Video password management system and method

The video password management system with a dual-key encryption mechanism solves the problem of users having to manually enter passwords after video passwords are modified, realizes automatic decryption of video data, and improves the user experience of video playback.

CN120658900APending Publication Date: 2025-09-16HANGZHOU EZVIZ SOFTWARE CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202410294515.0
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2024-03-14
Publication Date
2025-09-16

AI Technical Summary

Technical Problem

After the recording password of the existing recorder is changed, the user needs to manually enter different passwords to decode the previous and next recordings, which increases the memory burden and operation complexity, affecting the recording playback experience.

Method used

It adopts a dual-key encryption mechanism, which automatically obtains and decrypts video data through the collaborative work of the application, server and device ends, reducing the need for users to manually enter passwords.

Benefits of technology

While ensuring the security of the video, it reduces the user's memory burden and operation complexity, and improves the user experience of video playback.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN120658900A_ABST
    Figure CN120658900A_ABST
Patent Text Reader

Abstract

The embodiment of the invention provides a video password management system and method, the system comprises an application side, a server side and an equipment side, the equipment side responds to a video playback request of a first video sent by the application side through the server side, and password summary information and encrypted video data of the first video are obtained and forwarded to the application side through the server side; the encrypted video data at least comprises video data encrypted by using the first secret key and video data encrypted by using the second secret key. The application side generates and sends a first password obtaining request to the server side according to the password summary information of the first video, so that the server side obtains a first secret key and a second secret key corresponding to the password summary information of the first video according to the first password obtaining request and forwards the first secret key and the second secret key to the application side, and the application end decrypts the encrypted video data by using the first secret key and the second secret key. Therefore, the memory burden of the user is not increased while the information security of the user is ensured.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present application relates to the field of information security technology, and in particular to a video password management system and method. Background Art

[0002] In the current video surveillance field, most video recordings stored in devices are in an unencrypted state, which poses a security risk of information leakage. Therefore, it is necessary to encrypt this part of the video data.

[0003] Currently, to ensure security, video recorders encrypt live recordings with a user-specified password. If the user changes the password during recording, the recorder will use the modified password to encrypt subsequent recordings. In this case, when replaying the recording, the user must first manually enter the password before the change to decrypt the first portion of the video, and then manually enter the modified password to decrypt the second portion. This increases the user's memory burden and reduces the user experience during playback. Summary of the Invention

[0004] The purpose of the embodiments of the present application is to provide a video password management system and method to ensure the security of the video while reducing the user's memory burden and improving the user experience during video playback. The specific technical solution is as follows:

[0005] In a first aspect, an embodiment of the present application provides a video recording password management system, the system comprising:

[0006] Application side, server side and device side;

[0007] The application end is used to send a video playback request for the first video to the server end;

[0008] The server is configured to forward the video playback request to the device;

[0009] The device end is configured to, in response to the video playback request, obtain the password summary information and encrypted video data of the first video, and send the password summary information and encrypted video data of the first video to the server end, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, the first encrypted video data being video data encrypted using a first key, and the second encrypted video data being video data encrypted using a second key;

[0010] The server is further configured to send the password summary information and encrypted video data of the first video to the application;

[0011] The application end is further configured to generate a first password acquisition request based on the password summary information of the first video, and send the first password acquisition request to the server end;

[0012] The server is further configured to obtain, according to the first password acquisition request, a first key and a second key corresponding to the password summary information of the first video, and send the first key and the second key to the application;

[0013] The application end is further configured to decrypt the first encrypted video data and the second encrypted video data using the first key and the second key respectively.

[0014] In a possible embodiment, the server is specifically configured to send the first password acquisition request to the device;

[0015] The device end is further used to query the pre-stored correspondence between password summary information and keys based on the password summary information of the first video in the first password acquisition request, obtain the first key and the second key corresponding to the password summary information of the first video; and send the first key and the second key to the server end.

[0016] In a possible embodiment, the device end is specifically used to query the correspondence between pre-stored password summary information and keys based on the password summary information of the first video in the first password acquisition request, and obtain the first encryption key and the second encryption key corresponding to the password summary information of the first video; and decrypt the first encryption key and the second encryption key respectively to obtain the first key and the second key.

[0017] In a possible embodiment, the system further includes: a password escrow server;

[0018] The server is specifically configured to send the first password acquisition request to the password hosting server;

[0019] The password hosting server is configured to query the pre-stored correspondence between the password summary information and the key based on the password summary information of the first video in the first password acquisition request, obtain the first key and the second key corresponding to the password summary information of the first video, and send the first key and the second key to the server.

[0020] In a possible embodiment, the password hosting server is specifically used to query the correspondence between pre-stored password summary information and keys based on the password summary information of the first video in the first password acquisition request, and obtain the first encryption key and the second encryption key corresponding to the password summary information of the first video; and decrypt the first encryption key and the second encryption key respectively to obtain the first key and the second key.

[0021] In a possible embodiment, the device end is further used to obtain a first key when recording the first video; use the first key to encrypt the first video recorded in real time to obtain first encrypted video data; respond to the user's key modification instruction, obtain a second key corresponding to the key modification instruction, and slice the recorded first video; use the second key to encrypt the first video collected after slicing to obtain second encrypted video data; obtain summary generation information of the first video; generate cryptographic summary information of the first video based on the summary generation information; and associate and store the first key, the second key, and the cryptographic summary information of the first video.

[0022] In a possible embodiment, the device is specifically configured to encrypt the first key and the second key to obtain a first encryption key and a second encryption key respectively; and associate the first encryption key, the second encryption key, and the cryptographic summary information of the first video with each other and store them in the device;

[0023] Alternatively, the device is specifically configured to send the first key, the second key, and the password summary information of the first video to a password hosting server;

[0024] The password hosting server is used to encrypt the first key and the second key respectively to obtain a first encryption key and a second encryption key; and associate the first encryption key, the second encryption key and the password summary information of the first video and store them in the password hosting server.

[0025] In a possible embodiment, the device end is specifically used to determine the current classification strategy based on at least one of the user account identifier, device identifier and channel identifier of the channel for recording the first video when recording the first video, and generate a first key according to the current classification strategy.

[0026] In a possible embodiment, the device end is specifically configured to obtain a key corresponding to the device end to obtain a first key when the current classification policy is a device classification policy;

[0027] or,

[0028] The device end is specifically configured to obtain the first key by acquiring the key corresponding to the channel for recording the first video in the device end when the current classification strategy is the channel classification strategy.

[0029] In a possible embodiment, the device end is also used to obtain the effective start time and effective end time of the first key to obtain the first effective time; obtain the effective start time and effective end time of the second key to obtain the second effective time; and associate and store the first key, the second key, the password summary information of the first video, the first effective time, and the second effective time.

[0030] In a second aspect, an embodiment of the present application provides a video recording password management method, which is applied to a device side, and the method includes:

[0031] In response to a video playback request for a first video, obtaining cryptographic summary information and encrypted video data of the first video, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, the first encrypted video data being video data encrypted using a first key, and the second encrypted video data being video data encrypted using a second key;

[0032] The cryptographic summary information of the first video and the encrypted video data are sent, so that the application end obtains the first key and the second key according to the cryptographic summary information of the first video, and uses the first key and the second key to decrypt the first encrypted video data and the second encrypted video data respectively.

[0033] In a possible embodiment, the method further includes:

[0034] When recording the first video, obtaining a first key; encrypting the first video recorded in real time using the first key to obtain first encrypted video data;

[0035] In response to a key modification instruction from a user, obtaining a second key corresponding to the key modification instruction, and slicing the recorded first video;

[0036] Encrypting the first video collected after slicing using the second key to obtain second encrypted video data;

[0037] Obtaining summary generation information of the first video; generating password summary information of the first video based on the summary generation information;

[0038] The first key, the second key, and the cryptographic summary information of the first video are stored in association.

[0039] In a possible embodiment, obtaining the first key while recording the first video includes:

[0040] When recording the first video, determining a current grading strategy based on at least one of a user account identifier of the device, a device identifier, and a channel identifier of a channel for recording the first video;

[0041] A first key is obtained according to the current classification strategy.

[0042] In a possible embodiment, obtaining the first key according to the current grading strategy includes:

[0043] When the current classification strategy is a device classification strategy, obtaining a key corresponding to the device end to obtain a first key;

[0044] or,

[0045] When the current classification strategy is the channel classification strategy, a key corresponding to the channel for recording the first video in the device end is obtained to obtain a first key.

[0046] In a possible embodiment, the method further includes:

[0047] Obtain the effective start time and effective end time of the first key to obtain the first effective time; obtain the effective start time and effective end time of the second key to obtain the second effective time;

[0048] The associated storage of the first key, the second key, and the cryptographic summary information of the first video includes:

[0049] The first key, the second key, the password summary information of the first video, the first effective time, and the second effective time are stored in association.

[0050] In a possible embodiment, sending the cryptographic summary information of the first video and the encrypted video data so that the application end obtains the first key and the second key according to the cryptographic summary information of the first video includes:

[0051] Sending the password summary information and encrypted video data of the first video, so that the application generates a first password acquisition request based on the password summary information of the first video, and sends the first password acquisition request to the server;

[0052] The method further comprises:

[0053] Receiving the first password acquisition request sent by the server;

[0054] According to the password summary information of the first video in the first password acquisition request, query the pre-stored correspondence between the password summary information and the key to obtain the first key and the second key corresponding to the password summary information of the first video;

[0055] The first key and the second key are sent to the server, so that the server forwards the first key and the second key to the application.

[0056] In a third aspect, an embodiment of the present application provides a video recording password management method, which is applied to an application end, and the method includes:

[0057] Sending a video playback request for a first video, so that the device end, in response to the video playback request, obtains and sends the password summary information and encrypted video data of the first video, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, the first encrypted video data being video data encrypted using a first key, and the second encrypted video data being video data encrypted using a second key;

[0058] Obtaining the password summary information and encrypted video data of the first video;

[0059] generating a first password acquisition request based on the password summary information of the first video, and sending the first password acquisition request so that the server obtains the first key and the second key corresponding to the password summary information of the first video based on the first password acquisition request;

[0060] The first encrypted video data and the second encrypted video data are decrypted and played using the first key and the second key respectively.

[0061] In a fourth aspect, an embodiment of the present application provides a video recording password management device, which is applied to a device end, and the device includes:

[0062] a first acquisition module, configured to, in response to a video playback request for a first video, acquire cryptographic summary information and encrypted video data of the first video, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, wherein the first encrypted video data is video data encrypted using a first key, and the second encrypted video data is video data encrypted using a second key;

[0063] The first sending module is configured to send the cryptographic summary information of the first video and the encrypted video data, so that the application end obtains the first key and the second key according to the cryptographic summary information of the first video, and decrypts the first encrypted video data and the second encrypted video data using the first key and the second key respectively.

[0064] In a possible embodiment, the device further includes a module for performing the following operations:

[0065] When recording the first video, a first key is obtained; the first video recorded in real time is encrypted using the first key to obtain first encrypted video data; in response to a key modification instruction of a user, a second key corresponding to the key modification instruction is obtained, and the recorded first video is sliced; the first video collected after slicing is encrypted using the second key to obtain second encrypted video data; summary generation information of the first video is obtained; cryptographic summary information of the first video is generated based on the summary generation information; and the first key, the second key, and the cryptographic summary information of the first video are associated and stored.

[0066] In a possible embodiment, the device further includes a module for performing the following operations:

[0067] When recording the first video, determining a current grading strategy based on at least one of a user account identifier of the device, a device identifier, and a channel identifier of a channel for recording the first video;

[0068] A first key is obtained according to the current classification strategy.

[0069] In a possible embodiment, the device further includes a module for performing the following operations:

[0070] When the current classification strategy is a device classification strategy, obtaining a key corresponding to the device end to obtain a first key;

[0071] or,

[0072] When the current classification strategy is the channel classification strategy, a key corresponding to the channel for recording the first video in the device end is obtained to obtain a first key.

[0073] In a possible embodiment, the device further includes a module for performing the following operations:

[0074] Obtain the effective start time and effective end time of the first key to obtain the first effective time; obtain the effective start time and effective end time of the second key to obtain the second effective time;

[0075] The apparatus also includes a module for performing the following operations:

[0076] The first key, the second key, the password summary information of the first video, the first effective time, and the second effective time are stored in association.

[0077] In a possible embodiment, the first sending module is configured to:

[0078] Sending the password summary information and encrypted video data of the first video, so that the application generates a first password acquisition request based on the password summary information of the first video, and sends the first password acquisition request to the server;

[0079] The apparatus further comprises means for performing the following operations:

[0080] Receiving the first password acquisition request sent by the server;

[0081] According to the password summary information of the first video in the first password acquisition request, query the pre-stored correspondence between the password summary information and the key to obtain the first key and the second key corresponding to the password summary information of the first video;

[0082] The first key and the second key are sent to the server, so that the server forwards the first key and the second key to the application.

[0083] In a fifth aspect, an embodiment of the present application further provides a video recording password management device, which is applied to an application end, and the device includes:

[0084] a second sending module, configured to send a video playback request for the first video, so that the device end, in response to the video playback request, obtains and sends the password summary information and encrypted video data of the first video, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, the first encrypted video data being video data encrypted using the first key, and the second encrypted video data being video data encrypted using the second key;

[0085] A second acquisition module is used to obtain the password summary information and encrypted video data of the first video;

[0086] a generating module, configured to generate a first password acquisition request based on the password summary information of the first video, and send the first password acquisition request, so that the server obtains the first key and the second key corresponding to the password summary information of the first video based on the first password acquisition request;

[0087] The decryption module is used to decrypt and play the first encrypted video data and the second encrypted video data using the first key and the second key respectively.

[0088] In a sixth aspect, an embodiment of the present application further provides a computer-readable storage medium, wherein the computer-readable storage medium stores at least one computer program, and the computer program is loaded and executed by a processor to implement the video recording password management method.

[0089] In a seventh aspect, an embodiment of the present application further provides a computer program product comprising instructions, which, when executed on a computer, enables the computer to execute any of the above-described video recording password management methods.

[0090] Beneficial effects of the embodiments of the present application:

[0091] The embodiment of the present application provides a video password management system and method. The system includes an application end, a server end, and a device end. The device end responds to a video playback request for a first video sent by the application end via the server end, obtains the password summary information and encrypted video data of the first video, and forwards it to the application end via the server end. The encrypted video data at least includes video data encrypted using a first key and video data encrypted using a second key. Based on the password summary information of the first video, the application end generates and sends a first password acquisition request to the server end, so that the server end obtains and forwards the first key and second key corresponding to the password summary information of the first video to the application end according to the first password acquisition request, so that the application end uses the first key and second key to decrypt the encrypted video data. In this way, while ensuring the security of user information, the user's memory burden is not increased, and the user experience is improved.

[0092] Of course, it is not necessary to achieve all the advantages described above at the same time when implementing any product or method of the present application. BRIEF DESCRIPTION OF THE DRAWINGS

[0093] In order to more clearly illustrate the embodiments of the present application or the technical solutions in the prior art, the following briefly introduces the drawings required for use in the embodiments or the description of the prior art. Obviously, the drawings described below are only some embodiments of the present application. For ordinary technicians in this field, other embodiments can also be obtained based on these drawings.

[0094] Figure 1 A schematic diagram of a video password management system provided in an embodiment of the present application;

[0095] Figure 2 A schematic diagram of a grading strategy provided in an embodiment of the present application;

[0096] Figure 3 A first schematic diagram of the video recording password management method provided in an embodiment of the present application;

[0097] Figure 4 A second schematic diagram of the video recording password management method provided in an embodiment of the present application;

[0098] Figure 5 A third schematic diagram of the video recording password management method provided in an embodiment of the present application;

[0099] Figure 6A fourth schematic diagram of the video recording password management method provided in an embodiment of the present application;

[0100] Figure 7 A fifth schematic diagram of the video recording password management method provided in an embodiment of the present application;

[0101] Figure 8 A first schematic diagram of a video password management device provided in an embodiment of the present application;

[0102] Figure 9 This is a second schematic diagram of the video password management device provided in an embodiment of the present application. DETAILED DESCRIPTION

[0103] The following will be combined with the drawings in the embodiments of this application to clearly and completely describe the technical solutions in the embodiments of this application. Obviously, the embodiments described are only part of the embodiments of this application, not all of the embodiments. Based on the embodiments in this application, all other embodiments obtained by ordinary technicians in this field based on this application are within the scope of protection of this application.

[0104] The terms used in the embodiments of the present application are for the purpose of describing specific embodiments only and are not intended to limit the present application. The singular forms "a", "an", "the" and "the" used in the embodiments of the present application and the appended claims are also intended to include plural forms unless the context clearly indicates otherwise.

[0105] It should be understood that the term "and / or" as used herein simply describes a relationship between associated objects, indicating that three possible relationships exist. For example, "A and / or B" can represent: A alone, A and B together, or B alone. Furthermore, the character " / " in this document generally indicates an "or" relationship between the associated objects.

[0106] First, let’s explain the professional terms in this application:

[0107] Password escrow service: a service used for password escrow and query.

[0108] Original text: Raw data without encryption.

[0109] Ciphertext: Encrypted ciphertext data, where encryption methods include symmetric encryption and asymmetric encryption.

[0110] SHA256: A message digest algorithm.

[0111] Video index: An index snapshot defined to facilitate quick search of video files. It contains key information for quickly finding specified video clips, such as device identification, video name, video start time, video end time, video duration, smart tag, video password summary, and other information.

[0112] Before explaining in detail the video recording password management system and method provided in the embodiments of the present application, the application scenarios of the video recording password management system and method provided in the embodiments of the present application are first introduced.

[0113] In the prior art, during the video recording process, in order to ensure the security of the video, the real-time recorded video will be encrypted with a password specified by the user. During the video recording process, when the user modifies the password used for the video, the video recorder will use the modified password to encrypt the subsequently collected video. In this case, when the user plays back the video, he needs to manually enter the password before the modification to decode the first part of the video, and then manually enter the modified password to decode the second part of the video, which increases the user's memory burden and the user experience during video playback is poor. The video password management system and method provided in the embodiment of the present application proposes a mechanism of password hosting service. While ensuring the security of the video data, the video password can be automatically entered for the video data during video playback, without the user having to manually enter the video password, thereby reducing the user's operation complexity and memory burden, and effectively reducing the situation where the video cannot be played back due to the loss of the video password.

[0114] In view of this, the present application embodiment provides a video password management system, see Figure 1 The system includes: an application end 101, a server end 102 and a device end 103, and the server end 102 is connected to the application end 101 and the device end 103 respectively.

[0115] The application end 101 is configured to send a video playback request for a first video to the server end 102 .

[0116] Application 101 is an application installed on a smart terminal that can be used to play back videos. In one possible embodiment, when a video file stored on device 103 needs to be played back, the user can log in to their user account on application 101 and select the first video they want to play back. Based on the user's trigger operation on application 101 for the first video, application 101 sends a video playback request for the first video to server 102. The video playback request carries a user account identifier, so that server 102 can first verify the user account's permissions based on the user account identifier in the video playback request. After the permission verification is passed, server 102 forwards the video playback request to device 103.

[0117] The device end 103 is configured to obtain the password summary information and the encrypted video data of the first video in response to the video playback request, and send the password summary information and the encrypted video data of the first video to the server end 102 .

[0118] In a possible embodiment, the device end 103 may be a network camera or a network video recorder. The first video is a video recorded by the device end 103 or a video stored in the device end 103. The encrypted video data of the first video is encrypted video data obtained by encrypting the video data of the first video.

[0119] In a possible embodiment, the encrypted video data of the first video may include only video data encrypted using the first key, or the encrypted video data of the first video may include at least video data encrypted using the first key and video data encrypted using the second key.

[0120] It should be noted that in the embodiments of the present application, the device 103 may determine a corresponding grading strategy based on actual business needs, and then obtain the first key based on the determined grading strategy. In one example, the device 103 is configured to: when recording a first video, determine the current grading strategy based on at least one of the device's user account identifier, the device identifier, and the channel identifier of the channel in which the first video was recorded, and generate the first key according to the current grading strategy.

[0121] For example, the device 103 is specifically configured to: when the current classification policy is a device classification policy, obtain the key corresponding to the device 103 to obtain the first key; or, when the current classification policy is a channel classification policy, obtain the key corresponding to the channel in which the first video is recorded on the device 103 to obtain the first key. In addition, when the current classification policy is a user account classification policy, the device 103 is specifically configured to obtain the key corresponding to the user account logged in on the device 103 to obtain the first key.

[0122] In a possible embodiment, the device 103 is further configured to generate the first key according to other grading strategies when the current grading strategy is other grading strategies. This application does not limit this.

[0123] In the embodiment of the present application, hierarchical password hosting is performed according to the business scenario to cover multi-device business scenarios with different video encryption passwords for multiple devices under the same account.

[0124] For example, the classification strategy in the embodiment of the present application can be as follows: Figure 2As shown, it includes: user classification policy 201, device classification policy 202, channel classification policy 203, and other classification policies 204. User classification policy 201 manages keys based on user, allowing each user to customize their own key; device classification policy 202 manages keys based on device, allowing each device to have a different key; channel classification policy 203 manages keys based on channel, allowing each channel on a device to have a different key. Other classification policies 204 can be user-defined classification policies, such as time classification and regional classification.

[0125] In a possible embodiment, the second key is a key obtained by the user changing the first key during the process of recording the first video.

[0126] It should be noted that if the user does not change the first key during the recording of the first video, the encrypted video data of the first video will only include the video data encrypted using the first key. If the user changes the first key during the recording of the first video, the encrypted video data of the first video will include at least the video data encrypted using the first key and the video data encrypted using the second key.

[0127] Next, the following description will be made using the case where the user changes the first key during the recording of the first video:

[0128] The device end 103 is also used to obtain a first key when recording a first video; use the first key to encrypt the first video recorded in real time to obtain first encrypted video data; respond to the user's key modification instruction, obtain the second key corresponding to the key modification instruction, and slice the recorded first video; use the second key to encrypt the first video collected after slicing to obtain second encrypted video data; obtain summary generation information of the first video; generate cryptographic summary information of the first video based on the summary generation information; and associate and store the first key, the second key, and the cryptographic summary information of the first video.

[0129] It should be noted that the embodiments of the present application may use existing technologies to encrypt the first video recorded in real time, and may use existing technologies to slice the first video recorded and encrypt the first video collected after slicing. This application does not limit this.

[0130] In one possible embodiment, the summary generation information of the first video includes at least the user account identifier, the first key, and the second key of the device terminal 103. In addition, the summary generation information of the first video may also include at least one of the device identifier of the device terminal 103, the channel identifier of the channel in which the first video was recorded, and other hierarchical identifiers other than the aforementioned identifiers.

[0131] In one example, the device end 103 is specifically used to generate the cryptographic summary information of the first video by using the SHA (Secure Hash Algorithm) 256 algorithm for the user account identifier, the first key, and the second key of the device end 103. Optionally, the device end 103 is specifically used to generate the cryptographic summary information of the first video by using the SHA256 algorithm for the user account identifier, the device identifier, the first key, and the second key of the device end 103. Alternatively, the device end 103 is specifically used to generate the cryptographic summary information of the first video by using the SHA algorithm for the user account identifier, the device identifier, the channel identifier of the channel for recording the first video, the first key, and the second key of the device end 103. Alternatively, the device end 103 is specifically used to generate the cryptographic summary information of the first video by using the SHA algorithm for the user account identifier, the device identifier, the channel identifier of the channel for recording the first video, other hierarchical identifiers other than the above identifiers, the first key, and the second key of the device end 103.

[0132] In one possible embodiment, the server 102 is configured to send the password summary information of the first video and the encrypted video data to the application 101. The application 101 is configured to generate a first password acquisition request based on the password summary information of the first video, and send the first password acquisition request to the server 102. The server 102 is further configured to obtain the first key and the second key corresponding to the password summary information of the first video based on the first password acquisition request, and send the first key and the second key to the application 101.

[0133] In a possible embodiment, the video recording password management solution of the embodiment of the present application can store the corresponding relationship between the password summary information and the key in the device end 103, or in the password hosting server, or in a remote device.

[0134] In one possible embodiment, the server 102 is specifically configured to send a first password acquisition request to the device 103. The device 103 is further configured to query a pre-stored correspondence between password summary information and a key based on the password summary information of the first video in the first password acquisition request, obtain a first key and a second key corresponding to the password summary information of the first video, and send the first key and the second key to the server 102.

[0135] In a possible embodiment, the device end 103 is specifically used to query the correspondence between the pre-stored password summary information and the key based on the password summary information of the first video in the first password acquisition request, and obtain the first encryption key and the second encryption key corresponding to the password summary information of the first video; and decrypt the first encryption key and the second encryption key respectively to obtain the first key and the second key.

[0136] In a possible embodiment, the video recording password management system further includes a password hosting server 104 , which is connected to the device end 103 .

[0137] In one possible embodiment, the server 102 is specifically configured to send a first password acquisition request to the password escrow server 104. The password escrow server 104 is configured to query a pre-stored correspondence between password summary information and a key based on the password summary information of the first video in the first password acquisition request, obtain a first key and a second key corresponding to the password summary information of the first video, and send the first key and the second key to the server 102.

[0138] In a possible embodiment, the password hosting server 104 is specifically configured to query the correspondence between pre-stored password summary information and the key based on the password summary information of the first video in the first password acquisition request, and obtain the first encryption key and the second encryption key corresponding to the password summary information of the first video; and decrypt the first encryption key and the second encryption key respectively to obtain the first key and the second key.

[0139] In one possible embodiment, the device 103 is specifically configured to encrypt the first key and the second key based on the device information of the device to obtain the first encryption key and the second encryption key; and associate the password summary information of the first video, the first encryption key, and the second encryption key with each other and store them in the device 103 to obtain a pre-stored correspondence between the password summary information and the keys. For example, the device information of the device may be a device identifier of the device.

[0140] In a possible embodiment, the device end 103 is used to send the password summary information, the first encryption key and the second encryption key of the associated first video to the password hosting server 104, so that the password hosting server 104 stores the password summary information, the first encryption key and the second encryption key of the first video in association in the password hosting server 104, and obtains the pre-stored correspondence between the password summary information and the key.

[0141] In one possible embodiment, the device 103 is configured to write the password summary information of the first video, the first encryption key, and the second encryption key into a video index file of the first video, and encrypt the video index file using the device information of the device. Other encryption methods may also be used to encrypt the video index file to ensure data security of the video index file. It should be noted that this application does not limit the encryption method used to encrypt the first key and the second key, or to encrypt the video index file.

[0142] In a possible embodiment, after obtaining the video index file, the device end 103 may send the video index file to the password hosting server 104 for storage.

[0143] In a possible embodiment, the device end 103 is also used to obtain the effective start time and effective end time of the first key to obtain the first effective time; obtain the effective start time and effective end time of the second key to obtain the second effective time; and associate and store the first key, the second key, the password summary information of the first video, the first effective time and the second effective time.

[0144] In the embodiment of the present application, the first key, the second key, the password summary information of the first video, the first effective time and the second effective time are stored in association, so that the password can be automatically switched based on the effective time of the key during subsequent video playback.

[0145] In a possible embodiment, the device end 103 is also used to send the first key, the second key, the password summary information of the first video, the first effective time and the second effective time to the password hosting server 104, and the password hosting server 104 associates and stores the first key, the second key, the password summary information of the first video, the first effective time and the second effective time.

[0146] In a possible embodiment, the device end 103 is specifically used to write the first key, the second key, the password summary information of the first video, the first effective time and the second effective time into the video index file, store the video index file in the device end 103, or send the video index file to the password hosting server 104, and store the video index file in the password hosting server 104.

[0147] In a possible embodiment, the device end 103 is used to delete the video encryption data and the corresponding password summary information in the device end 103 when it is detected that the video file stored in the device end 103 reaches the device end capacity limit and needs to be cyclically overwritten.

[0148] In one possible embodiment, when a user disables the video password management function in application 101, application 101 is configured to send a video playback request for a first video to server 102; server 102 is configured to forward the video playback request to device 103; device 103 is configured to, in response to the video playback request, obtain the encrypted video data of the first video and send the encrypted video data of the first video to server 102; server 102 sends the encrypted video data of the first video to application 101. After obtaining the encrypted video data of the first video, application 101 pops up a password input prompt. After obtaining the video password manually entered by the user, application 101 uses the video password to decrypt and play the encrypted video data. It should be noted that the video password management system does not modify the video passwords of previously generated videos, nor does it clear the passwords that have already been managed.

[0149] In some possible embodiments, the device side 103 is used to transmit the first key and the second key to the server side 102 via link encryption transmission, and the server side 102 is used to encrypt the first key and the second key respectively to obtain the first encryption key and the second encryption key, and send the first encryption key and the second encryption key to the application side 101.

[0150] In a possible embodiment, the password hosting server is used to transmit the first key and the second key to the server 102 via link encryption transmission, and the server 102 is used to encrypt the first key and the second key respectively to obtain the first encryption key and the second encryption key, and send the first encryption key and the second encryption key to the application end 101.

[0151] In a possible embodiment, the application end 101 is further configured to decrypt the first encrypted video data and the second encrypted video data using the first key and the second key.

[0152] In a possible embodiment, the application end 101 is specifically configured to decrypt the first encryption key to obtain the first key and the second key, and use the first key and the second key to decrypt the first encrypted video data and the second encrypted video data.

[0153] In the video password management system provided in an embodiment of the present application, the system includes an application, a server, and a device. In response to a video playback request for a first video sent by the application via the server, the device obtains and forwards the password summary information and encrypted video data of the first video to the application via the server. The encrypted video data includes at least video data encrypted using a first key and video data encrypted using a second key. Based on the password summary information of the first video, the application generates and sends a first password acquisition request to the server, so that the server obtains and forwards the first and second keys corresponding to the password summary information of the first video to the application based on the first password acquisition request, so that the application decrypts the encrypted video data using the first and second keys. In this way, while ensuring the security of the video data, the video password can be automatically entered for the encrypted video data during video playback, eliminating the need for the user to manually enter the video password. This reduces the user's operational complexity and memory burden, and effectively reduces the situation where the video cannot be played back due to the loss of the video password.

[0154] In an embodiment of the present application, when password hosting is turned on, the password can be automatically switched according to the effective time during video playback, reducing the need to manually enter the password when switching data from multiple devices or multiple video clips, thereby reducing the user's memory and operation burden.

[0155] See also Figure 3 The embodiment of the present application also provides a schematic diagram of a video recording password management method, which is applied to a device side, and the specific steps are as follows:

[0156] S301 : In response to a video playback request of a first video, obtain password summary information and encrypted video data of the first video.

[0157] It should be noted that the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, the first encrypted video data is video data encrypted using the first key, and the second encrypted video data is video data encrypted using the second key.

[0158] S302: Send the cryptographic summary information of the first video and the encrypted video data, so that the application end obtains the first key and the second key according to the cryptographic summary information of the first video, and decrypts the first encrypted video data and the second encrypted video data using the first key and the second key respectively.

[0159] In a possible embodiment, the method further includes the following steps:

[0160] When recording a first video, obtaining a first key; encrypting the first video recorded in real time using the first key to obtain first encrypted video data;

[0161] In response to a key modification instruction from a user, obtaining a second key corresponding to the key modification instruction, and slicing the recorded first video;

[0162] Encrypting the first video collected after slicing using the second key to obtain second encrypted video data;

[0163] Obtaining summary generation information of the first video; generating password summary information of the first video based on the summary generation information;

[0164] The first key, the second key and the cryptographic summary information of the first video are stored in association.

[0165] In a possible embodiment, when recording a first video, obtaining a first key includes: when recording the first video, determining a current grading strategy based on at least one of a user account identifier on the device side, a device identifier, and a channel identifier of a channel for recording the first video; and obtaining the first key according to the current grading strategy.

[0166] In a possible embodiment, obtaining the first key according to the current classification strategy includes:

[0167] When the current classification strategy is a device classification strategy, obtaining a key corresponding to the device end to obtain a first key;

[0168] or,

[0169] When the current classification strategy is the channel classification strategy, a key corresponding to the channel for recording the first video on the device side is obtained to obtain a first key.

[0170] In a possible embodiment, the method further includes the following steps:

[0171] Obtain the effective start time and effective end time of the first key to obtain the first effective time; obtain the effective start time and effective end time of the second key to obtain the second effective time;

[0172] The first key, the second key, and the cryptographic summary information of the first video are stored in association, including:

[0173] The first key, the second key, the password summary information of the first video, the first effective time and the second effective time are stored in association.

[0174] In a possible embodiment, sending the cryptographic summary information of the first video and the encrypted video data so that the application end obtains the first key and the second key according to the cryptographic summary information of the first video includes:

[0175] Sending the password summary information of the first video and the encrypted video data, so that the application generates a first password acquisition request based on the password summary information of the first video, and sends the first password acquisition request to the server;

[0176] In a possible embodiment, the method further includes the following steps:

[0177] Receive a first password acquisition request sent by the server;

[0178] According to the password summary information of the first video in the first password acquisition request, query the pre-stored correspondence between the password summary information and the key to obtain the first key and the second key corresponding to the password summary information of the first video;

[0179] The first key and the second key are sent to the server, so that the server forwards the first key and the second key to the application.

[0180] Through the technical solution provided by the embodiments of the present application, the device, in response to a video playback request for a first video, obtains and sends the cryptographic summary information of the first video and encrypted video data including at least first encrypted video data and second encrypted video data to the application. The application then obtains the first and second keys corresponding to the cryptographic summary information of the first video based on the cryptographic summary information of the first video, and decrypts the encrypted video data using the first and second keys, respectively. While ensuring the security of the video data, the video password can be automatically entered for the encrypted video data during video playback, eliminating the need for the user to manually enter the video password. This reduces the user's operational complexity and memory burden, and effectively reduces the possibility of being unable to playback a video due to loss of the video password.

[0181] See also Figure 4 The embodiment of the present application also provides a schematic diagram of a video recording password management method, which is applied to the application end, and the specific steps are as follows:

[0182] S401: Send a video playback request for a first video, so that the device side responds to the video playback request, obtains and sends the password summary information and encrypted video data of the first video.

[0183] The encrypted video data of the first video at least includes first encrypted video data and second encrypted video data, the first encrypted video data is video data encrypted using the first key, and the second encrypted video data is video data encrypted using the second key.

[0184] S402: Obtain password summary information and encrypted video data of the first video.

[0185] S403: Generate a first password acquisition request according to the password summary information of the first video, and send the first password acquisition request, so that the server obtains the first key and the second key corresponding to the password summary information of the first video according to the first password acquisition request.

[0186] S404: Decrypt the first encrypted video data and the second encrypted video data using the first key and the second key respectively, and play them.

[0187] Through the technical solution provided in the embodiments of the present application, the application sends a video playback request for a first video, so that the device, in response to the video playback request, obtains and sends the password summary information of the first video and the encrypted video data including at least the first encrypted video data and the second encrypted video data. In response to the password summary information of the first video, a first password acquisition request is generated and sent, so that the server obtains the first key and the second key corresponding to the password summary information of the first video according to the first password acquisition request. The encrypted video data of the first video is decrypted and played using the first key and the second key, respectively. While ensuring the security of the video data, the video password can be automatically entered for the encrypted video data during video playback, eliminating the need for the user to manually enter the video password. This reduces the user's operational complexity and memory burden, and effectively reduces the situation where the video cannot be played back due to the loss of the video password.

[0188] See also Figure 5 , the embodiment of the present application also provides a schematic diagram of a video recording password management method, the specific steps are as follows:

[0189] S501: Generate password digest information by using SHA256 to generate password digest information for user account ID, device ID, channel ID, other classification IDs, and video password plain text.

[0190] In one possible embodiment, hierarchical permissions can be set for user account identifiers, device identifiers, and channel identifiers according to different business application scenarios. For example, all devices under the same user account identifier can use the same hosting policy; a second-level hierarchical policy can be set based on user account identifiers and device identifiers; a third-level hierarchical policy can be set based on user account identifiers, device identifiers, and channel identifiers; and an N-level hierarchical policy can be set based on user account identifiers, device identifiers, channel identifiers, and other hierarchical identifiers.

[0191] S502: Encrypt the video recording password plaintext data according to the device hardware feature information to generate video recording password ciphertext data.

[0192] In a possible embodiment, the device hardware feature information includes but is not limited to a device identification, a verification code, etc. of the device.

[0193] In the embodiment of the present application, the encryption of the plain text data of the video recording password is mainly to ensure the security of the plain text data of the video recording password when it is stored. The embodiment of the present application does not limit the encryption method.

[0194] S503: Write the password summary information, the video recording password ciphertext, the effective start time, and the effective end time into the video recording index.

[0195] The password summary information is the key information exchanged between the device and the application. The password summary information is associated with the recording password ciphertext data. The effective start time and effective end time mainly identify the valid period of the recording password and are closely related to the password switching and aging implementation.

[0196] S504: Encrypt the video index file.

[0197] The index file encryption can be consistent with the existing encryption method of the device, or a new encryption method can be set separately. This application does not limit this.

[0198] S505: When the user modifies the password, a new password escrow record and the effective start time are added to the video index file, and the validity period of the old password is updated, and steps S501 to S504 are repeated.

[0199] In a possible embodiment, when the user changes the password, if the video is currently being recorded, a video slicing operation is performed simultaneously, which is more convenient for matching the video index with the video data.

[0200] S506: When the video file reaches the cyclic overwriting condition, the password summary information of the corresponding time period is deleted.

[0201] In a possible embodiment, the aging process of the password is to delete the encrypted video data and the corresponding password summary information on the device side when it is detected that the video file stored on the device side has reached the device side capacity limit and needs to be cyclically overwritten. When the user turns off the video password management function on the application side, the application side sends a video playback request for the first video to the server side; the server side forwards the video playback request to the device side; the device side responds to the video playback request, obtains the encrypted video data of the first video, and sends the encrypted video data of the first video to the server side; the server side sends the encrypted video data of the first video to the application side, and after obtaining the encrypted video data of the first video, the application side pops up a password input prompt. After obtaining the video password manually entered by the user, the encrypted video data is decrypted and played using the video password. It should be noted that the video password management system does not change the video passwords of previously generated videos, nor does it clear the passwords that have been managed.

[0202] See also Figure 6 , Figure 6 A schematic diagram of a video recording password management method provided in an embodiment of the present application, specifically comprising the following steps:

[0203] Step 1: The application sends a video playback request to the device via the server;

[0204] Step 2: The device ages the password summary information in the video index file;

[0205] Step 3: The device returns the encrypted video data and password summary information to the application via the server;

[0206] Step 4: The application sends a request to the device for obtaining the video encryption password based on the password summary information;

[0207] Step 5: The device searches for the video index file, obtains it, and decrypts it to obtain the plaintext video password.

[0208] Step 6: The device sends the recording password in plain text to the server through link encryption transmission;

[0209] Step 7: The server encrypts the plain text of the video recording password to obtain the cipher text of the video recording password;

[0210] Step 8: The server sends the ciphertext of the video recording password to the application;

[0211] Step 9: The application end decrypts the video password ciphertext to obtain the video password plaintext, and uses the video password plaintext to decrypt the encrypted video data.

[0212] See also Figure 7 , Figure 7 A schematic diagram of a video recording password management method provided in an embodiment of the present application, specifically comprising the following steps:

[0213] Step 1: When the device detects that the video in the device needs to be cyclically overwritten, it sends a video encryption password update request to the password hosting server;

[0214] Step 2: The password hosting server ages the password summary information in the video index file;

[0215] Step 3: The password hosting server sends a response to the device indicating that the video encryption password update is complete;

[0216] Step 4: The application sends a video playback request to the device via the server;

[0217] Step 5: The device returns the password summary information and encrypted video data to the application via the server;

[0218] Step 6: The application sends a request to obtain the video encryption password to the password hosting server based on the password summary information;

[0219] Step 7: The password hosting server searches for the video index file, obtains it, and decrypts it to obtain the plaintext video password.

[0220] Step 8: The password hosting server encrypts and transmits the video password in plain text to the server through the link;

[0221] Step 9: The server encrypts the plain text of the video recording password to obtain the cipher text of the video recording password;

[0222] Step 10: The server sends the ciphertext of the video recording password to the application;

[0223] Step 11: The application end decrypts the video password ciphertext to obtain the video password plaintext, and uses the video password ciphertext to decrypt the encrypted video data.

[0224] See also Figure 8 , Figure 8 A schematic diagram of a video recording password management device provided in an embodiment of the present application, applied to a device, includes the following modules:

[0225] A first acquisition module 801 is configured to, in response to a video playback request for a first video, acquire cryptographic summary information and encrypted video data of the first video, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, where the first encrypted video data is video data encrypted using a first key, and the second encrypted video data is video data encrypted using a second key;

[0226] The first sending module 802 is used to send the password summary information of the first video and the encrypted video data, so that the application end obtains the first key and the second key according to the password summary information of the first video, and uses the first key and the second key to decrypt the first encrypted video data and the second encrypted video data respectively.

[0227] In a possible embodiment, the apparatus further includes a module for performing the following operations:

[0228] When recording a first video, a first key is obtained; the first video recorded in real time is encrypted using the first key to obtain first encrypted video data; in response to a key modification instruction of a user, a second key corresponding to the key modification instruction is obtained, and the recorded first video is sliced; the first video collected after slicing is encrypted using the second key to obtain second encrypted video data; summary generation information of the first video is obtained; cryptographic summary information of the first video is generated based on the summary generation information; and the first key, the second key, and the cryptographic summary information of the first video are associated and stored.

[0229] In a possible embodiment, the apparatus further includes a module for performing the following operations:

[0230] When recording the first video, determining a current classification strategy based on at least one of a user account identifier of the device, a device identifier, and a channel identifier of a channel for recording the first video;

[0231] Obtain the first key according to the current classification strategy.

[0232] In a possible embodiment, the apparatus further includes a module for performing the following operations:

[0233] When the current classification strategy is a device classification strategy, obtaining a key corresponding to the device end to obtain a first key;

[0234] or,

[0235] When the current classification strategy is the channel classification strategy, a key corresponding to the channel for recording the first video on the device side is obtained to obtain a first key.

[0236] In a possible embodiment, the apparatus further includes a module for performing the following operations:

[0237] Obtain the effective start time and effective end time of the first key to obtain the first effective time; obtain the effective start time and effective end time of the second key to obtain the second effective time;

[0238] In a possible embodiment, the apparatus further includes a module for the following operations:

[0239] The first key, the second key, the password summary information of the first video, the first effective time and the second effective time are stored in association.

[0240] In a possible embodiment, the first sending module is configured to:

[0241] Sending the password summary information of the first video and the encrypted video data, so that the application generates a first password acquisition request based on the password summary information of the first video, and sends the first password acquisition request to the server;

[0242] The apparatus also includes means for performing the following operations:

[0243] Receive a first password acquisition request sent by the server;

[0244] According to the password summary information of the first video in the first password acquisition request, query the pre-stored correspondence between the password summary information and the key to obtain the first key and the second key corresponding to the password summary information of the first video;

[0245] The first key and the second key are sent to the server, so that the server forwards the first key and the second key to the application.

[0246] See also Figure 9 , Figure 9 A schematic diagram of a video password management device provided in an embodiment of the present application, applied to an application end, includes the following modules:

[0247] A second sending module 901 is configured to send a video playback request for a first video, so that the device, in response to the video playback request, obtains and sends the password summary information and encrypted video data of the first video, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, where the first encrypted video data is video data encrypted using the first key, and the second encrypted video data is video data encrypted using the second key;

[0248] The second acquisition module 902 is used to obtain the password summary information and encrypted video data of the first video;

[0249] A generating module 903 is configured to generate a first password acquisition request based on the password summary information of the first video, and send the first password acquisition request so that the server obtains the first key and the second key corresponding to the password summary information of the first video based on the first password acquisition request;

[0250] The decryption module 904 is configured to decrypt and play the first encrypted video data and the second encrypted video data using the first key and the second key respectively.

[0251] In another embodiment provided by the present application, a computer-readable storage medium is further provided, wherein a computer program is stored in the computer-readable storage medium. When the computer program is executed by a processor, the steps of any of the above-mentioned video recording password management methods are implemented.

[0252] In another embodiment provided by the present application, a computer program product including instructions is also provided, which, when executed on a computer, enables the computer to execute the steps of any of the video recording password management methods in the above embodiments.

[0253] In the above embodiments, it can be implemented in whole or in part by software, hardware, firmware or any combination thereof. When implemented using software, it can be implemented in whole or in part in the form of a computer program product. The computer program product includes one or more computer instructions. When the computer program instructions are loaded and executed on a computer, the process or function described in the embodiment of the present application is generated in whole or in part. The computer can be a general-purpose computer, a special-purpose computer, a computer network, or other programmable device. The computer instructions can be stored in a computer-readable storage medium or transmitted from one computer-readable storage medium to another computer-readable storage medium. For example, the computer instructions can be transmitted from one website, computer, server or data center to another website, computer, server or data center via a wired (e.g., coaxial cable, optical fiber, digital subscriber line (DSL)) or wireless (e.g., infrared, wireless, microwave, etc.) method. The computer-readable storage medium can be any available medium that a computer can access or a data storage device such as a server or data center that includes one or more available media integrations. The available medium can be a magnetic medium (e.g., a floppy disk, a hard disk, a tape), an optical medium (e.g., a DVD), or a solid-state drive (SSD).

[0254] It should be noted that, in this document, relational terms such as first and second, etc., are used only to distinguish one entity or operation from another entity or operation, and do not necessarily require or imply the existence of any such actual relationship or order between these entities or operations. Moreover, the terms "comprises," "comprising," or any other variants thereof are intended to cover non-exclusive inclusion, so that a process, method, article, or device comprising a series of elements includes not only those elements, but also other elements not explicitly listed, or elements inherent to such process, method, article, or device. In the absence of further limitations, an element defined by the phrase "comprising a ..." does not exclude the presence of other identical elements in the process, method, article, or device comprising the element.

[0255] Each embodiment in this specification is described in a related manner. Similar parts between the various embodiments can be referred to in conjunction with each other. Each embodiment focuses on the differences between the other embodiments. In particular, the system embodiment is generally similar to the method embodiment, so the description is relatively simple. For related parts, refer to the description of the method embodiment.

[0256] The above description is only a preferred embodiment of the present application and is not intended to limit the scope of protection of the present application. Any modifications, equivalent replacements, improvements, etc. made within the spirit and principles of the present application are included in the scope of protection of the present application.

Claims

1. A video password management method, characterized in that: Applied to a device, the method includes: In response to a video playback request for a first video, obtaining cryptographic summary information and encrypted video data of the first video, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, the first encrypted video data being video data encrypted using a first key, and the second encrypted video data being video data encrypted using a second key; The cryptographic summary information of the first video and the encrypted video data are sent, so that the application end obtains the first key and the second key according to the cryptographic summary information of the first video, and uses the first key and the second key to decrypt the first encrypted video data and the second encrypted video data respectively.

2. The method according to claim 1, characterized in that The method further comprises: When recording the first video, obtaining a first key; encrypting the first video recorded in real time using the first key to obtain first encrypted video data; In response to a key modification instruction from a user, obtaining a second key corresponding to the key modification instruction, and slicing the recorded first video; Encrypting the first video collected after slicing using the second key to obtain second encrypted video data; Obtaining summary generation information of the first video; generating password summary information of the first video based on the summary generation information; The first key, the second key, and the cryptographic summary information of the first video are stored in association.

3. The method according to claim 2, characterized in that The obtaining of the first key during recording of the first video includes: When recording the first video, determining a current grading strategy based on at least one of a user account identifier of the device, a device identifier, and a channel identifier of a channel for recording the first video; A first key is obtained according to the current classification strategy.

4. The method according to claim 3, characterized in that The obtaining of the first key according to the current classification strategy includes: When the current classification strategy is a device classification strategy, obtaining a key corresponding to the device end to obtain a first key; or, When the current classification strategy is the channel classification strategy, a key corresponding to the channel for recording the first video in the device end is obtained to obtain a first key.

5. The method according to claim 2, characterized in that The method further comprises: Obtain the effective start time and effective end time of the first key to obtain the first effective time; obtain the effective start time and effective end time of the second key to obtain the second effective time; The associated storage of the first key, the second key, and the cryptographic summary information of the first video includes: The first key, the second key, the password summary information of the first video, the first effective time, and the second effective time are stored in association.

6. The method according to claim 1, characterized in that The sending of the cryptographic summary information of the first video and the encrypted video data so that the application end obtains the first key and the second key according to the cryptographic summary information of the first video includes: Sending the password summary information and encrypted video data of the first video, so that the application generates a first password acquisition request based on the password summary information of the first video, and sends the first password acquisition request to the server; The method further comprises: Receiving the first password acquisition request sent by the server; According to the password summary information of the first video in the first password acquisition request, query the pre-stored correspondence between the password summary information and the key to obtain the first key and the second key corresponding to the password summary information of the first video; The first key and the second key are sent to the server, so that the server forwards the first key and the second key to the application.

7. A video password management method, characterized in that: Applied to the application side, the method includes: Sending a video playback request for a first video, so that the device end, in response to the video playback request, obtains and sends the password summary information and encrypted video data of the first video, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, the first encrypted video data being video data encrypted using a first key, and the second encrypted video data being video data encrypted using a second key; Obtaining the password summary information and encrypted video data of the first video; generating a first password acquisition request based on the password summary information of the first video, and sending the first password acquisition request so that the server obtains the first key and the second key corresponding to the password summary information of the first video based on the first password acquisition request; The first encrypted video data and the second encrypted video data are decrypted and played using the first key and the second key respectively.

8. A video password management system, characterized in that: The system comprises: Application side, server side and device side; The application end is used to send a video playback request for the first video to the server end; The server is configured to forward the video playback request to the device; The device end is configured to, in response to the video playback request, obtain the password summary information and encrypted video data of the first video, and send the password summary information and encrypted video data of the first video to the server end, wherein the encrypted video data of the first video includes at least first encrypted video data and second encrypted video data, the first encrypted video data being video data encrypted using a first key, and the second encrypted video data being video data encrypted using a second key; The server is further configured to send the password summary information and encrypted video data of the first video to the application; The application end is further configured to generate a first password acquisition request based on the password summary information of the first video, and send the first password acquisition request to the server end; The server is further configured to obtain, according to the first password acquisition request, a first key and a second key corresponding to the password summary information of the first video, and send the first key and the second key to the application; The application end is further configured to decrypt the first encrypted video data and the second encrypted video data using the first key and the second key respectively.

9. The system according to claim 8, characterized in that The server is specifically configured to send the first password acquisition request to the device; The device end is further used to query the pre-stored correspondence between password summary information and keys based on the password summary information of the first video in the first password acquisition request, obtain the first key and the second key corresponding to the password summary information of the first video; and send the first key and the second key to the server end.

10. The system according to claim 9, characterized in that The device end is specifically used to query the correspondence between the pre-stored password summary information and the key based on the password summary information of the first video in the first password acquisition request, to obtain the first encryption key and the second encryption key corresponding to the password summary information of the first video; and to decrypt the first encryption key and the second encryption key respectively to obtain the first key and the second key.

11. The system according to claim 8, wherein: The system further includes: a password escrow server; The server is specifically configured to send the first password acquisition request to the password hosting server; The password hosting server is configured to query the pre-stored correspondence between the password summary information and the key based on the password summary information of the first video in the first password acquisition request, obtain the first key and the second key corresponding to the password summary information of the first video, and send the first key and the second key to the server.

12. The system according to claim 11, wherein: The password hosting server is specifically used to query the correspondence between the pre-stored password summary information and the key based on the password summary information of the first video in the first password acquisition request, and obtain the first encryption key and the second encryption key corresponding to the password summary information of the first video; and decrypt the first encryption key and the second encryption key respectively to obtain the first key and the second key.

13. The system according to claim 8, wherein: The device is further configured to obtain a first key when recording the first video; encrypt the first video recorded in real time using the first key to obtain first encrypted video data; In response to a key modification instruction from a user, obtaining a second key corresponding to the key modification instruction, and slicing the recorded first video; Encrypting the first video collected after slicing using the second key to obtain second encrypted video data; Obtain summary generation information of the first video; generate cryptographic summary information of the first video according to the summary generation information; and store the first key, the second key, and the cryptographic summary information of the first video in an associated manner.

14. The system according to claim 13, wherein: The device is specifically configured to encrypt the first key and the second key to obtain a first encryption key and a second encryption key respectively; and associate the first encryption key, the second encryption key, and the password summary information of the first video with each other and store them in the device; Alternatively, the device is specifically configured to send the first key, the second key, and the password summary information of the first video to a password hosting server; The password escrow server is configured to encrypt the first key and the second key respectively to obtain a first encryption key and a second encryption key; The first encryption key, the second encryption key and the password summary information of the first video are associated and stored in the password hosting server.

15. The system according to claim 13, wherein: The device end is specifically used to determine the current classification strategy according to at least one of the user account identifier, device identifier and channel identifier of the channel for recording the first video when recording the first video, and generate the first key according to the current classification strategy.

16. The system according to claim 15, wherein: The device end is specifically configured to obtain a key corresponding to the device end to obtain a first key when the current classification policy is a device classification policy; or, The device end is specifically configured to obtain the first key by acquiring the key corresponding to the channel for recording the first video in the device end when the current classification strategy is the channel classification strategy.

17. The system according to claim 13, wherein: The device is further configured to obtain the first key's effective start time and effective end time to obtain a first effective time; and obtain the second key's effective start time and effective end time to obtain a second effective time; The first key, the second key, the password summary information of the first video, the first effective time, and the second effective time are stored in association.