Data right confirmation method based on subject and object binding and data living body
Through the data rights confirmation method based on subject and object binding, the data subject is bound to the object using the live data structure, and the rights are confirmed through digital certificate signature, the problems of unclear data rights and uncontrollable operation behavior are solved, and the safe circulation and efficient utilization of data are realized.
Patent Information
- Application Number
- CN202510633296.9
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2025-05-16
- Publication Date
- 2025-06-13
AI Technical Summary
The existing technology is difficult to effectively solve the security challenges of data rights protection, especially under the non-exclusive, easy to replicate and virtual characteristics of data, resulting in unclear data rights and inability to effectively control data operation behavior.
The data rights confirmation method based on subject and object binding is adopted. By creating a living data structure, the data subject is bound to the object, and signed through a digital certificate to confirm the ownership and use rights of data, so as to achieve control of data operation behavior.
It has achieved clear definition of data rights and effective control of operational behavior, ensured that data is safely circulated within the legal and compliance framework, and improved the vitality of the data market and resource allocation efficiency.
Smart Images

Figure CN120145355A_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to a method for confirming rights, and in particular to a method for confirming data rights based on subject and object binding, which belongs to the fields of digital China, digital economy, trusted circulation of data elements, and information security. Background Art
[0002] As a new production factor, data creates value through circulation, but its non-exclusive, easy-to-reproduce and virtual characteristics also bring security challenges to the protection of data rights. The non-exclusiveness of data allows it to be used by multiple entities at the same time without loss, which leads to complex ownership definitions; the easy-to-reproduce nature allows data to be copied quickly and at low cost, which improves circulation efficiency while also increasing the risk of abuse and leakage; the virtual nature of data, because it exists in electronic form and has no physical form, makes infringement more concealed, and traditional physical asset protection methods are no longer applicable.
[0003] Traditional data security generally controls the permissions for data reading, modification, and deletion, and assumes that operators can master the data in plain text, while ignoring the ownership of data. In the field of data element circulation, it is necessary to subdivide different data rights such as data ownership and data use rights, confirm the data rights of all parties involved in the circulation of data elements, and control data operation behaviors, so that data can play its role while avoiding value loss, lack of supervision, joint liability, and other problems caused by the spread of data rights. Summary of the invention
[0004] In order to solve the problems and defects in the prior art, the present invention discloses a data right confirmation method based on subject-object binding, and correspondingly defines a data living body for data right confirmation based on subject-object binding, and its technical solution is as follows:
[0005] A data rights confirmation method based on subject-object binding, the method comprising the following steps:
[0006] S1. Data rights confirmation based on subject and object binding;
[0007] S2. Data operation behavior control based on subject and object binding.
[0008] Further, the step S1 comprises:
[0009] S1.1 Create a data entity and create a data entity structure based on data rights confirmation based on subject and object binding.
[0010] S1.2 Write the basic information of the data living body into the data living body. Write the basic information of the data living body into the data living body, including writing the data living body identification, data living body status information, data living body survival period and other attributes into the corresponding positions of the data living body.
[0011] S1.3 The data owner information is written into the data living body, and the data owner subject information is written into the corresponding position of the data living body to establish the association relationship between the data owner subject and the data living body.
[0012] S1.4 Data object information is written and data object content is injected into the data body. The data object information is written into the corresponding position of the data body to establish the association relationship between the data object and the data body. Injecting data content into the data body: Encrypt the data content using encryption technology and write the data object content into the corresponding position of the data body. The data object content is associated with the data object information and remains consistent, corresponding to the same data object. Use the data owner's digital certificate to sign the data body to complete the confirmation of data ownership.
[0013] On the basis of writing the data object information into the data body and injecting the data content into the data body, the data body is signed using the data owner's digital certificate, thus completing the confirmation of data ownership.
[0014] S1.5 The data user information is written into the data entity, and the data user subject information is written into the corresponding position of the data entity to establish the association relationship between the data user subject and the data entity.
[0015] S1.6 The data owner sets the data usage rights. The data owner sets the rights of the data user and writes the data user information and data user operation rights into the corresponding position of the data body to form a data user's data operation permission list. The data body is signed with the data owner's digital certificate to complete the confirmation of data usage rights.
[0016] S1.7 Live data circulation and utilization: After completing the data rights confirmation based on the binding of subject and object, the data can be safely circulated and utilized through live data.
[0017] Further, the step S2 comprises:
[0018] S2.1 Identify the identity of the data operation applicant. Perform identity authentication on the applicant who initiates the data operation request to ensure the authenticity of the subject identity. ① If the identity authentication fails and the applicant's subject identity cannot be confirmed, the data operation request will be rejected; ② If the applicant's identity authentication passes, but his subject identity is neither the data owner nor the data user, it is considered that there is no matching data access right, and proceed to step S2.4; ③ If the applicant's subject identity is the data owner or the data user, proceed to step S2.2.
[0019] S2.2 Data Subject Operation Data Liveness Permission Review. ① If the subject initiating the application is the data owner, it is considered to have all data operation permissions, and proceed to step S2.3. ② If the subject initiating the application is a data user and its applied data operation behavior has been authorized, proceed to step S2.3. ③ If the subject initiating the application is a data user but its applied data operation behavior has not been authorized, proceed to step S2.4.
[0020] S2.3 The data subject with operation permissions can execute the agreed operation steps, and its operation behavior will be recorded. Specifically, if the applicant initiating the data operation request is a legitimate data subject and has authorized operation permissions, execute the data operation behavior applied by the subject, and record the application, execution, and result information of the data operation behavior.
[0021] S2.4 The operation behavior of a data subject without a data subject identity or without operation permissions is rejected, and its illegal access behavior will be recorded. Specifically, if the applicant initiating the data operation request is an illegal data subject or does not have operation permissions, its data operation application will be rejected, and the data operation application behavior and the result of being rejected will be recorded.
[0022] A data liveness for data rights confirmation based on subject-object binding, the structure of the data liveness includes the following parts:
[0023] (a) Basic information, specifically including: data liveness identifier, data liveness status, and survival period, etc.;
[0024] (b) Data owner information, specifically including: the subject information of the data owner;
[0025] (c) Data object information, specifically including: data identifier, data form, data type, data level, data structure, data hash value, and extended information, etc.;
[0026] (d) Data object content, specifically including: data content length, ciphertext data content;
[0027] (e) Data user information, specifically including: the subject information of the data user, and the list of granted data operation permissions;
[0028] (f) Data owner signature, specifically including: the digital signature value obtained by digitally signing the above parts (a) to (e) using the data owner's digital certificate, as well as the length of the signature value and the digital signature algorithm identifier used.
[0029] The subject information of the data owner or data user specifically includes two parts: basic information and extended information. The basic information includes the subject unique identifier, subject name, subject type (organization / person / agent / others...), contact information, digital certificates (signature certificate, encryption certificate), etc. The extended information is determined by the subject type. If the subject type is an organization, the corresponding extended information specifically includes the organization code, legal representative, establishment date, etc.; if the subject type is a person, the corresponding extended information specifically includes the ID number, gender, date of birth, etc.; if the subject type is an agent, the corresponding extended information specifically includes the system identifier, interaction interface, system parameters, etc. The agent subject refers to an intelligent agent system that can represent the will of the organization or individual subject and execute specified data operation behaviors with the permission of the organization or individual subject. During the live use of data, the basic information part of the subject information is mainly used to confirm the authenticity of the subject identity; the use of the extended information part of the subject information is mainly determined by the control system and can be extended by the control system according to its own business scenario needs.
[0030] Beneficial effects
[0031] By defining the live data structure, the binding between the data subject and the object is realized, and data rights confirmation is achieved through the data rights confirmation method based on the binding of the subject and the object, thereby solving the problems such as unclear data rights and uncontrollable data operation behaviors faced in the circulation of data elements. Brief description of the drawings
[0032] Figure 1 It is the flowchart of the data rights confirmation method based on the binding of the subject and the object of the present invention;
[0033] Figure 2 It is the live data structure of the data rights confirmation based on the binding of the subject and the object of the present invention;
[0034] Figure 3 It is the subject information structure of the data rights confirmation based on the binding of the subject and the object of the present invention. Detailed implementation manners
[0035] The present invention will be further described below with reference to the drawings. The following embodiments are only used to more clearly illustrate the technical solutions of the present invention and cannot be used to limit the protection scope of the present invention. It should be noted that the following detailed descriptions are all exemplary and are intended to provide further explanations for the present application.
[0036] Embodiment 1: Data rights confirmation process
[0037] Refer to Figure 1 As shown. A data rights confirmation method based on the binding of the subject and the object includes the following steps:
[0038] Step S1: Data rights confirmation based on the binding of the subject and the object
[0039] A data subject is a stakeholder participating in data circulation, transactions, and utilization, and can be divided into data owners, data users, etc. in specific scenarios.
[0040] The data object is the data itself, and the information it contains has value and can be controlled and utilized by the data subject.
[0041] An active data object (abbreviated as "data living body") binds the data subject information to the data object through a certain data structure, and uniformly encapsulates information such as the data object, data ownership, and data usage rights. Its "activity" is manifested in the following characteristics: the data rights confirmed by the data living body are all rights recognized by the data owner; the data living body survives in a system (or space) that controls data operation behaviors based on the data living body, records data operation behaviors through the system (or space), and can feedback the execution situation of data operation behaviors to the data owner; the subject who masters the data living body cannot obtain data content beyond the authority, nor can they perform data operation behaviors beyond the authorized scope; if it is necessary to change the data operation permission, an authorization needs to be applied to the data owner bound to the data living body; when the data owner changes the permissions set in the data living body, the data living body changes accordingly and can continue to be circulated and utilized afterwards.
[0042] The specific steps for data rights confirmation based on the binding of the subject and the object are as follows:
[0043] 1. Create a data living body
[0044] Create a data living body, and the structure of this data living body mainly includes parts such as basic information, data owner information, data object information, data object content, data user information, and data owner signature.
[0045] 2. Write the basic information of the data living body into the data living body
[0046] Write the basic information of the data living body into the corresponding position of the data living body, including information such as the data living body identifier, data living body status, and data living body survival period. The newly created data living body is in an initial state and has not been bound to information such as the data subject and the data object.
[0047] 3. Write the data owner information into the data living body
[0048] Write the subject information of the data owner into the corresponding position of the data living body, and establish the association relationship between the data owner subject and the data living body. Only one data owner subject is allowed to be associated with the same data living body, and this association relationship declares the sovereignty of the data owner over the data living body. Before the data object is injected after the data owner is determined, the data living body is in an idle state.
[0049] 4. Writing Data Object Information and Injecting Data Content into the Data Live Body
[0050] Write the data object information to the corresponding position of the data live body to establish the association relationship between the data object and the data live body. The data object information mainly includes data identification, data form, data type, data level, data structure, data hash value, etc. In the actual application scenario of the data live body, the extended information of the data object can be added according to business needs.
[0051] Injecting data content into the data live body: After encrypting the data content using encryption technology, write the data object content to the corresponding position of the data live body. The data content can be in the form of data copies, data resource URLs, or data service APIs, etc. The encryption technology is mainly used to encrypt the data content to ensure its confidentiality. The specific algorithms can use national encryption algorithms such as SM2 and SM4, or international algorithms such as RSA and DES, or homomorphic encryption algorithms or other cryptographic algorithms that can protect data confidentiality. The data object content mainly includes the data content length and the ciphertext data content. The data object content is associated with and consistent with the data object information, corresponding to the same data object.
[0052] Based on writing the data object information to the data live body and injecting the data content into the data live body, use the digital certificate of the data owner to sign the data live body, and the confirmation of data ownership is completed.
[0053] When the confirmation of data ownership has been completed but the data user permissions have not been set yet, the data live body is in a private state.
[0054] 5. Writing Data User Information to the Data Live Body
[0055] Write the principal information of the data user to the corresponding position of the data live body to establish the association relationship between the data user principal and the data live body. The same data live body can be limited to be associated with only one data user principal, or multiple data user principals can be allowed to be associated.
[0056] The principal type of the data user can be principal types such as institutions, individuals, agents, etc.
[0057] 6. The Data Owner Sets Data Usage Permissions
[0058] Based on the completion of the confirmation of data ownership, the data owner can set the permissions of the data user through the data live body, including writing the data user information, data user operation permissions, etc. to the data live body to form the data operation permission list of the data user. When the data user permissions are increased, changed, or removed, use the digital certificate of the data owner to re-sign the data live body, and the confirmation of data usage rights is completed.
[0059] After the confirmation of data ownership and data usage rights is completed and the data is available for data circulation and utilization, the data live body is in an available state.
[0060] 7. Circulation and Utilization of Data Live Body
[0061] After the data rights confirmation based on the binding of the subject and the object is completed, the data can be circulated and utilized through the data live body. During the processes of data circulation, transaction, utilization, etc., each data live body should always maintain integrity within its life cycle.
[0062] Step 2: Control of Data Operation Behaviors Based on the Binding of the Subject and the Object
[0063] After the data rights confirmation based on the binding of the subject and the object is realized, the data live body can enter the control system (hereinafter referred to as the "control system") for controlling data operation behaviors based on the data live body, and the control system executes the control of data operation behaviors based on the binding of the subject and the object.
[0064] When a certain subject initiates a data operation request, it is necessary to authenticate the subject identity of the applicant to ensure the authenticity of the data subject identity, and further review its data operation permissions. The data subject with permissions can execute the operations within its permission scope, and the data operation application of the data subject without permissions will be rejected, and both types of behaviors will be recorded.
[0065] Step S2: The specific steps of the control of data operation behaviors based on the binding of the subject and the object are as follows:
[0066] 1. Authenticate the Identity of the Data Operation Applicant
[0067] Authenticate the identity of the applicant who initiates the data operation request to ensure the authenticity of the subject identity. If the subject identity authentication fails, the applicant's data operation request will be rejected. If the applicant is neither the data owner nor the data user, it is considered that there is no data access permission, and then go to step 4; if the applicant matches the data owner or data user recorded in the data live body, then go to step 2. The mechanism for authenticating the subject identity is mainly provided by the control system, and the specific mechanism is determined according to the security level of the control system. For example, for a control system with the third level of classified protection, its identity authentication should use two or more combined authentication technologies such as passwords, cryptographic technologies, and biotechnologies to authenticate the user's identity, and at least one of the authentication technologies should use cryptographic technologies to implement (such as authentication based on digital certificates).
[0068] 2. Review the Permissions of the Data Subject to Operate the Data Live Body
[0069] If the entity initiating the application is the data owner, it is considered to have all data operation permissions and proceeds to step 3; if the entity initiating the application is a data user and its requested data operation has been authorized, it proceeds to step 3; if the entity initiating the application is a data user but its requested data operation has not been authorized, it proceeds to step 4.
[0070] 3. The data subject with operation permissions can execute the agreed operation steps, and its operation behavior will be recorded
[0071] If the applicant initiating the data operation request is a legal data subject and has authorized operation permissions, the data operation behavior applied by the entity is executed, and information such as the application, execution, and result of the data operation behavior is recorded.
[0072] 4. The operation behavior of a data subject without a data subject identity or without operation permissions is rejected, and its access behavior is recorded
[0073] If the applicant initiating the data operation request is an illegal data subject or does not have operation permissions, its data operation application will be rejected, and its data operation application behavior and the result of being rejected are recorded.
[0074] Embodiment 2: Structure of the data living body
[0075] A data living body structure for data rights confirmation based on the binding of the subject and the object, characterized by: as shown in Figure 2 shown. The structure of the data living body consists of basic information, data owner information, active data object information, data content, data user information, and the signature of the data owner, etc.
[0076] Basic information of the data living body
[0077] The basic information of a data live body consists of attributes such as a data live body identifier, a data live body status, and a data live body survival period. The data live body identifier is the unique identification number of the data live body, and identification methods such as UUID can be used. The data live body status indicates the current status of the data live body, including an initial status, an idle status, a private status, an available status, and an invalid status, etc. The data live body survival period is an optional attribute, and the effective time period from the creation to the destruction of the data live body can be set, or the survival conditions of the data live body can be set, etc. The initial status of the data live body is the status when the data live body is just created and has not been bound to the data owner yet; the idle status refers to the status when the data live body has been bound to the data owner but the content of the data object has not been injected yet; the private status refers to the status when the data live body has been bound to the data owner, the data has been injected, and the confirmation of data ownership has been completed, but the data user permissions have not been set yet; the available status refers to the status when the data live body has completed the confirmation of data usage rights and can be used for data circulation and utilization; the invalid status refers to the status when the data live body has reached the survival period or no longer meets the survival conditions. The corresponding control system should destroy the data live body or apply to the data owner for re-authorization.
[0078] Data owner information
[0079] The data owner information includes the principal information of the data owner. The principal type can be an institution or a person, and other principal types can also be extended to be supported, such as application systems, virtual principals, or intelligent principals that can represent the will of the real principal, etc.
[0080] Data object information
[0081] The data object information consists of data identifier, data form, data type, data level, data structure, data hash value, and extended information, etc. The data identifier refers to the globally unique identifier of the active data object, and identification methods such as UUID can be used. The data form includes but is not limited to various forms that can determine the data content, such as data replicas, data resource URLs, data service APIs, etc. The data type is the business data type determined after classifying and grading business data during the data governance process. Generally, corresponding data type standards are formulated in different industries or enterprises, and the corresponding data type standards can be selected and followed in actual scenarios. The data level is the level of data sensitivity determined after classifying and grading business data during the data governance process. Referring to the national recommended standard GB / T 43697 - 2024 "Data Security Technology - Data Classification and Grading Rules", the data level can be divided into L0 general data, L1 important data, and L2 core data. It can also be extended according to the needs of different industries, such as higher - sensitivity levels L3, L4, L5, etc. The data structure information can be expressed by giving the followed data structure standard, or directly giving the specific format of the data structure. The data hash value is the result obtained by performing a cryptographic hash algorithm operation on the ciphertext data content. The cryptographic hash algorithm can be but is not limited to national cryptographic algorithms such as SM3, international algorithms such as SHA1, SHA256, MD5, etc. The extended information is additional characteristic information, mainly determined by the control system, and can be extended by the control system according to its own business scenario needs.
[0082] Data object content
[0083] The data object content is associated with and consistent with the active data object information, corresponding to the same data object. The data object content consists of data length and ciphertext data content. The data length refers to the number of bytes occupied by the ciphertext data, and the unit can be KB, MB, GB, or TB, etc. The ciphertext data content is the result obtained by encrypting the data content using encryption technology. The specific form of the data content is determined by the data form in the active data object information. If the data form is a data replica, the data content is a replica of the original data; if the data form is a data resource URL, the data content is the URL address pointing to the corresponding data; if the data form is a data service API, the data content is the API access address pointing to the corresponding data service, etc.
[0084] The above - mentioned "data object" refers to the data itself and is also the content that needs to be protected and is concerned by the present invention. In the present invention, the concept of "data object" is adopted for two reasons. One is to distinguish it from other concepts related to "data", and the other is to emphasize the relationship between the subject and the object binding.
[0085] "Data object information" and "data object content" are both information about "data objects" in the data living body. "Data object information" is mainly a description of various attribute information of the data object, used to be presented through the control system and express the characteristics of a specific data object in human language; "data object content" is a description of the data content (i.e., the specific content of the data object), which is the relevant attribute information of the ciphertext data after encrypting the data content, specifically including the data length (the length of the ciphertext data content) and the ciphertext data content (the result of encrypting the data content).
[0086] Data user information
[0087] Data user information includes the principal information of the data user and the list of granted data operation behavior permissions.
[0088] The principal information of the data user, the principal type can be an organization or a person, and other principal types can also be extended to support, such as application systems, virtual principals or intelligent principals that can represent the will of the real principal, etc.
[0089] The list of granted data operation behavior permissions includes all the data operation behavior permissions granted to the data user. Data operation behavior permissions include data behavior types, descriptions of data operation behavior permissions, data operation behavior control scripts, etc.
[0090] Data behavior types include but are not limited to: data utilization, data circulation, data transactions, etc. Data utilization mainly stipulates the algorithms for data users to use data, such as allowing users to sum or average field X; data circulation mainly stipulates the permissions for the environmental space conversion of the data living body, such as allowing users to transfer the data living body from system A to system B, or from device A to device B, etc.; data transactions mainly stipulate the transformation of data rights, such as allowing users to assign the data operation behavior permissions they have been granted to other principals, etc.
[0091] The data operation behavior control script is mainly used to indicate to the control system the processing logic of the granted data operation behavior permissions, including but not limited to: data statistical analysis SQL scripts, data calculation Python scripts, data calculation model program package information (such as JAR packages, DLLs), etc.
[0092] A data living body can bind only one data user information, or it can also support binding multiple data user information at the same time. When binding multiple data users, the principal information of different data users should be correlated with the list of data operation behavior permissions they have, and the permissions of different data users should not be intertwined.
[0093] Data owner signature
[0094] The data owner's signature consists of information such as the digital signature length, digital signature value, and digital signature algorithm identifier. The data owner's signature is to digitally sign the data in vivo (including parts such as basic information, data owner information, active data object information, data object content, and data user information) using the data owner's digital certificate to obtain the digital signature value. The digital signature length is the number of bytes occupied by the digital signature value, with the unit being bytes.
[0095] Subject information
[0096] See Figure 3 as shown. The structure of the subject information includes two parts: basic information and extended information. The basic information includes the subject's unique identifier, subject name, subject type, contact information, digital certificate, etc., which is the core verification basis for data operation behavior control; the extended information can be selectively stored according to the actual business scenario, and the specific content is determined based on the subject type.
[0097] The subject type can be types such as organizations, individuals, or agents. The extended information of the organization type subject includes organization code, legal representative, establishment date, etc.; the extended information of the individual type subject includes ID number, gender, date of birth, etc.; the agent type subject refers to an intelligent agent system that can represent the will of the institutional or individual subject and execute specified data operation behaviors with the permission of the institutional or individual subject. The extended information of the agent type subject includes system identifier, interaction interface, system parameters, etc.
[0098] Both the data owner information and the data user information in the data in vivo involve subject information.
[0099] Embodiment 3: Security guarantee based on the control system
[0100] (1) Security of the data in vivo
[0101] The security that the data in vivo itself possesses includes: using encryption technology to encrypt and protect the data content to ensure the confidentiality of the data content; using the data owner's digital certificate to digitally sign the data in vivo to ensure the integrity, authenticity, and non-repudiation of the data in vivo content.
[0102] The data in vivo needs to survive in the control system recognized by the data owner, and the control system further enhances the protection of the data in vivo, such as encrypting and protecting during the storage process of the data in vivo, encrypting and protecting during the transmission process of the data in vivo, and performing access control on the call behavior of the data in vivo.
[0103] (2) Security guarantee of the control system
[0104] For the overall security guarantee of the control system, relevant technical standards of security protection systems such as Information Security Technology - Basic Requirements for Classified Protection of Cybersecurity (GB / T 22239-2019) can be referred to for implementation.
[0105] Based on the data in vivo, the control system realizes the security control of data operation behaviors. In addition to realizing the control of data operation behaviors based on the binding of subjects and objects, other relevant security capabilities can also be extended to further guarantee the security of data rights. For example, regularly check the survival period of the data in vivo, destroy the data in vivo that has reached the survival period or no longer meets the survival conditions, or prompt the data owner for disposal; realize the deposit and traceability of data operation behaviors through blockchain technology, etc.
[0106] The present invention proposes concepts such as data subjects, data objects, and active data objects (abbreviated as "data in vivo"), defines the structure of the data in vivo to realize the binding of subjects and objects, and then proposes a method for determining rights based on the binding of subjects and objects to realize data right determination based on the binding of subjects and objects, clearly defining data rights such as data ownership and right of use. It provides technical means for effectively controlling data operation behaviors to protect the rights and interests of data subjects, thereby ensuring the safe circulation of data within the legal and compliant framework, guaranteeing the efficient circulation and reasonable utilization of data elements, enhancing the vitality of the data market and the efficiency of resource allocation, and promoting the healthy development of the digital economy and Digital China.
[0107] The above shows and describes the basic principles, main features and advantages of the present invention. Those skilled in the art should understand that the present invention is not limited by the above embodiments. What is described in the above embodiments and the specification is only the principle of the present invention. Without departing from the spirit and scope of the present invention, the present invention will have various changes and improvements, and these changes and improvements all fall within the scope of the present invention claimed. The scope of protection required by the present invention is defined by the appended claims and their equivalents.
Claims
1. A data rights confirmation method based on subject-object binding, characterized in that: The following steps are involved: S1. Data rights confirmation based on subject and object binding: (1) Create a data entity, the structure of which includes basic information of the data entity, information of the data owner, information of the data object, content of the data object, information of the data user, and signature of the data owner; (2) Write the data live body identification, status information and survival period into the data live body; (3) Bind the data owner information to the data entity. The data owner information includes the data owner’s unique identifier, digital certificate, and classification information; (4) Write data object information into the data body, including data identification, data type, data level and data hash value, and inject the encrypted data content into the data body; (5) Sign the data using the data owner’s digital certificate to confirm data ownership; (6) Bind data user information to the data entity, set data user data usage permissions, form a data permission list and write it into the data entity; data user information includes the unique identifier, digital certificate and classification information of the data owner; (7) Digitally sign the data using the data owner’s digital certificate to confirm the data usage rights; (8) When the data usage rights are changed, the data is re-signed using the data owner’s digital certificate and the integrity of the data is ensured through hash value verification; S2. Data operation behavior control based on subject and object binding: (1) Authentication of the applicant who initiates the data operation request to verify whether he or she is the data owner or data user; (2) If the applicant is the data owner, he / she is allowed to perform all data operations; (3) If the applicant is a data user, review whether the operation requested is included in the permission list; (4) Record legal operations or illegal access activities.
2. According to claim 1, a data rights confirmation method based on subject-object binding is characterized by: Data rights confirmation based on subject-object binding includes the following: The binding and encapsulation of the data owner information and the data object is completed in the data body, and the data body is digitally signed using the data owner's digital certificate to confirm the data ownership; On the basis of completing the confirmation of data ownership, the data owner sets the permissions of the data user through the data body, including writing the data user information and data user operation permissions into the data body, digitally signing the data body with the data owner's digital certificate, and updating the data owner's signature value information of the data body; Based on data living bodies, the binding of data owners, data objects, data users and their permissions is completed, realizing the confirmation of data ownership and data usage rights.
3. According to claim 2, a data rights confirmation method based on subject-object binding is characterized by: The step S1 further includes the following contents: S1.1 Creating a live data Create a data entity structure framework based on data rights confirmation based on subject and object binding. The structure includes the following parts: basic information of data entity, data owner information, data object information, data object content, data user information, and data owner signature; S1.2 Data living body basic information is written into the data living body Writing the basic information of the data living body into the data living body, including writing the data living body identifier, data living body status, and data living body survival period into the corresponding attribute unit position of the data living body. The basic information of the data living body identifies the unique characteristics and survival status of different data living bodies; S1.3 Data owner information is written into the data body Write the data owner information into the data entity to establish the association between the data owner and the data entity; data owners can be divided into institutional entities, individual entities, and agent entities. Institutional entities include basic information and institutional extended information, individual entities include basic information and individual extended information, and agent entities include basic information and agent extended information; S1.4 Data object information writing and data content injection into data living body Data object information refers to the information of data, not active data objects; active data objects are the full name of "data living body", that is, the entire structure that binds the data subject and data object; The data object information is written into the data living body to establish the association relationship between the data object and the data living body; the data object information mainly includes data identification, data form, data type, data level, data structure, data hash value and extended information; Injecting data content into the data body: Encryption technology is used to encrypt and protect the data content, and the data object content is written into the corresponding position of the data body. The data object content is associated with the data object information and remains consistent, corresponding to the same data object; On the basis of writing the data object information into the data body and injecting the data content into the data body, the data body is signed using the data owner's digital certificate, thus completing the confirmation of data ownership; S1.5 Data user information is written into the data live body Write the data user information into the data entity to establish the association between the data user and the data entity; data users can be divided into institutional entities, individual entities and agent entities. Institutional entities include basic information and institutional extended information, individual entities include basic information and individual extended information, and agent entities include basic information and agent extended information; S1.6 Data owners set data usage permissions On the basis of completing the confirmation of data ownership, the data owner can set the permissions of the data user through the data body, including writing the data user information and data user operation permissions into the data body to form a data operation permission list for the data user; when the data user permissions are added, changed or removed, the data body is digitally signed with the data owner's digital certificate, thus completing the confirmation of the data use rights; S1.7 Circulation and utilization of living data After completing the data rights confirmation based on the binding of subject and object, the data can be safely circulated and utilized through data entities; during the process of data circulation, transaction and utilization, each data entity should always maintain its integrity throughout its life cycle.
4. The data rights confirmation method based on subject-object binding according to claim 1 is characterized by: Data operation behavior control based on subject and object binding includes the following contents: Data operation behavior control occurs in a system that controls data operation behavior based on data liveness, referred to as the "control system". The control system first authenticates the identity of the applicant who initiates the data operation application, and uses the identity authentication mechanism to determine whether the applicant is a legitimate data subject. If the applicant does not have a legitimate data subject identity, access to the data liveness will be denied; If the applicant has the identity of a data subject, he / she will enter the operation permission review stage; The control system should record the data operation application behavior and application results; review the data operation permissions of data operation applicants who have passed the subject identity authentication; if the applicant is the data owner, he / she will have full operation permissions on the data; If the data subject is a user, it will be checked whether he / she has the data operation permission applied for based on his / her data operation permission list. If he / she has the corresponding permission, the operation will be performed and recorded. If he / she does not have the corresponding permission, the operation will be rejected and recorded.
5. The data rights confirmation method based on subject-object binding according to claim 4 is characterized by: The step S2 further includes the following contents: S2.1 Identification of the data operation applicant Authenticate the identity of the applicant who initiates the data operation request to ensure the authenticity of the subject identity. If the subject identity authentication fails, the applicant's data operation request will be rejected; If the applicant is neither the data owner nor the data user, it is considered that he has no data access rights, and the process goes to step S2.4; If the applicant is the data owner or data user, proceed to step S2.2; S2.2 Review of data subject’s authority to operate live data ① If the subject who initiated the application is the data owner, it is considered that it has all data operation permissions, and the process goes to step S2.3; ② If the subject who initiated the application is the data user, and the data operation behavior applied for by it has been authorized, the process goes to step S2.3; ③ If the subject who initiated the application is the data user, but the data operation behavior applied for by it has not been authorized, the process goes to step S2.4; S2.3 Data subjects with operation rights can perform the agreed operation steps, and their operation behaviors will be recorded: If the applicant who initiates the data operation request is a legitimate data subject and has authorized operation rights, the data operation requested by the subject will be executed, and the application, execution and result information of the data operation will be recorded; S2.4 The operation behavior of the data subject who has no data subject identity or does not have the operation authority will be rejected, and the illegal access behavior will be recorded: If the applicant who initiates a data operation request is an illegal data subject or does not have the operation authority, his / her data operation application will be rejected, and his / her data operation application behavior and the rejection result will be recorded.
6. A data living body based on data rights confirmation by binding subject and object, the data living body is the abbreviation of active data object, the data living body binds data subject information with data object through a certain data structure, and uniformly encapsulates information such as data object, data ownership, data usage rights, etc., characterized in that: The structure of the data body includes: (a) Basic information module: stores data liveness identification, data liveness status information and data liveness survival period; (b) Data owner information module: stores the subject information of the data owner, including the subject's unique identifier, subject name, subject type, contact information and digital certificate; (c) Data object information module: stores data identification, data type, data level and data hash value; (d) Data object content module: stores encrypted data content; (e) Data user information module: stores the data user’s subject information and data operation permission list; (f) Data owner signature module: stores the digital signature of the data based on the data owner’s digital certificate; Among them, subject types include institutional subjects, individual subjects, and agent subject types; subject information includes basic information and extended information. Basic information is the core verification basis for controlling data operation behaviors, and extended information can be selectively stored according to actual business scenarios.
7. The data living body according to claim 6, characterized in that: The institutional extended information of the institutional subject type includes the institution code, legal representative and establishment date; the personal extended information of the individual subject type includes the ID number, gender and date of birth; the agent extended information of the agent subject type includes the system identifier, interactive interface and system parameters; the agent subject refers to an intelligent agent system that, with the permission of the institution or individual subject, can represent the will of the institution or individual subject and perform specified data operations.
8. The data living body according to claim 6, characterized in that: The active data object information module includes the following attributes: (1) Data identification: Use a globally unique identifier to identify the data object; (2) Data form: including data content copy, data resource URL or data service API; (3) Data type: business data type defined based on business classification standards; (4) Data level: business data level defined based on business classification standards; (5) Data structure: describes the data organization form through data structure standards or specific formats; (6) Data hash value: The hash value of the data content is calculated using a cryptographic hash algorithm; (7) Extended information: additional attributes that support customization of business scenarios.
9. The data living body according to claim 6, characterized in that: The data object content module meets the following conditions: (1) The data object content is consistent with the data form, data type, data level and data hash value in the data object information module; (2) The ciphertext data content is the result of encrypting the data content using an encryption algorithm, and is ensured to match the data hash value in the data object information through hash verification; (3) Data length records the number of bytes of the ciphertext data.
10. The data living body according to claim 6, characterized in that: The data user information meets the following conditions: one data entity can be bound to one data user information or multiple data user information.
11. The data living body according to claim 6, characterized in that: The data owner's signature meets the following conditions: the signature value obtained by digitally signing the basic information of the data, the data owner's information, the data object information, and the data object content using the data owner's digital certificate can be used to verify the integrity, authenticity, and non-repudiation of the binding relationship between the data owner and the data object, that is, to confirm the data ownership; The signature value obtained by digitally signing the basic information of the data entity, data owner information, data object information, data object content, and data user information using the data owner's digital certificate can verify the integrity, authenticity, and non-repudiation of the binding relationship between the data owner and the data object and the information granting the data user relevant data operation permissions, that is, confirm the data ownership and data usage rights.
Citation Information
Patent Citations
Data right confirmation method based on subject and object binding
CN119337407A
Container and encryption-based data behavior security management method
CN119337408A
Data transaction security protection method based on subject and object binding relationship
CN119337436A
Electronic Identity and Credentialing System
US20150095999A1
Cited By
Dynamic data access authorization method, system and device based on market activeness and medium
CN121567357A