Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

97 results about "Authorization certificate" patented technology

In computer security, an attribute certificate, or authorization certificate (AC) is a digital document containing attributes associated to the holder by the issuer. When the associated attributes are mainly used for the purpose of authorization, AC is called authorization certificate. AC is standardized in X.509. RFC 5755 further specifies the usage for authorization purpose in the Internet.

Medical data management method, system and device based on block chain and medium

The invention discloses a block chain-based medical data management method, system and device, and a medium, and relates to the field of information management. The method comprises the following steps: acquiring medical data, analyzing content attributes and context information of the medical data through a first smart contract on a block chain, and generating a first sensitivity level identifier; based on the first sensitivity level identifier, performing differential encryption on the medical data through a second smart contract on the block chain, and generating verification information; partitioning the differentially encrypted medical data, constructing a data structure together with the verification information, and storing the data structure into a block chain; in response to the received access request, verifying an authority certificate in the access request and the type of the access request through a third smart contract on the block chain, and generating an access authorization certificate; and outputting target medical data corresponding to the access request based on the access authorization certificate. By implementing the technical scheme provided by the invention, the full-life-cycle safety management and control of the medical data from collection, storage to sharing is realized.
Owner:BEIJING QUANKE ONLINE TECH CO LTD

Access control access management system and method based on remote APP control management

The invention provides an access control access management system and method based on remote APP control management, which combines an access control terminal, an APP (visitor terminal) and a cloud control platform, realizes that a visitor logs in a property management platform (cloud control platform) through the APP, and the cloud control platform performs multi-modal information authentication on the visitor and drives an access control machine to open a door. Therefore, intelligent and automatic access control access management can be realized, the labor cost of property management can be saved, and a secure access control mechanism is realized. And identity leakage is avoided through combined verification of the biological information and the secret key. And the process that the visitor logs in the platform and controls the access control to unlock is carried out under the supervision of the property platform, so that not only can authorized buildings be avoided, but also the problems that paper authorization certificates are easy to lose and access control congestion is caused by manual verification can be solved. The platform records access records, authentication records and access control passing records of visitors in real time, system traceability management is facilitated, and the property management level and the security level are improved.
Owner:MIDA CLOUD COMPUTING (HANGZHOU) CO LTD

Embedded device anti-counterfeiting verification method based on hardware fingerprint and double encryption

The invention relates to the technical field of anti-counterfeiting verification, in particular to an embedded equipment anti-counterfeiting verification method based on hardware fingerprints and double encryption, which comprises the following steps of: analyzing a CPU unique identification number generated by starting for the first time, adjusting a sequence and splicing a software version, judging ciphertext content and synchronizing the ciphertext content to an activation end and an EEPROM (Electrically Erasable Programmable Read-Only Memory), and decrypting a comparison data field. And decrypting the verification parameter group, the timestamp and the MAC address to obtain an authorization parameter verification result. According to the method, hardware fingerprint deep processing and multi-factor data encryption are fused, in the identity feature generation and storage process, the multi-dimensional identification degree of identity information is remarkably improved by adopting multi-data-source dynamic combination and ciphertext verification, hierarchical dynamic authorization is achieved through joint limitation of the period, the number of times and the limit, and the authentication efficiency is improved. The equipment environment and activation behavior are traced back by the whole link, the parameter state and affiliation are verified item by item after the authorization certificate is decrypted, and abnormal operations such as equipment illegal activation, authority border crossing and certificate false use are effectively prevented and controlled.
Owner:SHENZHEN SHENGGRUI NEW ENERGY TECHNOLOGY CO LTD

Distributed data use control method and system based on DID and verifiable certificate

The invention discloses a distributed data use control method and system based on a DID and a verifiable credential, a storage medium and an electronic device, and the method comprises the steps: carrying out the identity verification of a data user based on a DID, carrying out the authentication of the identity through a verifiable credential issued by an authority, and carrying out the verification of the identity through the verifiable credential; the privacy information range is controlled by adopting a selective disclosure mechanism; generating data authorization information based on the verifiable certificate, establishing an encrypted point-to-point data transmission channel in combination with the DID identifiers of the authorizer and the authorized person, and executing encrypted transmission and encrypted storage of data; and verifying the identity of a data user based on a DID signature mechanism, carrying out tamper-proof verification on a use strategy in the authorization certificate, and carrying out compliance judgment on an authorization range, strategy content and a decryption condition. According to the method provided by the invention, identity credibility right confirmation in a distributed environment is realized, the security and compliance of data exchange are improved, and security autonomy and verifiable control in a data use stage are realized.
Owner:AISINO CORPORATION

Data processing method and system for multi-factor authentication and block chain evidence storage

The invention relates to the technical field of data management, and discloses a multi-factor authentication and blockchain evidence storage data processing method and system, and the system comprises an identity authentication module which is used for carrying out the multi-factor identity verification, and writing a verification result and an authentication serial number into an authorization certificate; the authorization contract module is used for generating a block chain authorization contract according to user authorization and setting a state version number; the government affair data access module is used for reading government affair data through the government affair network integrated public data platform and adding a request signature generated based on an SM3 algorithm into a request; the block chain evidence storage module is used for performing same-rule uplink evidence storage on the authorization certificate and the calling log, generating an authorization abstract, calling the log and generating a log abstract; the consistency verification module is used for matching the authorization voucher with the call log; and the user authority management module is used for displaying an authorization state and executing modification or revocation operation. According to the invention, credible verification and dynamic management and control of the whole authorization process are realized, and the security of data sharing is improved.
Owner:温州市数安港管理服务中心

Unmanned aerial vehicle cross-domain service function link accessing method based on alliance chain

The invention discloses an alliance chain-based unmanned aerial vehicle cross-domain service function link accessing method, which comprises the following steps of: 1, initializing a system and configuring an alliance chain, generating a global password parameter and a root key by a trusted mechanism, and finishing domain registration and certificate chain storage by each management domain edge server; 2, blockchain-driven identity management is carried out, and the unmanned aerial vehicle completes chain registration and anti-counterfeiting registration certificate acquisition through a domain edge server to which the unmanned aerial vehicle belongs; 3, deploying a flexible threshold signature algorithm to realize multi-domain joint signature and Byzantine fault tolerance; 4, executing a cross-domain SFC security authentication protocol, including SFC pre-verification and security authorization certificate issuing, first node verification starting, hop-by-hop key negotiation and handover certificate transmission, and on-chain auditing; and 5, based on the topology centrality and the path coverage, dynamically electing an orchestrator to realize load balancing. According to the invention, safe access and identity authentication of the cross-domain service function chain of the unmanned aerial vehicle are realized, safety, efficiency and expandability are balanced, and reliable guarantee is provided for cross-domain cooperation of the unmanned aerial vehicle.
Owner:NANJING UNIV OF AERONAUTICS & ASTRONAUTICS

Controlling application access to sensitive data

Some embodiments control access by applications to resources in a computing environment. An embodiment notes a request from an application to access a resource, determines a compliance status of the application based on access control policy compliance criteria, ascertains an authorization status of the request based on an authorization credential of the request and an authorization requirement of the resource, and responds to the request based on the compliance status and also based on the authorization status, thereby providing fine-grained access control. Access may also be controlled based on a request's beneficiary. An access request response may allow access, deny access, or ask for additional authorization. A compliance classifier reduces risk by dynamically updating compliance status after compliance criteria changes or attribute changes. An identity service access control architecture uses a compliance attribute to improve efficiency. Applications may be access control grouped according to resource sensitivity labels.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Network authentication with cryptographic corpocessors

Disclosed are various embodiments for authentication with network connected computing resources using a cryptographic coprocessor installed on a client device. A request can be sent to the client device to provision an asymmetric encryption key-pair using a cryptographic coprocessor installed on the client device, wherein the request comprises a key-authorization credential for the asymmetric encryption key-pair and the asymmetric encryption key-pair comprises a public key and a private key. The public key of the asymmetric encryption key-pair and an identity public key for the cryptographic coprocessor can be received. The public key, key-authorization credential, and the identity public key can then be stored in association with each other.
Owner:AMERICAN EXPRESS TRAVEL RELATED SERVICES CO INC

Controlling application access to sensitive data

Some embodiments control access by applications to resources in a computing environment. An embodiment notes a request from an application to access a resource, determines a compliance status of the application based on access control policy compliance criteria, ascertains an authorization status of the request based on an authorization credential of the request and an authorization requirement of the resource, and responds to the request based on the compliance status and also based on the authorization status, thereby providing fine-grained access control. Access may also be controlled based on a request's beneficiary. An access request response may allow access, deny access, or ask for additional authorization. A compliance classifier reduces risk by dynamically updating compliance status after compliance criteria changes or attribute changes. An identity service access control architecture uses a compliance attribute to improve efficiency. Applications may be access control grouped according to resource sensitivity labels.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Legal service project three-party agent pre-auditing arrangement and double-threshold gating method and system based on large language model, and storage medium

The invention relates to the field of legal science and technology and generative artificial intelligence, and discloses a legal service project three-party agent pre-auditing arrangement and double-threshold gating method and system based on a large language model, and a storage medium. A platform, party and law institution three-party agent collaborative architecture is constructed, and role recognition, evidence structuring, law mapping, intelligent evaluation and document generation are completed through a chat mechanism. The method comprises the following steps: judging a party role based on LLM and generating an authorization certificate; demand fingerprints and evidence maps are extracted under platform arrangement, and legal mapping and reference chains are generated; hierarchical visible control is realized through a double-threshold scoring function; generating a neutral summary, a strategy tree and a document first draft through combination; and finally, outputting a desensitization packaging result and completing auditing anchoring. According to the method, the compliance, comparability and auditing performance of the project establishment stage are effectively improved, and the method is suitable for multiple types of legal service pre-docking scenes.
Owner:GUANGDONG OPERATOR WIRE INTELLIGENT TECHNOLOGY CO LTD

Supervisable privacy information retrieval method and device, storage medium and program product

The invention discloses a supervisible privacy information retrieval method and device, a storage medium and a program product, and relates to the technical field of cryptography and privacy computing. The method comprises the following steps: a data holder completes a publicly verifiable cryptographic commitment for a database version in a system initialization stage and records the database version commitment to an evidence storage chain, and a supervision committee establishes a threshold signature system; the supervision committee performs compliance check on the external authorization certificate and the authorization message provided by the query party, generates a threshold signature when the check is passed, and records an authorization event to the certificate storage chain; the query party assembles an authorization query packet based on the threshold signature and submits the authorization query packet to the data holder; and generating a response ciphertext under the condition that the data holder passes verification of the threshold signature and the authorization query packet, confirms that authorization is legal and is consistent with the committed binding of the database version. According to the method, authorization decision making and post responsibility asking for encrypted query are realized, and trust hypothesis for a single-point approval subject is reduced.
Owner:SICHUAN POLICE COLLEGE

Data desensitization method based on trusted data space

The invention relates to the technical field of data security, and discloses a trusted data space-based data desensitization method, which comprises the following steps of: in a trusted execution environment, analyzing data source metadata to obtain field semantic relevance and data consanguinity topology of the data source metadata; taking real-time context features of the data source metadata as nodes, taking the data consanguinity topology and the field semantic relevance as connection weight edges, and constructing a self-adaptive desensitization rule tree of the data source metadata; in the trusted execution environment, based on an authorization certificate of a user of the data source metadata and a data processing purpose, constructing a multi-party security computing protocol of the data source metadata; segmenting the desensitization rule set into distributed policy fragments based on the multi-party security computing protocol; performing parallel desensitization on a to-be-processed data source based on the distributed strategy fragment; according to the method, the adaptability and the accuracy of the desensitization rule are improved.
Owner:BEIJING ZHONGAN NEBULA SOFTWARE TECH CO LTD

Distributed data authorization method and system based on wearable device

The embodiment of the invention provides a distributed data authorization method and system based on wearable equipment, and relates to the technical field of intelligent wearable equipment. According to the method, original data can be obtained through the wearable device, forced end-to-end encryption and desensitization are executed on the original data, and authorizable data are generated. And uploading the authorizable data to the decentralized storage network so as to cast an ownership certificate of the authorizable data through the decentralized storage network. When the data authorization is performed, a data authorization credential for the authorizable data may be casted based on the ownership credential, thereby transferring the data authorization credential in accordance with the authorization request. Through forced encryption and desensitization, privacy calculation is carried out on the premise that original data is not leaked, privacy security is guaranteed to the maximum extent, and it is ensured that a user has ownership to the data through an ownership certificate. Moreover, by casting a data authorization certificate, key authorization and on-chain recording of authorization are realized, and transparency and traceability of data authorization can be improved.
Owner:XIAOCHE DIGITAL TECHNOLOGY CO LTD

USE OF UNIT-BOUND AUTHORIZATION CERTIFICATES FOR IMPROVED AUTHORIZATION SECURITY IN NATIVE APPLICATIONS

Procedure that includes: Received by an authorization server (201) and by a native application (202) on a unit, an initial authorization grant, a public key of a private / public key pair generated on the unit, and an acknowledgment of the authenticity of the native application (202); Received by the authorization server (201) and by the native application (202) on the unit, an update token and a digital signature of the update token created with the private key, wherein the authorization server (201) recognizes the update token only when the update token is verified with the public key that was previously registered; Validate, by the authorization server (201), the digital signature of the update token; In response to the validation of the update token from the native application (202) on the unit, the authorization server (201) transmits a new access token and a new update token from the authorization server (201) to the native application (202) on the unit, the new access token enabling the native application (202) on the unit to access the computer resource; Input into a neural network (757) the initial authorization, the public key, the confirmation of the authenticity of the native application (202), the update token, and the digital signature of the update token, wherein the neural network (757) is trained to generate an access token generated by the neural network (757) and an update token generated by the neural network (757); and Compare, by one or more processors, the new access token and the new update token generated by the authorization server (201) with the access token and the update token generated by the neural network (757) to validate the new access token and the new update token generated by the authorization server (201).
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Internet of Things equipment management method and system based on MQTT protocol

The invention provides an Internet of Things equipment management method and system based on an MQTT protocol. The method comprises the following steps: sending an equipment discovery request carrying an equipment unique identifier to a cloud platform; receiving an authorization certificate and MQTT server connection information sent by the cloud platform; the authorization certificate and the MQTT server connection information are generated by the cloud platform according to the unique identifier of the equipment; according to the connection information of the MQTT server, establishing encrypted connection with the MQTT server, and performing identity authentication by using the authorization certificate during connection; a downlink management message sent by the cloud platform is received and analyzed, and the downlink management message is in a predefined JSON format and comprises a message type field used for defining behavior operation and an authorization certificate used for session verification; and verifying the authorization voucher in the downlink management message, and executing a corresponding management operation according to the message type field after the verification is passed. Through the technical scheme of the invention, the security of the remote management process can be improved.
Owner:TRANSCEND COMM BEIJING

A method, system and device for inter-application data encryption communication based on a dbus bus

The application discloses an inter-application data encryption communication method based on a dbus bus, an inter-application data encryption communication system based on the dbus bus, an inter-application data encryption communication device based on the dbus bus, an electronic device, a storage medium and a vehicle, and comprises the following steps: a session is created between a server and a client, and a communication session process is executed; a communication daemon process is executed to perform communication authentication processing on the communication session process; the communication authentication processing comprises communication encryption through an authorization certificate and an authorization key, and authentication of a session data unit is performed according to the certificate and the key; if the authentication result is true, the session data unit is retained in the communication session process; and if the authentication result is false, the session data unit in the communication session process is blocked. Through the above scheme, the authorization certificate and the authorization key are double-authenticated, and the security level of the communication connection is improved relative to the original encryption mode of the digital certificate or the digital key alone.
Owner:CHINA FAW CO LTD

Authorization management method, private cloud management platform and computer device

The application relates to an authorization management method, a private cloud management platform and computer equipment. The method comprises the following steps: receiving an authorization request for a private cloud platform as a service (PaaS) platform from a client, wherein the authorization request comprises a platform identifier, an application code and at least one target authorization component; verifying the authorization request; if the verification is passed, sending the authorization request to a PaaS component product console to instruct the PaaS component product console to verify the authority of each target authorization component; if the verification is passed, determining that the corresponding target authorization component is authorized; if the verification is not passed, determining that the corresponding target authorization component is not authorized; returning the authorization results of the target authorization components to the private cloud management platform; and generating an authorization certificate based on the authorization results of the target authorization components and returning the authorization certificate to the client. The security risk is reduced.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Knowledge graph retrieval method and device for private railway official document and electronic equipment

The invention relates to a privacy railway official document-oriented knowledge graph retrieval method and device and electronic equipment. The method comprises the following steps: receiving keyword data subjected to classification processing; constructing a tree index structure based on the received keywords; in response to the data deletion request, marking the target data as a deletion state, and updating a filtering structure and a hash value of the associated node from bottom to top; receiving a query request containing a public keyword plaintext and a non-public keyword authorization voucher, traversing the index tree, performing pruning search through filtering structure comparison, and returning a matched knowledge graph sub-graph set and verification information; and generating verification information for verifying the query result. According to the method, privacy grading protection is realized, efficient incremental maintenance is ensured, the retrieval efficiency is remarkably improved, a verifiable closed loop is formed, sensitive information protection requirements and ten thousand-level data retrieval performance of a railway official document scene are considered, and meanwhile, a tamper-proof audit link is constructed through a block chain, a hash chain and a verification packet.
Owner:INST OF COMPUTING TECH CHINA ACAD OF RAILWAY SCI +2

Aviation satellite communication dynamic authorization method based on multi-source device fingerprints

The invention relates to an aeronautical satellite communication dynamic authorization method based on multi-source equipment fingerprints, and belongs to the technical field of aeronautical communication security. The method comprises the following steps: dynamically collecting and integrating fingerprint data of multi-source equipment to form a multi-source fingerprint set; based on stability and communication relevance, performing two-dimensional grading, differential purification and weight fusion on the fingerprint features to generate a unique device fingerprint identifier; in combination with geography and link security level division results, introducing real-time risk assessment parameters to dynamically adjust authorization strategy weights; and verifying the identity of the equipment based on a dynamic strategy, generating an authorization voucher with time efficiency, and embedding the authorization voucher into a communication link establishment process, so as to realize dynamic authorization and abnormal linkage handling with a session as a period. According to the invention, the accurate authentication of the device identity and the dynamic adaptation of the authorization strategy are realized, and the security and reliability of aviation satellite communication are effectively improved.
Owner:AIRLAND INTERNET TECH CO LTD

Method, device, storage medium and program product for retrievable privacy information

The application discloses a kind of private information retrieval method, equipment, storage medium and program product of supervision, it is related to cryptography and privacy computing technical field.The method comprises: by data holder, public verifiable cryptography commitment is completed in system initialization phase to database version, and database version commitment is recorded to evidence chain by supervision committee, and threshold signature system is established;By supervision committee, the compliance audit is carried out to external authorization certificate and authorization message provided by inquirer, threshold signature is generated when audit passes, and authorization event is recorded to evidence chain;By inquirer, authorization query package is assembled based on threshold signature and is submitted to data holder;In the case where data holder is verified to threshold signature and authorization query package and confirms that authorization is legal and is consistent with database version commitment binding, response ciphertext is generated.The application realizes the authorization decision and after-the-fact accountability of encrypted query, reduces the trust assumption to single-point approval subject.
Owner:SICHUAN POLICE COLLEGE

Equipment offline authorization verification method and system

The invention is suitable for the technical field of software authorization, and provides an equipment offline authorization verification method and system.The method comprises the steps that an authorization server receives authorization request data in an offline mode, a server-side private key packaged in a local compiled code is used for signing a Hash digest value of the authorization request data, and the signature is sent to the server-side private key; packaging and encrypting the authorization request data and the digital signature to generate an offline authorization certificate; a current client device uses an upper-layer application program written by a high-level programming language, calls a security verification module packaged in a local compiled code through a cross-language calling interface, decrypts an off-line authorization certificate through the security verification module, and verifies the signature through a client public key. And verifying whether the authorization request data is matched with the acquired equipment information and system time of the current client equipment, and judging that authorization activation is successful only when signature verification is passed and verification is matched currently. According to the method and the device, the problem of low authorization verification security of the existing software in an offline environment is solved.
Owner:SHANGHAI ZHENGZHI INTELLIGENT TECH CO LTD

Aggregated signature and verification method

The invention discloses an aggregation signature and verification method, and relates to the technical field of information security, and the method comprises the steps: initiating an aggregation signature request: a service system applies for a digital certificate and generates the aggregation signature request; generating an authorization certificate: applying for the digital certificate by the signer, confirming an aggregation signature request, and generating the authorization certificate at the same time; calculating an aggregation key: receiving the authorization certificate and the key by the service system, calculating an aggregation signature private key and verifying an aggregation signature public key; signing by using an aggregation signature private key: signing the authorization certificate by the service system by using the aggregation signature private key to obtain an aggregation signature result; verifying the aggregation signature: calculating an aggregation signature public key, and verifying the validity of the aggregation signature, the authorization voucher and the signature of the signer; according to the invention, the legal potency of the electronic signature is enhanced.
Owner:SICHUAN DIGITAL CERTIFICATE AUTHENTICATION MANAGEMENT CENT CO LTD

Integrated client-side and server-side application development

A system may provision an application-specific cloud account for a backend component of a software application. The system may receive a request from a client system executing a client side component of the software application, the request including authorization credentials and a version identifier for the backend component. The system may validate the authorization credentials to determine the client system is authorized to access the requested virtual reality content. The system may identify a backend version of the backend component associated with the version identifier in the request. The system may load, into the cloud account, the backend component corresponding to the identified backend version. The system may execute the loaded backend component to process the request and generate the requested virtual reality content. The system may return the requested virtual reality content to the client system.
Owner:NIANTIC SPATIAL INC

Vehicle temporary authorization control method and system, electronic equipment and storage medium

The invention provides a vehicle temporary authorization control method and system, electronic equipment and a storage medium, and the method comprises the steps: obtaining the multi-dimensional credit data of a corresponding user at the current moment under the condition that a temporary authorization request initiated by a user terminal for a target vehicle is received; the multi-dimensional credit data is used for representing at least one of the operation credibility, the riding danger level and the performance risk state of the user; determining a short-term credit weight of the user at the current moment based on the multi-dimensional credit data; and under the condition that the short-term credit weight is greater than or equal to the access threshold, generating a temporary authorization certificate and issuing the temporary authorization certificate to the target vehicle, the temporary authorization certificate being used for indicating the target vehicle to open the use permission after the verification is passed. According to the method and the system, the dynamically generated temporary authorization certificate is used as an authority carrier, so that convenient key-free vehicle borrowing is realized, and high-risk users are prevented from obtaining the vehicle use right through multi-dimensional real-time risk interception, and therefore, the safety and the flexibility of vehicle management are greatly improved.
Owner:XIAOAN KEJI

Electronic device

The application discloses an electronic device and belongs to the technical field of electronic devices. In the case that the kernel initialization of the real-time operating system of the electronic device is completed, an authorization certificate stored in the electronic device is acquired; the authorization certificate is parsed to confirm current identity information corresponding to the real-time operating system; in the case that the current identity information matches first identity information, a first service associated with the first identity information is started, wherein the first identity information comprises a user; in the case that the current identity information matches second identity information, a second service associated with the second identity information is started, wherein the second identity information comprises an after-sales personnel or a research and development personnel.
Owner:VIVO MOBILE COMM CO LTD

System and method for providing secure access to a vehicle system

In some embodiments, apparatuses and methods are provided herein that may be used to allow connection to a vehicle. In some implementations, a method includes receiving, by an authorization server, a connection request for the vehicle from a remote device; verifying the connection request by the authorization server; generating, by the authorization server, an authorization certificate in response to verifying the connection request; the authorization server sends the authorization certificate; receiving, by the vehicle, the certificate of authorization; authenticating, by the vehicle, the certificate of authorization; and activating, by the vehicle, a vehicle communication system in response to authenticating the certificate of authorization.
Owner:NIO TECH ANHUI CO LTD

Electronic certificate management methods, equipment and storage media

This invention belongs to the field of blockchain technology and discloses an electronic certificate management method, device, and storage medium. The invention activates the authorization function and completes the collection of the target user's identity information based on a function activation command issued by a preset operator platform, and uploads the collected identity information to the preset operator platform. The function activation command is triggered by a SIM card loss reporting operation command triggered by the target user. Based on the identity information, an authorization credential is obtained from the preset operator platform, and the target electronic certificate is obtained from the preset blockchain based on the authorization credential. When the SIM card of the first mobile terminal is unavailable, the preset operator platform activates the "Authorization by Others" function in the authorized user's certificate card application based on the user's loss reporting information. The "Authorization by Others" function is used to obtain and use the authorized user's electronic certificate, thus broadening the application scenarios of current electronic certificates and ensuring the security of electronic certificates in the usage scenarios.
Owner:CHINA MOBILE FINANCIAL TECHNOLOGY CO LTD +1

A multi-factor authentication and blockchain storage data processing method and system

The application relates to the technical field of data management, and discloses a data processing method and system for multi-factor authentication and block chain storage, which comprises the following modules: an identity authentication module for multi-factor identity verification, writing the verification result and an authentication serial number into an authorization voucher; an authorization contract module for generating a block chain authorization contract according to user authorization and setting a state version number; a government affair data access module for reading government affair data through a government affair network integrated public data platform and adding a request signature generated based on an SM3 algorithm into the request; a block chain storage module for storing the authorization voucher and a call log in the same rule, generating an authorization digest, a call log and a log digest; a consistency checking module for matching the authorization voucher and the call log; and a user authority management module for displaying an authorization state and executing a modification or revocation operation. The application realizes trusted verification and dynamic management and control of the whole authorization process, and improves the security of data sharing.
Owner:温州市数安港管理服务中心

Blockchain-based copyright asset authorization method and device and electronic equipment

Embodiments of the present specification provide a copyright asset authorization method and device based on a blockchain and an electronic device. The method comprises: receiving an authorization request of a first user authorizing a target copyright asset to a second user; wherein the authorization request comprises first credential information of the first user holding the target copyright asset, and asset summary information of the target copyright asset; in response to the authorization request, determining whether the asset summary information of the target copyright asset is stored in the blockchain; if yes, further performing zero-knowledge proof on the first credential information of the first user holding the target copyright asset to determine whether the first credential information is stored in the blockchain, and generating asset authorization credentials for the target copyright asset for the second user in the case of determining that the first credential information is stored in the blockchain, and storing the asset authorization credentials in the blockchain.
Owner:WHALE EXPLORER TECHNOLOGY (SHANGHAI) CO LTD