open platform. Different systems refer to computer services with independent service deployment, system architecture, user experience and product functions. The gateway service, as an authentication service for an independent system, supports trusted authentication for different systems, provides security verification functions such as application authentication, user identity verification and interface docking, and ensures secure authentication across systems. The authentication method includes application authentication and authentication of interface mandatory fields. After the task configuration information is double authenticated by the local service gateway and the cloud-based trusted system gateway, the task configuration information is synchronized to the cloud-based trusted system through the interface. The processing task information is associated with the processing task user and then stored in the trusted system service. The original file is still retained in the initial system and is managed uniformly by it, thereby effectively ensuring file security. The access rights of the security gateway are controlled by the initial system, ensuring that while improving the efficiency of processing tasks, the confidentiality of the documents to be signed is protected to the maximum extent.

[0038] S130: verifying the user's identity information in the trusted system according to the user information of the processed file.

[0039] When users register and log in to the trusted system using mobile phones or emails, they need to complete personal real-name authentication and corporate real-name authentication. Personal real-name authentication refers to the verification method for personal identity information (name, ID number and other information that uniquely identifies the user), which specifically includes two-factor ID card verification, liveness authentication or UnionPay card four-factor verification, etc., access to the national trusted database, and verify the identity of the current login account; corporate real-name authentication is the process of verifying the basic information and corporate identity of legally registered companies in the country, which specifically includes corporate business information verification, public account payment, legal person combination inspection and other means. After verifying the authenticity of the identity, the file task data related to the user (individual / enterprise) can be queried in the trusted system.

[0040] S140: After the verification is passed, the user accesses the initial system in a single-point manner to execute the electronic document processing task.

[0041] Specifically, after real-name authentication, users log in to the trusted system, which supports single-point access to the initial platform for file preview and processing tasks. After double security verification by the cloud gateway and the local gateway, the associated electronic files are added to the to-do list, and the authority is directly associated with the identity. Only users can operate the electronic files associated with them, and the operations that comply with the operation authority cannot perform other management operations on the electronic files in the initial system. Get the file processing task address in the local service, call the independent signature service in the local service, and after the authentication is passed, open the local to-be-signed file preview through the software, so as to meet the customer's demand for viewing the local original text. After the user confirms the content of the original text, stamp the seal at the designated location, and complete the file processing task through user intention authentication. Intention authentication refers to the operation related to user uniqueness through liveness authentication, UnionPay card 4 elements, etc., which is used to verify that the current operation is the operation of the user. When users perform file processing tasks, the processing task services and file services they use are all in the local initialization system, ensuring that the viewing and processing tasks of source files are only in the local initialization system. The preview operation is applicable to files that have not been operated on or have been completed in the sequential signature scenario. The operator has a single-point access to the initial system to preview the file.

[0042] The method provided in this embodiment creates an electronic file processing task in the initial system, wherein the electronic file processing task includes the electronic file and task configuration information, wherein the task configuration information includes basic file information, processing task information, remote processing authority, trusted system information, user information of the processed file, the user's file processing authority and the file processing sequence, which is conducive to comprehensive management and monitoring of the file processing process; after the security gateway authenticates the file processing task, it can perform a preliminary legitimacy and security check before transmitting data between systems, effectively preventing illegal tasks or malicious data from entering the trusted system, ensuring the relative purity and security of the trusted system environment, and synchronizing to the trusted system through the API open platform, which is conducive to integration and data interaction between systems; In the trusted system, the user's identity information is verified according to the processing configuration information to ensure that only authorized legitimate users can access and operate the electronic files in the initial system in a single-point manner, prevent unauthorized users from obtaining sensitive information, and ensure the confidentiality of the data; after the verification, the user processes the electronic file in a single-point manner, without the need to frequently switch between multiple systems or interfaces and repeatedly log in to verify, which greatly improves the convenience and efficiency of user operations. The cloud cannot directly obtain the original electronic file of the contract, and the initial system can be separated from the trusted system to ensure the integrity and confidentiality of the original text. Through specific authentication and synchronization processes, isolation between systems is achieved, duplication of work is reduced, and the efficiency of processing tasks is improved, ultimately achieving true convenience and popularization of electronic file processing tasks.

[0043] In one embodiment, after the security gateway performs authentication, the file processing task is synchronized to the trusted system through the API open platform, which specifically includes the following steps:

[0044] After the security gateway authenticates the file processing task according to the processing configuration information, it is synchronized to the corresponding trusted system in sequence through the API open platform according to the user's file processing order.

[0045] The file processing sequence refers to the file operation process in the electronic file operation process, which involves multiple file operations and has a specified operation sequence. In this scenario, an electronic file contains multiple operating users (individuals / enterprises). The operation sequence of each operating user is strictly specified in the operation task. If the previous user has not completed the operation, the operating user in the next position cannot operate. And when the current user refuses to fill in or sign the operation task, the file automatically stops operating. Sequential operation is a typical branch process in the standard operation process.

[0046] When the user in the sequential operation is performing normal file operations, such as when the authenticated user is previewing the file through the gateway service and there is a part of the file that he does not recognize, he can choose to refuse to fill in / refuse to sign the file. This abnormal file operation also applies to the user's secure access to the file operation process through the off-site gateway. After the refusal to fill in / refuse to sign operation, the electronic seal will not be used to operate the source file, but the status of the file task will be directly changed. The file task information will be synchronized and updated between the initial localization system and the cloud trusted platform through the off-site operation security gateway. For sequential operation files that have been handled abnormally, the operating user who has not operated the file will no longer have the right to preview and operate the file through the gateway.

[0047] The method provided in this embodiment can effectively strengthen security management and control, sequentially and synchronously ensure the stability and reliability of the system and orderly data processing, conform to business processes and facilitate monitoring and auditing, and improve the overall system operation efficiency and security.

[0048] In one embodiment, the following steps are also included:

[0049] After the electronic file processing task is completed, the status of the electronic file is synchronized to the trusted system. After the user completes the electronic file operation through the trusted system single point access to the initial system, the electronic file status needs to be synchronized through the interface to ensure the status unity and synchronization between the initial system and the trusted system. After the electronic file owner completes the processing task, the electronic file status needs to be synchronized as a processed task. The file initiator can withdraw, terminate, supplement, etc. the file, and the file user can also fill in, sign, refuse to fill in, refuse to sign, and urge the file to be processed.

[0050] The following is a further explanation of the status synchronization process using the initiator's contract withdrawal as an example. The contract initiator performs an emergency withdrawal operation on the initiated contract in the local initialization system. After the contract is double-authenticated by the local gateway service and the cloud gateway, the contract signing task status is updated to the cloud trusted system. The signing task information in the cloud trusted platform can be shielded to prevent the contract signing subject from mistakenly signing the contract document when logging in to the cloud trusted platform with real name. If the synchronization fails due to an abnormality in the gateway service, when the signing subject accesses the local initial system through the gateway to sign the document, the consistency of the task status on both the cloud platform and the local initial system will be compared during authentication. If the status is inconsistent, the contract task status in the local initial system will prevail, further avoiding the risk of mistaken signing.

[0051] In one embodiment, before verifying the identity information of the user according to the user information of the processed file in the trusted system, the following steps are also included:

[0052] The user performs real-name authentication in the trusted system, and the authenticated user is associated with the corresponding electronic file to form an agent queue for the electronic file.

[0053] Users of the trusted cloud trust platform need to complete personal real-name authentication and corporate real-name authentication. Personal real-name authentication refers to the verification method for personal identity information (name, certificate number and other information that uniquely identifies the subject), which specifically includes two-factor ID card verification, liveness authentication or four-factor UnionPay card verification, etc., access to the national trusted database, and verification of the current login account identity; corporate real-name authentication is the process of verifying the basic information and corporate identity of legally registered companies in the country, which specifically includes corporate business information verification, public account payment, legal person combination inspection and other means. After verifying the authenticity of the identity, the contract task data related to the subject (individual / enterprise) can be queried in the trusted platform.

[0054] After real-name authentication, the subject logs in to the trusted platform, queries the contract signing task, and obtains the contract document signing address in the local service after double security verification by the cloud gateway and the local gateway. The independent signature service in the local service is called up. After authentication, the local document to be signed is opened through the software for preview, thereby meeting the customer's demand for viewing the local original text. After the user confirms the content of the original text, the seal is affixed to the designated location, and the contract signing is completed through the subject's intention authentication. Intention authentication refers to the operation related to the uniqueness of the subject through liveness authentication, UnionPay card 4 elements, etc., which is used to verify that the current operation is the action of the user. When the user performs the document signing process, the signing service and file service used are all in the local initialization system, ensuring that the viewing and signing of the source file are only in the local initialization system.

[0055] System Example

[0056] According to an embodiment of the present invention, a cross-system electronic file security processing system is provided. Figure 2 As shown, it is a structural diagram of the cross-system electronic document security processing system provided in this embodiment. The cross-system electronic document security processing system according to the embodiment of the present invention includes a task creation module 21, an authentication module 22, a verification module 23 and an operation module 24.

[0057] The task creation module 21 is used to create an electronic file processing task, which includes an electronic file and task configuration information. The task configuration information includes basic file information, processing task information, remote processing authority, trusted system information, user information for processing files, user file processing authority and file processing order.

[0058] The authentication module 22 is used to synchronize the task configuration information to the trusted system through the API open platform after the security gateway authenticates the task configuration information.

[0059] The verification module 23 is used to verify the user's identity information according to the user information of the processed file in the trusted system.

[0060] The operation module 24 is used for the user to access the initial system through a single point to execute the electronic document processing task after the verification is passed.

[0061] The system provided by the present embodiment creates an electronic file processing task, wherein the electronic file processing task includes an electronic file and task configuration information, wherein the task configuration information includes basic file information, processing task information, remote processing authority, trusted system information, user information of the processed file, the user's file processing authority and the file processing sequence, which is conducive to comprehensive management and monitoring of the file processing process; after the security gateway authenticates the file processing task, it can perform a preliminary legitimacy and security check before transmitting data between systems, effectively preventing illegal tasks or malicious data from entering the trusted system, ensuring the relative purity and security of the trusted system environment, and synchronizing to the trusted system through the API open platform The system is conducive to the integration and data interaction between systems; in the trusted system, the user's identity information is verified according to the processing configuration information to ensure that only authorized legal users can access and operate electronic files, prevent unauthorized users from obtaining sensitive information, and ensure the confidentiality of data; after the verification, the user processes the electronic file in a single-point manner, without the need to frequently switch between multiple systems or interfaces and repeat login verification, which greatly improves the convenience and efficiency of user operations, can separate the initial system from the trusted system, and through specific authentication and synchronization processes, realizes isolation between systems, reduces duplication of work, improves the efficiency of processing tasks, and ultimately realizes the real convenience and popularization of electronic file processing tasks.

[0062] In one embodiment, a synchronization module is further included, which is used to synchronize the status of the electronic file to the trusted system after the electronic file processing task is completed.

[0063] In one embodiment, the authentication module 22 is specifically configured to synchronize the task configuration information to the corresponding trusted system in sequence through the API open platform according to the file processing order after the security gateway authenticates the task configuration information.

[0064] The system provided in this embodiment can effectively strengthen security management and control, and synchronously ensure the stability and reliability of the system and orderly data processing, conform to business processes and facilitate monitoring and auditing, thereby improving the overall system operation efficiency and security.

[0065] In one embodiment, it also includes an authentication module, which is used for users to perform real-name authentication in the trusted system, and associate the authenticated users with corresponding electronic files to form an agent queue for electronic files.

[0066] The system provided in this embodiment can enhance the security and standardization of file processing, achieve accurate user positioning and orderly task management, and improve the efficiency and reliability of the trusted system file processing process.

[0067] The embodiment of the present invention is a system embodiment corresponding to the above-mentioned method embodiment. The specific operations of the processing steps of each module can be understood by referring to the description of the method embodiment, which will not be repeated here.

[0068] like Figure 3 As shown, the present invention also provides a computer-readable storage medium on which a computer program is stored. When the computer program is executed by a processor, the secure operation method in the above-mentioned embodiment is implemented, or when the computer program is executed by a processor, the cross-system electronic file secure processing method in the above-mentioned embodiment is implemented.

[0069] Those skilled in the art can understand that all or part of the processes in the above-mentioned embodiment methods can be completed by instructing the relevant hardware through a computer program, and the computer program can be stored in a non-volatile computer-readable storage medium. When the computer program is executed, it can include the processes of the embodiments of the above-mentioned methods. Among them, any reference to memory, storage, database or other media used in the embodiments provided in this application can include non-volatile and / or volatile memory. Non-volatile memory can include read-only memory (ROM), programmable ROM (PROM), electrically programmable ROM (EPROM), electrically erasable programmable ROM (EEPROM) or flash memory. Volatile memory can include random access memory (RAM) or external cache memory. As an illustration and not limitation, RAM is available in many forms, such as static RAM (SRAM), dynamic RAM (DRAM), synchronous DRAM (SDRAM), double data rate SDRAM (DDRSDRAM), enhanced SDRAM (ESDRAM), synchronous link (Synchlink) DRAM (SLDRAM), memory bus (Rambus) direct RAM (RDRAM), direct memory bus dynamic RAM (DRDRAM), and memory bus dynamic RAM (RDRAM).

[0070] Each embodiment in this specification is described in a progressive manner, and the same or similar parts between the embodiments can be referred to each other, and each embodiment focuses on the differences from other embodiments. In particular, for the device or system embodiment, since it is basically similar to the method embodiment, the description is relatively simple, and the relevant parts can be referred to the partial description of the method embodiment. The device and system embodiments described above are merely schematic, wherein the units described as separate components may or may not be physically separated, and the components displayed as units may or may not be physical units, that is, they may be located in one place, or they may be distributed on multiple network units. Some or all of the modules may be selected according to actual needs to achieve the purpose of the scheme of this embodiment. Ordinary technicians in this field can understand and implement it without paying creative labor.

[0071] Finally, it should be noted that the above embodiments are only used to illustrate the technical solutions of the present invention, rather than to limit it. Although the present invention has been described in detail with reference to the above embodiments, those skilled in the art should understand that they can still modify the technical solutions described in the above embodiments, or replace some or all of the technical features therein by equivalents. These modifications or replacements do not make the essence of the corresponding technical solutions deviate from the scope of the technical solutions of the embodiments of the present invention, and the contents not described in detail in the specification of the present invention belong to the common knowledge of those skilled in the art.

Claims

1. A cross-system electronic file security processing method, characterized in that: The following steps are involved: Creating an electronic file processing task in the initial system, wherein the electronic file processing task includes an electronic file and task configuration information, wherein the task configuration information includes basic file information, processing task information, remote processing authority, trusted system information, user information for processing the file, the user's file processing authority, and a file processing order; After the security gateway authenticates the task configuration information, the task configuration information is synchronized to the trusted system through the API open platform; Verifying the user's identity information in the trusted system based on the user information of the processed file; After verification, the user accesses the initial system through a single point to perform the electronic document processing task.

2. The method for secure signature according to claim 1, characterized in that: The following steps are also included: After the electronic file processing task is completed, the status of the electronic file is synchronized to the trusted system.

3. The method for secure signature according to claim 1, characterized in that: After the security gateway authenticates the task configuration information, synchronizing the task configuration information to the trusted system through the API open platform specifically includes the following steps: After the security gateway authenticates the task configuration information, the task configuration information is synchronized to the corresponding trusted system in sequence through the API open platform according to the file processing order.

4. The method for secure signature according to claim 1, characterized in that: Before verifying the identity information of the user according to the user information of the processed file in the trusted system, the following steps are also included: The user performs real-name authentication in the trusted system, and the authenticated user is associated with the corresponding electronic file to form an agent queue for the electronic file.

5. A cross-system electronic file security processing system, characterized in that: It includes task creation module, authentication module, verification module and operation module; The task creation module is used to create an electronic file processing task in the initial system, wherein the electronic file processing task includes an electronic file and task configuration information, wherein the task configuration information includes basic file information, processing task information, remote processing authority, trusted system information, user information for processing the file, the user's file processing authority, and the file processing order; The authentication module is used to synchronize the task configuration information to the trusted system through the API open platform after the security gateway authenticates the task configuration information; The verification module is used to verify the user's identity information according to the user information of the processed file in the trusted system; The operation module is used to allow the user to access the initial system in a single-point manner to execute the electronic document processing task after verification.

6. The secure operating system according to claim 5, characterized in that: It also includes a synchronization module, which is used to synchronize the status of the electronic file to the trusted system after the electronic file processing task is completed.

7. The secure operating system according to claim 5, characterized in that: The authentication module is specifically configured to synchronize the task configuration information to the corresponding trusted system in sequence through the API open platform according to the file processing order after the security gateway authenticates the task configuration information.

8. The secure operating system according to claim 6, characterized in that: It also includes an authentication module, which is used for users to perform real-name authentication in a trusted system, and associate the authenticated users with corresponding electronic files to form an agent queue for electronic files.

9. A computer device comprising a memory, a processor, and a computer program stored in the memory and executable on the processor, characterized in that: When the processor executes the computer program, the cross-system electronic file security processing method as described in any one of claims 1 to 4 is implemented.

10. A computer-readable storage medium storing a computer program, characterized in that: When the computer program is executed by a processor, the steps of the cross-system electronic file security processing method as claimed in any one of claims 1 to 4 are implemented.