Electronic screen file distribution content tampering detection method and system based on lightweight cryptographic algorithm

By adopting a file distribution content tamper detection method based on lightweight national secret algorithm in the electronic screen broadcast control system, the problem of lack of content tamper detection mechanism in the existing technology is solved, and timely detection and response to file content is achieved to ensure the accuracy and reliability of information.

CN120105487APending Publication Date: 2025-06-06SHANGHAI PUBLIC SECURITY BUREAU +1
View PDF 3 Cites 0 Cited by

Patent Information

Application Number
CN202510026081.0
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-01-08
Publication Date
2025-06-06

AI Technical Summary

Technical Problem

The existing electronic screen broadcast control system lacks a content tamper detection mechanism during file distribution, which makes it difficult to respond to information tampering events quickly, which may lead to information error display and adverse social impact.

Method used

The electronic screen file distribution content tampering detection method is adopted based on the lightweight national secret algorithm. The electronic screen terminal receives the distribution file, calculates the file summary, and initiates a verification request to the verification server to verify the backup summary data to ensure the integrity of the file content.

Benefits of technology

It realizes timely detection and response to the file content of the electronic screen broadcast control system, preventing the file from being tampered with during the distribution process or local storage process, and ensuring the accuracy and reliability of information.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120105487A_ABST
    Figure CN120105487A_ABST
Patent Text Reader

Abstract

The invention relates to the technical field of image communication, discloses an electronic screen file distribution content tampering detection method, system and device based on a lightweight cryptographic algorithm, a storage medium and a program product, and is used for solving the technical problem that tampering of file content cannot be found in time in the prior art. The method comprises the steps that an electronic screen terminal receives distribution file calculation abstract data from a broadcast control server and initiates a file verification request; the verification server receives and analyzes the file verification request, and compares and verifies the obtained abstract data and the backup abstract data; if the file verification request succeeds, summary data carried in the file verification request is returned to the electronic screen terminal, and the electronic screen terminal receives the summary data verified successfully and stores the summary data as verification summary data; before file playing is executed, the electronic screen terminal obtains the file to be played and calculates abstract data, the abstract data of the file to be played and the verification abstract data are compared and verified, and if the verification succeeds, the electronic screen terminal is controlled to play the file to be played.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the field of image communication technology, and in particular to a method, system, device, storage medium and program product for detecting tampering of electronic screen file distribution content based on a lightweight national secret algorithm. Background Art

[0002] Electronic screen display technology mainly distributes files in various media forms such as pictures, texts, and videos to electronic screen terminals in various geographically dispersed locations through a centralized playback control system with an efficient data transmission protocol, thus achieving real-time update and display of information. With the rapid development of information technology, especially image communication technology, electronic screens are widely used in various public areas and have become an important tool for information display and transmission in places with high traffic volume.

[0003] However, when distributing files, the existing electronic screen playback control methods usually simply transfer the files from the server to each electronic screen terminal device, lacking integrity verification and tampering detection mechanisms for the file content; at the same time, after receiving the file, the electronic screen terminal device also lacks the necessary protection measures to prevent unauthorized local tampering. When an information tampering incident occurs, the existing electronic screen playback control method lacks a rapid response mechanism, which may lead to incorrect information display, misleading the audience, and causing adverse social impacts. Therefore, there is an urgent need for an information tampering prevention method for an electronic screen playback control system, so that during the playback control process of the electronic screen, the tampering of the file content and related information of the electronic screen playback control system can be discovered in a timely manner and responded to in a timely manner. Summary of the invention

[0004] The main purpose of the present invention is to solve the technical problem that the prior art cannot timely detect and respond to the tampering of file content and related information in the electronic screen broadcast control system.

[0005] The first aspect of the present invention provides a method for detecting tampering of content in electronic screen file distribution based on a lightweight national secret algorithm, comprising: an electronic screen terminal receives a distribution file from a broadcast control server, calculates summary data of the distribution file, and initiates a file verification request to a verification server based on the summary data; the verification server receives and parses the file verification request, compares and verifies the summary data carried in the file verification request with backup summary data pre-stored in the verification server, and obtains a backup comparison verification result; if the backup comparison verification result is a successful verification, the summary data carried in the file verification request is returned to the electronic screen terminal, and the electronic screen terminal receives the successfully verified summary data and saves it in the electronic screen terminal as verification summary data; before executing file playback, the electronic screen terminal obtains the file to be played and calculates the summary data of the file to be played, and compares and verifies the summary data of the file to be played with the verification summary data to obtain a local comparison verification result; if the local comparison verification result is a successful verification, no information tampering has occurred, and the electronic screen terminal plays the file to be played.

[0006] Optionally, in a first implementation method of the first aspect of the present invention, the verification server receives and parses the file verification request, compares and verifies the summary data carried in the file verification request with the backup summary data pre-saved in the verification server, and after obtaining the backup comparison verification result, it also includes: if the backup comparison verification result is a verification failure, generating a prompt that the distributed file has been tampered with, and sending a lock screen command to the electronic screen terminal at the same time, and the electronic screen terminal locks the screen after receiving the lock screen command.

[0007] Optionally, in a second implementation method of the first aspect of the present invention, the electronic screen terminal obtains the file to be played and calculates the summary data of the file to be played, and compares and verifies the summary data of the file to be played with the verification summary data to obtain a local comparison and verification result, and further includes: if the local comparison and verification result is a verification failure, a prompt that the local file has been tampered with is generated, and a lock screen command is sent to the electronic screen terminal at the same time. After receiving the lock screen command, the electronic screen terminal locks the screen and sends the verification failure result to the verification server at the same time.

[0008] Optionally, in a third implementation method of the first aspect of the present invention, before the electronic screen terminal receives the distribution file from the broadcast control server, it also includes: the verification server receives an identity authentication request from the broadcast control server, obtains the identity token carried in the identity authentication request from the broadcast control server, and verifies the identity token of the broadcast control server; if the verification of the identity token of the broadcast control server is passed, the verification server receives the distribution file from the broadcast control server, calculates the summary data of the distribution file and encrypts and saves it, to obtain backup summary data; if the verification of the identity token of the broadcast control server fails, a prompt of failed identity authentication of the broadcast control server is generated.

[0009] Optionally, in a fourth implementation method of the first aspect of the present invention, before the verification server receives an identity authentication request from a broadcast control server, obtains an identity token carried in the identity authentication request from the broadcast control server, and verifies the identity token of the broadcast control server, it also includes: the broadcast control server sends an encrypted broadcast control server identity authentication request to the verification server through the broadcast control server key, wherein the identity authentication request includes the license of the broadcast control server; the verification server receives the identity authentication request from the broadcast control server and decrypts it, obtains the license carried in the identity authentication request, and performs broadcast control server identity authentication on the current broadcast control server based on the license; if the broadcast control server identity authentication passes, an identity token of the broadcast control server is generated, and the identity token is sent to the broadcast control server; if the broadcast control server identity authentication fails, a broadcast control server identity authentication failure prompt is generated.

[0010] Optionally, in the fifth implementation method of the first aspect of the present invention, before the broadcast control server sends an encrypted broadcast control server identity authentication request to the verification server through the broadcast control server key, it also includes: registering the broadcast control server related information of the broadcast control server in the verification server, wherein the broadcast control server related information includes the broadcast control server code, the broadcast control server name, the tenant to which the broadcast control server belongs, and the number of electronic screen terminals associated with the broadcast control server; the verification server generates a license certificate for the broadcast control server based on the broadcast control server related information, and generates a broadcast control server key for the broadcast control server; and sends the license certificate and the broadcast control server key to the broadcast control server.

[0011] Optionally, in a sixth implementation method of the first aspect of the present invention, after the electronic screen terminal receives the distribution file from the broadcast control server, calculates the summary data of the distribution file, and initiates a file verification request to the verification server based on the summary data, it also includes: the verification server receives an identity authentication request from the electronic screen terminal, obtains the identity token carried in the identity authentication request from the electronic screen terminal; verifies the identity token of the electronic screen terminal; if the verification of the identity token of the electronic screen terminal passes, continues; if the verification of the identity token of the electronic screen terminal fails, generates an electronic screen terminal authentication failure prompt, and sends a lock screen command to the electronic screen terminal.

[0012] Optionally, in a seventh implementation method of the first aspect of the present invention, the broadcast control server related information also includes association information between the broadcast control server code and the code of the electronic screen terminal; before the verification server receives the identity authentication request from the electronic screen terminal and obtains the identity token carried in the identity authentication request from the electronic screen terminal, it also includes: obtaining the broadcast control server code corresponding to the electronic screen terminal; generating a terminal identity authentication request based on the broadcast control server code corresponding to the electronic screen terminal and sending it to the verification server; the verification server responds to and parses the identity authentication request, and performs identity authentication on the electronic screen terminal based on the broadcast control server code; if the terminal identity authentication passes, the verification server generates an electronic screen terminal key corresponding to the electronic screen terminal, obtains terminal related information of the electronic screen terminal and generates an identity token of the electronic screen terminal based on the terminal related information, and sends the electronic screen terminal key and the identity token of the electronic screen terminal to the electronic screen terminal; if the terminal identity authentication fails, an electronic screen terminal authentication failure prompt is generated, and an encrypted lock screen command is sent to the electronic screen terminal.

[0013] Optionally, in an eighth implementation method of the first aspect of the present invention, the lock screen command is an encrypted lock screen command; before obtaining the broadcast control server code corresponding to the electronic screen terminal, it also includes: the electronic screen terminal calls an encryption algorithm to generate a key pair, the key pair includes a public key and a private key, and the terminal identity authentication request also carries the public key; after sending the lock screen command to the electronic screen terminal at the same time, it also includes: the electronic screen terminal receives the encrypted lock screen command and uses the electronic screen's private key to decrypt the encrypted lock screen command, and executes the corresponding lock screen operation.

[0014] Optionally, in a ninth implementation manner of the first aspect of the present invention, it further includes: the verification server periodically updates the broadcast control server key and sends the public key of the broadcast control server key to the broadcast control server.

[0015] Optionally, in a tenth implementation manner of the first aspect of the present invention, it further includes: the verification server periodically updates the electronic screen terminal key and sends the public key of the electronic screen terminal key to the electronic screen terminal.

[0016] Optionally, in the eleventh implementation manner of the first aspect of the present invention, it also includes: the electronic screen terminal key and the broadcast control server key are generated by calling the lightweight SM2 national encryption algorithm.

[0017] Optionally, in a twelfth implementation manner of the first aspect of the present invention, it also includes: the summary data of the distribution file and the backup summary are generated by calling the lightweight SM3 national encryption algorithm.

[0018] The second aspect of the present invention provides an electronic screen file distribution content tampering detection system based on a lightweight national secret algorithm, comprising: a broadcast control server, used to distribute files to an electronic screen terminal; an electronic screen terminal, used to receive the distribution file from the broadcast control server, calculate the summary data of the distribution file, and initiate a file verification request to a verification server based on the summary data; the verification server, used to receive and parse the file verification request from the electronic screen terminal, compare and verify the summary data carried in the file verification request with the pre-saved backup summary data, and obtain a backup comparison verification result; if the backup comparison verification result is a successful verification, the summary data carried in the file verification request is returned to the electronic screen terminal; the electronic screen terminal is also used to receive the summary data with a successful backup comparison verification result sent by the verification server, and save it in the electronic screen terminal as verification summary data; and, before executing file playback, obtain the file to be played and calculate the summary data of the file to be played, and compare and verify the summary data of the file to be played with the verification summary data to obtain a local comparison verification result; if the local comparison verification result is a successful verification, no information tampering has occurred, and the file to be played is played.

[0019] The third aspect of the present invention provides an electronic screen file distribution content tampering detection device based on a lightweight national secret algorithm, comprising: a memory and at least one processor, the memory storing instructions; the at least one processor calls the instructions in the memory to enable the electronic screen file distribution content tampering detection device based on a lightweight national secret algorithm to perform the steps of the above-mentioned electronic screen file distribution content tampering detection method based on a lightweight national secret algorithm.

[0020] The fourth aspect of the present invention provides a computer-readable storage medium, which stores instructions. When the computer-readable storage medium is run on a computer, it enables the computer to execute the steps of the above-mentioned electronic screen file distribution content tampering detection method based on the lightweight national encryption algorithm.

[0021] The fifth aspect of the present invention provides a computer program product, including a computer program / instruction, characterized in that when the computer program / instruction is executed by a processor, the steps of the above-mentioned electronic screen file distribution content tampering detection method based on a lightweight national encryption algorithm are implemented.

[0022] In the technical solution provided by the present invention, the electronic screen terminal receives the distribution file from the broadcast control server, calculates the summary data of the distribution file, and initiates a file verification request to the verification server based on the summary data; the verification server receives and parses the file verification request, compares and verifies the summary data carried in the file verification request with the backup summary data pre-stored in the verification server, and obtains the backup comparison verification result; if the backup comparison verification result is a successful verification, the summary data carried in the file verification request is returned to the electronic screen terminal, and the electronic screen terminal receives the summary data of the successful verification and saves it in the electronic screen terminal as the verification summary data; before executing the file playback, the electronic screen terminal obtains the file to be played and calculates the summary data of the file to be played, and compares and verifies the summary data of the file to be played with the verification summary data, and obtains the local comparison verification result; if the local comparison verification result is a successful verification, it is determined that no information has been tampered with, and the electronic screen terminal is controlled to play the file to be played. The method can timely discover the situation where the file content has been tampered with and make a corresponding response, can prevent the file from being tampered with during the distribution process or the local storage process, and ensure the accuracy and reliability of the information displayed by the electronic screen terminal. In addition, a system, electronic device, computer-readable storage medium, and computer program product provided by the present invention also solve corresponding technical problems. BRIEF DESCRIPTION OF THE DRAWINGS

[0023] The drawings described herein are used to provide a further understanding of the present application and constitute a part of the present application. The illustrative embodiments of the present application and their descriptions are used to explain the present application and do not constitute an improper limitation on the present application. In the drawings:

[0024] Figure 1 It is a flowchart of a first embodiment of a method for detecting content tampering of electronic screen file distribution based on a lightweight national encryption algorithm in an embodiment of the present invention;

[0025] Figure 2 It is a schematic diagram of a system for detecting tampering of electronic screen file distribution content based on a lightweight national secret algorithm involved in a method for detecting tampering of electronic screen file distribution content based on a lightweight national secret algorithm in an embodiment of the present invention;

[0026] Figure 3 It is a flow chart of a second embodiment of a method for detecting content tampering of electronic screen file distribution based on a lightweight national encryption algorithm in an embodiment of the present invention;

[0027] Figure 4It is a schematic diagram of the processing steps of the second embodiment of the electronic screen file distribution content tampering detection method based on the lightweight national encryption algorithm in an embodiment of the present invention;

[0028] Figure 5 It is a schematic diagram of a key management module in a verification server involved in a method for detecting content tampering of electronic screen file distribution based on a lightweight national secret algorithm in an embodiment of the present invention;

[0029] Figure 6 It is a schematic diagram of an embodiment of an electronic screen file distribution content tampering detection system based on a lightweight national secret algorithm in an embodiment of the present invention;

[0030] Figure 7 It is a schematic diagram of an embodiment of an electronic screen file distribution content tampering detection device based on a lightweight national secret algorithm in an embodiment of the present invention;

[0031] Figure 8 The figure is a schematic diagram of a computer-readable medium in an embodiment of the present invention. DETAILED DESCRIPTION

[0032] Exemplary embodiments of the present invention will now be described more fully with reference to the accompanying drawings. However, exemplary embodiments can be implemented in a variety of forms, and should not be construed as limiting the present invention to the embodiments set forth herein. On the contrary, providing these exemplary embodiments enables the present invention to be more comprehensive and complete, and is more convenient for fully conveying the inventive concept to those skilled in the art. The same reference numerals in the figures represent the same or similar elements, components or parts, and thus their repeated description will be omitted.

[0033] Under the premise of being consistent with the technical concept of the present invention, the features, structures, characteristics or other details described in a specific embodiment do not exclude that they can be combined in one or more other embodiments in a suitable manner.

[0034] In the description of specific embodiments, the features, structures, characteristics or other details described in the present invention are intended to enable those skilled in the art to fully understand the embodiments. However, it does not exclude that those skilled in the art can practice the technical solutions of the present invention without one or more of the specific features, structures, characteristics or other details.

[0035] The flowcharts shown in the accompanying drawings are only exemplary and do not necessarily include all the contents and operations / steps, nor must they be executed in the order described. For example, some operations / steps can be decomposed, and some operations / steps can be combined or partially combined, so the actual execution order may change according to actual conditions.

[0036] The block diagrams shown in the accompanying drawings are merely functional entities and do not necessarily correspond to physically independent entities. That is, these functional entities may be implemented in software form, or in one or more hardware modules or integrated circuits, or in different networks and / or processor devices and / or microcontroller devices.

[0037] The term "and / or" or "and / or" includes all combinations of any one or more of the associated listed items.

[0038] See also Figure 1 In the embodiment of the present invention, the first embodiment of the electronic screen file distribution content tampering detection method based on the lightweight national secret algorithm includes:

[0039] S101, the electronic screen terminal receives a distribution file from a broadcast control server, calculates summary data of the distribution file, and initiates a file verification request to a verification server based on the summary data;

[0040] It is understandable that the execution subject of the present invention can be an electronic screen file distribution content tampering detection system based on a lightweight national secret algorithm, or a terminal or a processing system, which is not limited here. The embodiment of the present invention is described by taking an electronic screen file distribution content tampering detection system based on a lightweight national secret algorithm as an example of the execution subject.

[0041] In this embodiment, when executing specific electronic screen terminal playback control, the main purpose is to prevent the file from being tampered with when the playback control server distributes the file and the file from being tampered with on the electronic screen terminal side.

[0042] In this embodiment, the file to be played by the electronic screen terminal comes from the broadcast control server. After the broadcast control server sends the distribution file to each electronic screen terminal, the electronic screen terminal receives the distribution file and calculates the summary data of the received file. In an actual example, the SM3 national encryption algorithm is specifically called to calculate, and the summary data is a summary hash value; wherein, the SM3 national encryption algorithm refers to the SM3 domestic encryption algorithm, which is a data summary algorithm.

[0043] The electronic screen terminal encrypts the obtained digest hash value using the public key from the verification server, generates a file verification request based on the encrypted digest hash value, and initiates the verification request to the verification server.

[0044] S102, the verification server receives and parses the file verification request, compares and verifies the summary data carried in the file verification request with the backup summary data pre-stored in the verification server, and obtains a backup comparison verification result;

[0045] Before step S101 of the present embodiment, before the broadcast control server sends each distribution file to the electronic screen terminal, the broadcast control server will also synchronously transmit the file to be played to the verification server. After receiving the file, the verification server calls the SM3 national encryption algorithm to calculate the summary hash value to obtain the backup summary data; at the same time, the backup summary data is encrypted and saved by an encryption algorithm to prevent the file content from being viewed or stolen by unauthorized personnel. When encrypting and saving, the encryption algorithm used can be the AES algorithm or other encryption algorithms.

[0046] In this step, the verification server receives the verification request initiated by the electronic screen terminal to the verification server in the previous step, calls the private key corresponding to the public key when encrypting the digest hash value to decrypt it, compares and verifies the obtained digest hash value with the backup digest data pre-stored in the verification server, and obtains the backup comparison verification result. According to the backup comparison verification result, it can be detected whether the file to be played has been tampered with during the process of being transferred from the broadcast control server to the electronic screen terminal.

[0047] S103. If the backup comparison verification result is successful, the summary data carried in the file verification request is returned to the electronic screen terminal. The electronic screen terminal receives the summary data of successful verification and saves it in the electronic screen terminal as verification summary data.

[0048] If the backup comparison verification result is a successful verification, the verification server will return the summary data carried in the verification request sent by the electronic screen terminal file to the electronic screen terminal. The electronic screen terminal receives the successful verification summary data and saves it as the verification summary data; if the backup comparison verification result is a failed verification, it proves that the file to be played has been tampered with in the process of being transferred from the broadcast control server to the electronic screen terminal. At this time, a file tampering prompt is issued, and a warning is issued based on the file tampering prompt; and at the same time, a lock screen command is sent to the corresponding electronic screen terminal, and the electronic screen terminal executes the lock screen operation after receiving the lock screen command.

[0049] S104, before executing file playback, the electronic screen terminal obtains the file to be played and calculates summary data of the file to be played, and compares and verifies the summary data of the file to be played with the verification summary data to obtain a local comparison and verification result;

[0050] When the backup comparison verification result is successful, the electronic screen terminal receives the summary data of successful verification and saves it as the verification summary data, and then executes the next playback process according to the to-be-played file corresponding to the verification summary data. At this time, since the electronic screen terminal receives the to-be-played file from the broadcast control server and saves it in the local storage of the electronic screen terminal, the to-be-played file may be tampered with locally in this link. Therefore, in this embodiment, before executing the specific file playback, it is also detected whether the locally stored to-be-played file has been tampered with.

[0051] Therefore, before executing a specific file playback, the electronic screen terminal obtains the file to be played stored locally and calculates summary data for the file to be played. Specifically, the electronic screen terminal calls the SM3 national encryption algorithm to calculate the summary hash value of the file to be played to obtain the summary data of the local file to be played.

[0052] After obtaining the summary data of the local file to be played, it is compared and verified with the verification summary data saved locally after the backup comparison verification in the previous step to obtain the local comparison verification result. According to the local comparison verification result, it can be detected whether the file to be played has been tampered with during the storage process of the electronic screen terminal.

[0053] S105. If the local comparison and verification result is successful, then the information has not been tampered with, and the electronic screen terminal plays the file to be played.

[0054] If the local comparison and verification result is a successful verification, it is determined that the file to be played has not been tampered with. At this time, the electronic screen terminal adds the file to be played to the play list and plays the file to be played; if the local comparison and verification result is a failed verification, it is determined that the file to be played has been tampered with, a local file tampering prompt is generated, and a warning is generated based on the local file tampering prompt; a lock screen command is sent to the electronic screen terminal, and the electronic screen terminal locks the screen after receiving the lock screen command, and at the same time sends the verification failure result to the verification server.

[0055] The method of the embodiment of the present invention can promptly detect the situation where the file content has been tampered with and make corresponding responses, and can prevent the file and other information from being tampered with during the distribution process or local storage process, thereby ensuring the accuracy and reliability of the information displayed on the electronic screen terminal.

[0056] Please see Figure 2-5 The second embodiment of the electronic screen file distribution content tampering detection method based on the lightweight national secret algorithm in the embodiment of the present invention includes:

[0057] In this embodiment, the execution subject of the present invention can be an electronic screen file distribution content tampering detection system based on a lightweight national secret algorithm, and can also be a terminal or a server, which is not limited here. The embodiment of the present invention takes the electronic screen file distribution content tampering detection system based on a lightweight national secret algorithm as an example of the execution subject. The electronic screen file distribution content tampering detection method based on a lightweight national secret algorithm in this embodiment is mainly used to prevent unauthorized broadcast control servers and electronic screen terminals from sending and receiving files to be played and displaying playback files when executing specific electronic screen terminal playback control, as well as preventing files from being tampered with when the broadcast control server distributes files and files from being tampered with on the electronic screen terminal.

[0058] See also Figure 2 In this embodiment, the electronic screen file distribution content tampering detection system based on the lightweight national secret algorithm is mainly composed of a broadcast control server, an electronic screen terminal and a verification server. The broadcast control server is mainly used to distribute files to the electronic screen terminal. The verification server can perform identity authentication operations on the broadcast control server and the electronic screen terminal, and can also receive files from the broadcast control server and perform metafile backup, and receive files from the electronic screen terminal to verify the file content. The verification server can use encrypted communication when communicating with the broadcast control server and the electronic screen terminal. Specifically, the following is combined with Figure 3 as well as Figure 4 The flowchart diagram and processing step diagram shown in the figure illustrate the processing method of the second embodiment of the electronic screen file distribution content tampering detection method based on the lightweight national encryption algorithm in this embodiment.

[0059] S301, performing identity authentication on the broadcast control server. If the identity authentication of the broadcast control server passes, generating an identity token of the broadcast control server, and sending the identity token to the broadcast control server;

[0060] In this embodiment, the broadcast control server is first authenticated. The broadcast control server's authentication includes first-time authentication and non-first-time authentication. When the authentication is non-first-time authentication, the authentication is performed according to the broadcast control server's authentication token. Specifically, the verification server receives an authentication request from the broadcast control server, obtains the identity token carried in the authentication request from the broadcast control server, and verifies the identity token of the broadcast control server; if the verification of the identity token of the broadcast control server is successful, the verification server receives the distribution file from the broadcast control server, calculates the summary data of the distribution file and encrypts and saves it to obtain backup summary data; if the verification of the identity token of the broadcast control server is unsuccessful, a broadcast control server authentication failure prompt is generated, and a warning is generated based on the broadcast control server authentication failure prompt. Among them, the authentication token can be in the form of a Token string, and a Token string authentication token can be generated by the JWT (Json Web Token) algorithm.

[0061] When the identity authentication of the broadcast control server is the first identity authentication, the broadcast control server related information of the broadcast control server needs to be registered or registered in the verification server before the authentication, wherein the broadcast control server related information includes the broadcast control server code, the broadcast control server name, the tenant to which the broadcast control server belongs, and the number of electronic screen terminals associated with the broadcast control server. The verification server registers and generates a license for the broadcast control server based on the relevant information of the broadcast control server, generates a broadcast control server key for the broadcast control server, and provides the license and the broadcast control server key to the broadcast control server. In a specific implementation, the broadcast control server related information also includes the association information of the broadcast control server code and the electronic screen terminal code, based on the association information, the corresponding electronic screen terminal code can be queried according to the broadcast control server code; similarly, based on the association information, the corresponding broadcast control server code can be queried according to the electronic screen terminal code. Among them, the license certificate can be a license; the broadcast control server key is a key pair consisting of a public key and a private key, and the broadcast control server key generated by the broadcast control server can be the public key and private key of the broadcast control server generated by calling the lightweight SM2 national secret algorithm, wherein the SM2 national secret algorithm refers to the SM2 domestic cryptographic algorithm, which is an asymmetric encryption algorithm. When providing the license and the broadcast control server key to the broadcast control server, they can be provided offline or through online communication. When the broadcast control server is formally authenticated after obtaining the license, it is authenticated through the license and the broadcast control server key obtained in advance. Specifically, the broadcast control server sends an encrypted broadcast control server authentication request to the verification server through the broadcast control server key, wherein the authentication request also includes the license of the broadcast control server; the verification server receives the authentication request from the broadcast control server and decrypts it, obtains the license carried in the authentication request, and performs broadcast control server authentication on the current broadcast control server based on the license; if the broadcast control server authentication passes, an identity token of the broadcast control server is generated, and the identity token is sent to the broadcast control server; if the broadcast control server authentication fails, a broadcast control server authentication failure prompt is generated, and a warning is issued based on the broadcast control server authentication failure prompt. In the case where the broadcast control server authentication passes and the broadcast control server identity token is generated, the subsequent broadcast control server must carry the identity token when making a request to the verification server.

[0062] In this embodiment, the key management module in the verification server can change the broadcast control server key through a pre-set key update cycle or based on a key change instruction. When the broadcast control server key is changed based on the set key update cycle, the verification server periodically updates the broadcast control server key based on the key update cycle and sends the public key of the broadcast control server key to the broadcast control server.

[0063] Preferably, see Figure 5 In a specific implementation, the key management module includes several units: key generation, key storage, key use, key update, key negotiation, key expiration, key backup, and key deletion. The working method of each step is as follows:

[0064] (1) Key generation: When the broadcast control server or electronic screen terminal performs the first identity authentication, the SM2 national encryption algorithm is triggered to generate the corresponding key; at the same time, when the key reaches the update cycle, the key management module of the verification server will also automatically generate a new key;

[0065] (2) Key storage: When a new key is generated, it is automatically stored in the database;

[0066] (3) Key usage: After the key is generated, the communication data between the verification server and the electronic screen terminal or the broadcast control server are all transmitted using the key encryption;

[0067] (4) Key backup: According to the set backup cycle, when the backup cycle is reached, the key database is automatically backed up;

[0068] (5) Key update: According to the set key update cycle, when each key generation time reaches the update cycle, the generation of a new key is automatically triggered;

[0069] (5) Key negotiation: According to the set key negotiation period, when a key is updated, if the old key update time has not reached the negotiation period, the new and old keys can be used at the same time; otherwise, only the latest key can be used;

[0070] (6) Key expiration: When a key is updated and the negotiation period is reached, the key expires and cannot be used anymore.

[0071] (7) Key deletion: According to the set key deletion cycle, when the key expiration time reaches the deletion cycle, the corresponding key in the database is automatically deleted.

[0072] S302, the verification server receives and verifies the identity token of the broadcast control server. If the identity token is passed, the verification server receives the distribution file from the broadcast control server, calculates the summary data of the distribution file, encrypts and saves it, and obtains the backup summary data;

[0073] After obtaining the identity token of the broadcast control server, the broadcast control server can now synchronously distribute files to the verification server. When distributing files synchronously, the broadcast control server carries the identity token and sends the distribution file to the verification server. The verification server receives and verifies the identity token of the broadcast control server. If the identity token verification fails, it is determined that the broadcast control server authentication has failed, and a prompt of the broadcast control server identity authentication failure is generated, and a warning is issued based on the prompt of the broadcast control server identity authentication failure. If the identity token verification passes, the distribution file from the broadcast control server is received, and the file summary hash value is calculated using the lightweight SM3 national secret to obtain the summary data. The summary data is encrypted and saved to obtain the backup summary data, which is used for backup comparison and verification of subsequent files. In a specific implementation method, the backup summary data is encrypted and saved after the summary data is encrypted and saved using the AES algorithm to prevent the file content from being viewed or stolen by unauthorized personnel.

[0074] S303, perform identity authentication on the electronic screen terminal. If the terminal identity authentication passes, the verification server generates an electronic screen terminal key corresponding to the electronic screen terminal, obtains terminal related information of the electronic screen terminal and generates an identity token of the electronic screen terminal according to the terminal related information, and sends the electronic screen terminal key and the identity token of the electronic screen terminal to the electronic screen terminal;

[0075] After the broadcast control server identity authentication is passed and the metafile is backed up in the verification server, the electronic screen terminal also needs to be authenticated; before authentication, the electronic screen terminal calls the encryption algorithm to generate an electronic screen terminal key pair, which is used to encrypt and decrypt the data that the verification server responds to the electronic screen terminal. If the identity authentication fails and a lock screen command needs to be sent later, the lock screen command is sent and received and encrypted and decrypted using the public key and private key in the electronic screen terminal key pair.

[0076] In this embodiment, the identity authentication of the electronic screen terminal includes the first identity authentication and the non-first identity authentication. When the identity authentication is the non-first identity authentication, the identity authentication is performed according to the identity authentication token of the electronic screen terminal. Specifically, the verification server receives the identity authentication request from the electronic screen terminal, obtains the identity token carried in the identity authentication request from the electronic screen terminal; verifies the identity token of the electronic screen terminal; if the verification of the identity token of the electronic screen terminal is passed, then proceeds to the next step, the verification server receives and parses the file verification request and performs subsequent comparison verification; if the verification of the identity token of the electronic screen terminal is not passed, then an electronic screen terminal authentication failure prompt is generated, and a warning is issued based on the electronic screen terminal authentication failure prompt, and a lock screen command is sent to the electronic screen terminal. Among them, the identity authentication token can be in the form of a Token string, and the identity authentication token in the form of a Token string can be generated by the JWT (Json Web Token) algorithm.

[0077] When the identity authentication of the electronic screen terminal is the first identity authentication, the electronic screen terminal initiates an authentication request to the verification server based on the broadcast control server code and the generated key corresponding to the electronic screen terminal. The verification server responds to and parses the identity authentication request, and authenticates the electronic screen terminal based on the broadcast control server code; if the terminal identity authentication fails, an electronic screen terminal authentication failure prompt is generated, and a warning is issued based on the electronic screen terminal authentication failure prompt, and a lock screen command is sent to the electronic screen terminal at the same time, wherein the lock screen command is an encrypted lock screen command, and the lock screen command carries the key pair of the electronic screen terminal. The electronic screen terminal receives the encrypted lock screen command and uses the private key of the electronic screen terminal to decrypt the encrypted lock screen command, and performs the corresponding lock screen operation; if the terminal identity authentication passes, the verification server generates the electronic screen terminal key corresponding to the electronic screen terminal, obtains the terminal related information of the electronic screen terminal, and generates the identity token of the electronic screen terminal according to the terminal related information, and sends the public key of the electronic screen terminal and the identity token of the electronic screen terminal to the electronic screen terminal. In the case where the electronic screen terminal identity authentication passes and the identity token of the electronic screen terminal is generated, the subsequent electronic screen terminal needs to carry the identity token when making a request to the verification server.

[0078] In this embodiment, the key management module in the verification server can change the electronic screen terminal key through a preset key update cycle or based on a key change instruction. When the electronic screen terminal key is changed based on the set key update cycle, the verification server periodically updates the electronic screen terminal key based on the key update cycle and sends the electronic screen terminal key to the broadcast control server. Figure 5In a specific implementation, the electronic screen terminal key is also generated and stored by calling the lightweight SM2 national encryption algorithm through the key management module. The specific method is basically the same as the method for the key management module in step S301 of this embodiment, so it will not be repeated here.

[0079] S304, the electronic screen terminal receives the distribution file from the broadcast control server, calculates summary data of the distribution file, and initiates a file verification request to the verification server based on the summary data;

[0080] After obtaining the identity token of the electronic screen terminal, the electronic screen terminal can now send the distribution file received from the broadcast control server to the verification server. The electronic screen terminal receives the distribution file from the broadcast control server and calculates the summary data of the received file. In an actual example, the SM3 national encryption algorithm is specifically called to calculate, and the summary data is a summary hash value; the electronic screen terminal uses the public key from the verification server to encrypt the obtained summary hash value, and carries the identity token of the electronic screen terminal, generates a file verification request based on the encrypted summary hash value, and initiates the verification request to the verification server; wherein, the identity token of the electronic screen terminal carried in the file verification request is used to enable the verification server to verify whether the electronic screen terminal that initiates the verification request is a compliant electronic screen terminal that has passed the identity authentication.

[0081] S305, the verification server receives and parses the file verification request, compares and verifies the summary data carried in the file verification request with the backup summary data pre-stored in the verification server, and obtains a backup comparison verification result;

[0082] After the verification server receives and parses the file verification request, it first determines whether the current electronic screen terminal is compliant based on the identity token of the electronic screen terminal carried in the file verification request. If the identity token of the electronic screen terminal fails to be verified, the electronic screen terminal is considered to be non-compliant, and an electronic screen terminal authentication failure prompt is generated, and a warning is issued based on the electronic screen terminal authentication failure prompt, and a lock screen command is sent to the electronic screen terminal at the same time, wherein the lock screen command is an encrypted lock screen command. The electronic screen terminal receives the encrypted lock screen command and uses the private key of the electronic screen terminal to decrypt the encrypted lock screen command, and executes the corresponding lock screen operation; if the identity token of the electronic screen terminal is verified, the private key of the electronic screen terminal generated based on the aforementioned steps is decrypted to obtain the summary data carried in the file verification request.

[0083] The summary data carried in the file verification request is compared and verified with the backup summary data pre-saved in the verification server to obtain a backup comparison verification result.

[0084] S306. If the backup comparison verification result is successful, the summary data carried in the file verification request is returned to the electronic screen terminal. The electronic screen terminal receives the summary data of successful verification and saves it in the electronic screen terminal as verification summary data.

[0085] S307: If the backup comparison verification result is a verification failure, a prompt indicating that the distribution file has been tampered with is generated, and a lock screen command is sent to the electronic screen terminal. The electronic screen terminal locks the screen after receiving the lock screen command;

[0086] If the backup comparison verification result is a successful verification, the verification server will return the summary data carried in the verification request sent by the electronic screen terminal file to the electronic screen terminal. The electronic screen terminal receives the successful verification summary data and saves it locally as the verification summary data; if the backup comparison verification result is a failed verification, it proves that the file to be played has been tampered with in the process of being transferred from the broadcast control server to the electronic screen terminal. At this time, a file tampering prompt is issued, and a warning is issued based on the file tampering prompt. At the same time, a lock screen command is sent to the corresponding electronic screen terminal. After receiving the lock screen command, the electronic screen terminal executes the lock screen operation. The specific operation method when locking the screen is basically the same as the above, so it will not be repeated here.

[0087] S308, before executing file playback, the electronic screen terminal obtains the file to be played and calculates summary data of the file to be played, and compares and verifies the summary data of the file to be played with the verification summary data to obtain a local comparison and verification result;

[0088] When the backup comparison verification result is successful, after the electronic screen terminal receives the summary data of successful verification and saves it as verification summary data, the next step of the playback process can be executed according to the to-be-played file corresponding to the verification summary data.

[0089] At this time, since the electronic screen terminal receives the to-be-played file from the broadcast control server and stores it in the local storage of the electronic screen terminal, the to-be-played file may be tampered with locally during this process. Therefore, in this embodiment, before executing the specific file playback, it is also detected whether the locally stored to-be-played file has been tampered with.

[0090] Therefore, before executing a specific file playback, the electronic screen terminal obtains the file to be played stored locally and calculates summary data for the file to be played. Specifically, the electronic screen terminal calls the lightweight SM3 national encryption algorithm to calculate the summary hash value of the file to be played to obtain the summary data of the local file to be played.

[0091] After obtaining the summary data of the local file to be played, it is compared and verified with the verification summary data saved locally after the backup comparison verification in the previous step to obtain the local comparison verification result. According to the local comparison verification result, it can be detected whether the file to be played has been tampered with during the storage process of the electronic screen terminal.

[0092] S309: If the local comparison and verification result is successful, the information has not been tampered with, and the electronic screen terminal plays the file to be played;

[0093] S310. If the local comparison verification result is a verification failure, a prompt that the local file has been tampered with is generated, and a lock screen command is sent to the electronic screen terminal. After receiving the lock screen command, the electronic screen terminal locks the screen and sends the verification failure result to the verification server at the same time. The specific operation method when locking the screen is basically the same as mentioned above, so it will not be repeated here.

[0094] If the local comparison and verification result is a successful verification, the file to be played has not been tampered with. At this time, the electronic screen terminal adds the file to be played to the play list and plays the file to be played. If the local comparison and verification result is a verification failure, it is considered that the file to be played has been tampered with, and a local file tampering prompt is generated. Based on the local file tampering prompt, a warning is issued, and a lock screen command is sent to the electronic screen terminal. After receiving the lock screen command, the electronic screen terminal locks the screen and sends the verification failure result to the verification server at the same time.

[0095] The method in the embodiment of the present invention can timely discover the situation where the file content has been tampered with and make corresponding responses, and can prevent the file from being tampered with during the distribution process or local storage process. In addition, the method can authenticate the identity of the broadcast control server and the electronic screen terminal, and promptly prompt and lock the electronic screen terminal when an error message appears or the identity authentication fails, thereby ensuring the accuracy and reliability of the information displayed by the electronic screen terminal and improving the information security of the electronic screen broadcast control system. In addition, the information tamper-proof method in the embodiment of the invention is implemented by setting up a separate verification server. By introducing a bypass branch mechanism and adding an independent file tampering detection method, it can perform comprehensive and real-time tamper-proof monitoring on the files and information distributed to each electronic screen terminal without affecting the existing workflow, making it easier to implement and maintain, and suitable for wide deployment on various electronic screen terminal devices. Identity authentication effectively prevents illegal device access and improves the security threshold of the method; at the same time, the risk of key leakage is further reduced by regularly updating the key. In addition, the communication data is encrypted using the lightweight SM2 national secret algorithm, which greatly improves the confidentiality of information transmission; the file summary generated by the lightweight SM3 national secret algorithm can complete the file content integrity check in time during the file distribution and file playback process, and when it is found that the file and information have been tampered with, it can be detected and refused to play in a timely and effective manner, ensuring the originality and authenticity of the content displayed on the electronic screen, and improving the security of the electronic screen broadcast control system.

[0096] The above describes the electronic screen file distribution content tampering detection method based on the lightweight national secret algorithm in the embodiment of the present invention. The following describes the electronic screen file distribution content tampering detection system based on the lightweight national secret algorithm in the embodiment of the present invention. Figure 6 In an embodiment of the present invention, an embodiment of an electronic screen file distribution content tampering detection system based on a lightweight national secret algorithm includes:

[0097] The broadcast control server 601 is used to distribute files to electronic screen terminals;

[0098] The electronic screen terminal 602 is used to receive the distribution file from the broadcast control server 601, calculate the summary data of the distribution file, and initiate a file verification request to the verification server based on the summary data;

[0099] The verification server 603 is used to receive and parse the file verification request from the electronic screen terminal 602, compare and verify the summary data carried in the file verification request with the pre-saved backup summary data, and obtain the backup comparison verification result; if the backup comparison verification result is successful, the summary data carried in the file verification request is returned to the electronic screen terminal 602;

[0100] The electronic screen terminal 602 is also used to receive the summary data with the backup comparison verification result sent by the verification server 603 and save it in the electronic screen terminal 602 as verification summary data; and, before executing file playback, obtain the file to be played and calculate the summary data of the file to be played, and compare and verify the summary data of the file to be played with the verification summary data to obtain a local comparison verification result; if the local comparison verification result is a successful verification, then the information has not been tampered with, and the file to be played is played.

[0101] The electronic screen file distribution content tampering detection system based on the lightweight national secret algorithm in the embodiment of the present invention can promptly detect the tampering of file content and make corresponding responses, prevent the file from being tampered with during the distribution process or local storage process, and ensure the accuracy and reliability of the information displayed on the electronic screen terminal.

[0102] In another embodiment of the present application, if the backup comparison verification result is a verification failure, the verification server 603 is also used to generate a prompt that the distribution file has been tampered with, and at the same time send a lock screen command to the electronic screen terminal 602; the electronic screen terminal 602 is also used to lock the screen after receiving the lock screen command.

[0103] In another embodiment of the present application, if the local comparison verification result is a verification failure, the verification server 603 is also used to generate a prompt that the local file has been tampered with, and at the same time send a lock screen command to the electronic screen terminal 602; the electronic screen terminal 602 is also used to lock the screen after receiving the lock screen command, and at the same time send the verification failure result to the verification server 603.

[0104] In another embodiment of the present application, the verification server 603 is also used to receive an identity authentication request from the broadcast control server 601, obtain the identity token carried in the identity authentication request from the broadcast control server 601, and verify the identity token of the broadcast control server 601; if the verification of the identity token of the broadcast control server 601 is successful, the verification server 603 receives the distribution file from the broadcast control server 601, calculates the summary data of the distribution file and encrypts and saves it to obtain backup summary data; if the verification of the identity token of the broadcast control server 601 fails, a prompt of identity authentication failure of the broadcast control server 601 is generated.

[0105] In another embodiment of the present application, the broadcast control server 601 is further used to send an encrypted broadcast control server identity authentication request to the verification server 603 through the broadcast control server key, wherein the identity authentication request includes a license certificate of the broadcast control server 601;

[0106] The verification server 603 is also used to receive and decrypt an authentication request from the broadcast control server 601, obtain the license certificate carried in the authentication request, and perform broadcast control server authentication on the current broadcast control server 601 based on the license certificate; if the broadcast control server authentication passes, an identity token for the broadcast control server 601 is generated, and the identity token is sent to the broadcast control server 601; if the broadcast control server authentication fails, a broadcast control server authentication failure prompt is generated.

[0107] In another embodiment of the present application, the verification server 603 is also used to receive an identity authentication request from the electronic screen terminal 602, obtain the identity token carried in the identity authentication request from the electronic screen terminal 602; verify the identity token of the electronic screen terminal 602; if the verification of the identity token of the electronic screen terminal 602 is passed, continue; if the verification of the identity token of the electronic screen terminal 602 is not passed, generate an authentication failure prompt for the electronic screen terminal 602, and send a lock screen command to the electronic screen terminal 602.

[0108] In another embodiment of the present application, the verification server 603 is also used to register the broadcast control server related information of the broadcast control server 601, wherein the broadcast control server related information includes the broadcast control server code, the broadcast control server name, the tenant to which the broadcast control server belongs, and the number of electronic screen terminals associated with the broadcast control server; and, based on the broadcast control server related information, generate a license certificate for the broadcast control server 601 and generate a broadcast control server key for the broadcast control server 601; and send the license certificate and the broadcast control server key to the broadcast control server 601.

[0109] In another embodiment of the present application, the broadcast control server related information also includes association information of the broadcast control server code and the electronic screen terminal code; the electronic screen terminal 602 is also used to obtain the broadcast control server code corresponding to the electronic screen terminal 602; based on the broadcast control server code corresponding to the electronic screen terminal 602, a terminal identity authentication request is generated and sent to the verification server 603;

[0110] The verification server 603 is also used to respond to and parse the identity authentication request, and perform identity authentication on the electronic screen terminal 602 based on the broadcast control server code;

[0111] If the terminal identity authentication passes, the verification server 603 generates an electronic screen terminal key corresponding to the electronic screen terminal 602, obtains the terminal-related information of the electronic screen terminal 602 and generates an identity token of the electronic screen terminal 602 based on the terminal-related information, and sends the electronic screen terminal key and the identity token of the electronic screen terminal 602 to the electronic screen terminal 602; if the terminal identity authentication fails, an electronic screen terminal authentication failure prompt is generated, and an encrypted lock screen command is sent to the electronic screen terminal 602.

[0112] In another embodiment of the present application, the lock screen command is an encrypted lock screen command; the electronic screen terminal 602 is also used to call an encryption algorithm to generate an electronic screen terminal key pair, the electronic screen terminal key pair includes a public key and a private key of the electronic screen terminal, and the terminal identity authentication request also carries the public key; and, receive the encrypted lock screen command and use the private key to decrypt the encrypted lock screen command, and execute the corresponding lock screen operation.

[0113] In another embodiment of the present application, the verification server 603 is also used to periodically update the broadcast control server key and send the public key of the broadcast control server to the broadcast control server 601 .

[0114] In another embodiment of the present application, the verification server 603 is also used to periodically update the electronic screen terminal key and send the public key of the electronic screen terminal to the electronic screen terminal 602 .

[0115] In another embodiment of the present application, the electronic screen terminal key and the broadcast control server key are generated by calling the lightweight SM2 national encryption algorithm; the summary data of the distribution file and the backup summary are generated by calling the lightweight SM3 national encryption algorithm.

[0116] In addition, the corresponding description of the electronic screen file distribution content tampering detection system based on the lightweight national secret algorithm provided in the present invention can be found in the above embodiments, which will not be repeated here.

[0117] The electronic screen file distribution content tampering detection system based on the lightweight national secret algorithm in the embodiment of the present invention can timely discover the situation that the file content has been tampered with and make corresponding responses, and can prevent the file from being tampered with during the distribution process or local storage process. In addition, the method can also authenticate the identity of the broadcast control server and the electronic screen terminal, and promptly prompt and lock the electronic screen terminal when an error message or identity authentication fails, so as to ensure the accuracy and reliability of the information displayed by the electronic screen terminal, and improve the information security of the electronic screen broadcast control system. In addition, the electronic screen file distribution content tampering detection method based on the lightweight national secret algorithm in the embodiment of the invention is realized by setting up a separate verification server. By introducing a bypass branch mechanism and adding an independent file tampering detection method, it can perform comprehensive and real-time anti-tampering monitoring on the files and information distributed to each electronic screen terminal without affecting the existing workflow, making it easier to implement and maintain, and suitable for wide deployment on various types of electronic screen terminal devices. Through identity authentication, illegal equipment access is effectively prevented, and the security threshold of the method is improved; at the same time, by regularly updating the key, the risk of key leakage is further reduced.

[0118] Based on the same inventive concept, an embodiment of this specification also provides an electronic screen file distribution content tampering detection device based on a lightweight national secret algorithm. The following is a detailed description of the electronic screen file distribution content tampering detection device based on a lightweight national secret algorithm in an embodiment of the present invention from the perspective of hardware processing.

[0119] Figure 7 This is a schematic diagram of the structure of an electronic device provided in an embodiment of this specification. Figure 7 The electronic device 700 according to this embodiment of the present invention is described. Figure 7 The electronic device 700 shown is only an example and should not bring any limitation to the functions and scope of use of the embodiments of the present invention.

[0120] like Figure 7 As shown, the electronic device 700 is in the form of a general computing device. The components of the electronic device 700 may include, but are not limited to: at least one processing unit 710, at least one storage unit 720, a bus 730 connecting different system components (including the storage unit 720 and the processing unit 710), a display unit 740, etc.

[0121] The storage unit stores program codes, which can be executed by the processing unit 710, so that the processing unit 710 performs the steps according to various exemplary embodiments of the present invention described in the above processing method section of this specification. For example, the processing unit 710 can perform the following steps: Figure 1 , Figure 3 or Figure 4 Steps shown.

[0122] The storage unit 720 may include a readable medium in the form of a volatile storage unit, such as a random access memory unit (RAM) 7201 and / or a cache memory unit 7202 , and may further include a read-only memory unit (ROM) 7203 .

[0123] The storage unit 720 may also include a program / utility 7204 having a set (at least one) of program modules 7205, such program modules 7205 including but not limited to: an operating system, one or more application programs, other program modules and program data, each of which or some combination may include the implementation of a network environment.

[0124] Bus 730 may represent one or more of several types of bus structures, including a memory unit bus or memory unit controller, a peripheral bus, an accelerated graphics port, a processing unit, or a local bus using any of a variety of bus architectures.

[0125] The electronic device 700 may also communicate with one or more external devices 100 (e.g., keyboards, pointing devices, Bluetooth devices, etc.), one or more devices that enable a user to interact with the electronic device 700, and / or any device that enables the electronic device 700 to communicate with one or more other computing devices (e.g., routers, modems, etc.). Such communication may be performed through an input / output (I / O) interface 750. Furthermore, the electronic device 700 may also communicate with one or more networks (e.g., a local area network (LAN), a wide area network (WAN), and / or a public network, such as the Internet) through a network adapter 760. The network adapter 760 may communicate with other modules of the electronic device 700 through the bus 730. It should be understood that although Figure 7 Not shown, other hardware and / or software modules may be used in conjunction with electronic device 700, including but not limited to: microcode, device drivers, redundant processing units, external disk drive arrays, RAID systems, tape drives, and data backup storage systems.

[0126] Through the description of the above implementation methods, it is easy for those skilled in the art to understand that the exemplary embodiments described in the present invention can be implemented by software, or by software combined with necessary hardware. Therefore, the technical solution according to the implementation method of the present invention can be embodied in the form of a software product, which can be stored in a computer-readable storage medium (which can be a CD-ROM, USB flash drive, mobile hard disk, etc.) or on a network, including a number of instructions to enable a computing device (which can be a personal computer, server, or network device, etc.) to execute the above method according to the present invention. When the computer program is executed by a data processing device, the computer-readable medium can implement the above method of the present invention, that is: Figure 1 , Figure 3 or Figure 4 The method shown.

[0127] Figure 8 A schematic diagram of a computer-readable medium provided for an embodiment of this specification.

[0128] accomplish Figure 1 , Figure 3 or Figure 4 The computer program of the method shown can be stored on one or more computer readable media. The computer readable medium can be a readable signal medium or a readable storage medium. The readable storage medium can be, for example, but not limited to, a system, device or device of electricity, magnetism, light, electromagnetic, infrared, or semiconductor, or any combination of the above. More specific examples (non-exhaustive list) of readable storage media include: an electrical connection with one or more wires, a portable disk, a hard disk, a random access memory (RAM), a read-only memory (ROM), an erasable programmable read-only memory (EPROM or flash memory), an optical fiber, a portable compact disk read-only memory (CD-ROM), an optical storage device, a magnetic storage device, or any suitable combination of the above.

[0129] The computer readable storage medium may include a data signal propagated in a baseband or as part of a carrier wave, wherein a readable program code is carried. This propagated data signal may take a variety of forms, including but not limited to an electromagnetic signal, an optical signal, or any suitable combination of the above. The readable storage medium may also be any readable medium other than a readable storage medium, which may send, propagate, or transmit a program for use by an instruction execution system, an apparatus, or a device or used in combination with it. The program code contained on the readable storage medium may be transmitted with any appropriate medium, including but not limited to wireless, wired, optical cable, RF, etc., or any suitable combination of the above.

[0130] Program code for performing the operations of the present invention may be written in any combination of one or more programming languages, including object-oriented programming languages ​​such as Java, C++, etc., and conventional procedural programming languages ​​such as "C" or similar programming languages. The program code may be executed entirely on the user computing device, partially on the user device, as a separate software package, partially on the user computing device and partially on a remote computing device, or entirely on a remote computing device or server. In cases involving a remote computing device, the remote computing device may be connected to the user computing device through any type of network, including a local area network (LAN) or a wide area network (WAN), or may be connected to an external computing device (e.g., through the Internet using an Internet service provider).

[0131] In summary, the present invention can be implemented in hardware, or in a software module running on one or more processors, or in a combination thereof. It should be understood by those skilled in the art that general data processing devices such as microprocessors or digital signal processors (DSPs) can be used in practice to implement some or all of the functions of some or all of the components in the embodiments of the present invention. The present invention can also be implemented as a device or apparatus program (e.g., a computer program and a computer program product) for executing part or all of the methods described herein. Such a program implementing the present invention can be stored on a computer-readable medium, or can have the form of one or more signals. Such a signal can be downloaded from an Internet website, or provided on a carrier signal, or provided in any other form.

[0132] Based on the same inventive concept, the present invention also provides a computer program product, including a computer program / instruction, which, when executed by a processor, implements the electronic screen file distribution content tampering detection method based on a lightweight national encryption algorithm as described in any of the aforementioned embodiments.

[0133] The specific embodiments described above further describe the purpose, technical solutions and beneficial effects of the present invention in detail. It should be understood that the present invention is not inherently related to any specific computer, virtual device or electronic device, and various general devices can also implement the present invention. The above description is only a specific embodiment of the present invention and is not intended to limit the present invention. Any modifications, equivalent substitutions, improvements, etc. made within the spirit and principles of the present invention should be included in the protection scope of the present invention.

[0134] The various embodiments in this specification are described in a progressive manner, and the same or similar parts between the various embodiments can be referenced to each other, and each embodiment focuses on the differences from other embodiments.

[0135] The above is only an embodiment of the present application and is not intended to limit the present application. For those skilled in the art, the present application may have various changes and variations. Any modification, equivalent replacement, improvement, etc. made within the spirit and principle of the present application should be included in the scope of the claims of the present application.

Claims

1. A method for detecting tampering of electronic screen file distribution content based on a lightweight national secret algorithm, characterized in that: include: The electronic screen terminal receives the distribution file from the broadcast control server, calculates summary data of the distribution file, and initiates a file verification request to the verification server based on the summary data; The verification server receives and parses the file verification request, compares and verifies the summary data carried in the file verification request with the backup summary data pre-stored in the verification server, and obtains a backup comparison verification result; If the backup comparison verification result is successful, the summary data carried in the file verification request is returned to the electronic screen terminal, and the electronic screen terminal receives the summary data of successful verification and saves it in the electronic screen terminal as verification summary data; Before executing file playback, the electronic screen terminal obtains the file to be played and calculates summary data of the file to be played, and compares and verifies the summary data of the file to be played with the verification summary data to obtain a local comparison and verification result; If the local comparison and verification result is successful, then the information has not been tampered with, and the electronic screen terminal plays the file to be played.

2. According to claim 1, the electronic screen file distribution content tampering detection method based on the lightweight national secret algorithm is characterized in that: After the verification server receives and parses the file verification request, compares and verifies the summary data carried in the file verification request with the backup summary data pre-stored in the verification server, and obtains the backup comparison verification result, the method further includes: If the backup comparison verification result is a verification failure, a prompt that the distribution file has been tampered with is generated, and a lock screen command is sent to the electronic screen terminal. The electronic screen terminal locks the screen after receiving the lock screen command.

3. The method for detecting tampering of electronic screen file distribution content based on a lightweight national secret algorithm according to claim 1 is characterized in that: After the electronic screen terminal obtains the file to be played and calculates summary data of the file to be played, and compares and verifies the summary data of the file to be played with the verification summary data to obtain a local comparison and verification result, the method further includes: If the local comparison verification result is a verification failure, a prompt that the local file has been tampered with is generated, and a lock screen command is sent to the electronic screen terminal. After receiving the lock screen command, the electronic screen terminal locks the screen and sends the verification failure result to the verification server at the same time.

4. The method for detecting tampering of electronic screen file distribution content based on a lightweight national secret algorithm according to claim 1 is characterized in that: Before the electronic screen terminal receives the distribution file from the broadcast control server, it also includes: The verification server receives an identity authentication request from the broadcast control server, obtains an identity token carried in the identity authentication request from the broadcast control server, and verifies the identity token of the broadcast control server; If the verification of the identity token of the broadcast control server is successful, the verification server receives the distribution file from the broadcast control server, calculates the summary data of the distribution file and encrypts and saves it, to obtain backup summary data; If the verification of the identity token of the broadcast control server fails, a prompt indicating that the broadcast control server identity authentication has failed is generated.

5. The method for detecting tampering of electronic screen file distribution content based on a lightweight national secret algorithm according to claim 1 is characterized in that: After the electronic screen terminal receives the distribution file from the broadcast control server, calculates summary data of the distribution file, and initiates a file verification request to the verification server based on the summary data, the method further includes: The verification server receives an identity authentication request from the electronic screen terminal, obtains an identity token carried in the identity authentication request from the electronic screen terminal, and verifies the identity token of the electronic screen terminal; If the verification of the identity token of the electronic screen terminal is successful, continue; If the verification of the identity token of the electronic screen terminal fails, an electronic screen terminal authentication failure prompt is generated, and a screen lock command is sent to the electronic screen terminal.

6. The method for detecting tampering of electronic screen file distribution content based on a lightweight national secret algorithm according to claim 5 is characterized in that: The screen lock command is an encrypted screen lock command; After simultaneously sending the screen lock command to the electronic screen terminal, the method further includes: The electronic screen terminal receives the encrypted lock screen command and uses the private key of the electronic screen terminal to decrypt the encrypted lock screen command, and performs a corresponding lock screen operation.

7. An electronic screen file distribution content tampering detection system based on a lightweight national secret algorithm, characterized in that: include: The broadcast control server is used to distribute files to electronic screen terminals; The electronic screen terminal is used to receive the distribution file from the broadcast control server, calculate the summary data of the distribution file, and initiate a file verification request to the verification server based on the summary data; The verification server is used to receive and parse the file verification request from the electronic screen terminal, compare and verify the summary data carried in the file verification request with the pre-saved backup summary data, and obtain the backup comparison verification result; If the backup comparison verification result is successful, the summary data carried in the file verification request is returned to the electronic screen terminal; The electronic screen terminal is further used to receive the summary data sent by the verification server indicating that the backup comparison verification result is successful, and store it in the electronic screen terminal as verification summary data; And, before executing file playback, obtaining the file to be played and calculating summary data of the file to be played, and comparing and verifying the summary data of the file to be played with the verification summary data to obtain a local comparison and verification result; If the local comparison and verification result is successful, then no information has been tampered with, and the file to be played is played.

8. An electronic screen file distribution content tampering detection device based on a lightweight national secret algorithm, characterized in that: The electronic screen file distribution content tampering detection device based on the lightweight national secret algorithm includes: a memory and at least one processor, wherein the memory stores instructions; The at least one processor calls the instructions in the memory to enable the electronic screen file distribution content tampering detection device based on the lightweight national encryption algorithm to perform the steps of electronic screen file distribution content tampering detection based on the lightweight national encryption algorithm as described in any one of claims 1-6.

9. A computer-readable storage medium having a computer program / instruction stored thereon, characterized in that: When the program / instructions are executed by the processor, the steps of the method for detecting tampering of electronic screen file distribution content based on a lightweight national encryption algorithm as described in any one of claims 1 to 6 are implemented.

10. A computer program product comprising a computer program / instructions, characterized in that When the computer program / instructions are executed by the processor, the steps of the method for detecting tampering of electronic screen file distribution content based on a lightweight national encryption algorithm as described in any one of claims 1 to 6 are implemented.

Citation Information

Patent Citations

  • SM3-based file transmission integrity verification method and device, and medium

    CN114760115A

  • File verification method and device, processor and electronic equipment

    CN115982103A

  • File verification method, device and equipment for content distribution network, medium and product

    CN119276432A