Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

128 results about "Authorization certificate" patented technology

In computer security, an attribute certificate, or authorization certificate (AC) is a digital document containing attributes associated to the holder by the issuer. When the associated attributes are mainly used for the purpose of authorization, AC is called authorization certificate. AC is standardized in X.509. RFC 5755 further specifies the usage for authorization purpose in the Internet.

Medical data management method, system and device based on block chain and medium

The invention discloses a block chain-based medical data management method, system and device, and a medium, and relates to the field of information management. The method comprises the following steps: acquiring medical data, analyzing content attributes and context information of the medical data through a first smart contract on a block chain, and generating a first sensitivity level identifier; based on the first sensitivity level identifier, performing differential encryption on the medical data through a second smart contract on the block chain, and generating verification information; partitioning the differentially encrypted medical data, constructing a data structure together with the verification information, and storing the data structure into a block chain; in response to the received access request, verifying an authority certificate in the access request and the type of the access request through a third smart contract on the block chain, and generating an access authorization certificate; and outputting target medical data corresponding to the access request based on the access authorization certificate. By implementing the technical scheme provided by the invention, the full-life-cycle safety management and control of the medical data from collection, storage to sharing is realized.
Owner:BEIJING QUANKE ONLINE TECH CO LTD

Trusted sharing method and system for multi-party industrial data

The invention provides a credible sharing method and system for multi-party industrial data, and relates to the technical field of data processing, and the method comprises the steps that multiple participants encrypt local industrial data through a credible execution space, and generate encrypted data and corresponding data fingerprints; defining a data access rule based on the smart contract; verifying and auditing the data access request, and obtaining an encrypted data authorization certificate after verification and auditing; and under the federated learning framework, the trusted execution space of each data provider executes the privacy calculation task based on the authorization certificate, and outputs a task calculation result and sends the task calculation result to the task requester. According to the method and the device, the technical problem of privacy risk of data leakage or tampering caused by contradiction between multi-party industrial data sharing and privacy protection is solved, the privacy can still be ensured while data sharing is ensured through federated learning and trusted execution space, and the security and the credibility of data sharing are improved.
Owner:LINGSHU TECH CO LTD

Access control access management system and method based on remote APP control management

The invention provides an access control access management system and method based on remote APP control management, which combines an access control terminal, an APP (visitor terminal) and a cloud control platform, realizes that a visitor logs in a property management platform (cloud control platform) through the APP, and the cloud control platform performs multi-modal information authentication on the visitor and drives an access control machine to open a door. Therefore, intelligent and automatic access control access management can be realized, the labor cost of property management can be saved, and a secure access control mechanism is realized. And identity leakage is avoided through combined verification of the biological information and the secret key. And the process that the visitor logs in the platform and controls the access control to unlock is carried out under the supervision of the property platform, so that not only can authorized buildings be avoided, but also the problems that paper authorization certificates are easy to lose and access control congestion is caused by manual verification can be solved. The platform records access records, authentication records and access control passing records of visitors in real time, system traceability management is facilitated, and the property management level and the security level are improved.
Owner:MIDA CLOUD COMPUTING (HANGZHOU) CO LTD

Embedded device anti-counterfeiting verification method based on hardware fingerprint and double encryption

The invention relates to the technical field of anti-counterfeiting verification, in particular to an embedded equipment anti-counterfeiting verification method based on hardware fingerprints and double encryption, which comprises the following steps of: analyzing a CPU unique identification number generated by starting for the first time, adjusting a sequence and splicing a software version, judging ciphertext content and synchronizing the ciphertext content to an activation end and an EEPROM (Electrically Erasable Programmable Read-Only Memory), and decrypting a comparison data field. And decrypting the verification parameter group, the timestamp and the MAC address to obtain an authorization parameter verification result. According to the method, hardware fingerprint deep processing and multi-factor data encryption are fused, in the identity feature generation and storage process, the multi-dimensional identification degree of identity information is remarkably improved by adopting multi-data-source dynamic combination and ciphertext verification, hierarchical dynamic authorization is achieved through joint limitation of the period, the number of times and the limit, and the authentication efficiency is improved. The equipment environment and activation behavior are traced back by the whole link, the parameter state and affiliation are verified item by item after the authorization certificate is decrypted, and abnormal operations such as equipment illegal activation, authority border crossing and certificate false use are effectively prevented and controlled.
Owner:SHENZHEN SHENGGRUI NEW ENERGY TECHNOLOGY CO LTD

Distributed data use control method and system based on DID and verifiable certificate

The invention discloses a distributed data use control method and system based on a DID and a verifiable credential, a storage medium and an electronic device, and the method comprises the steps: carrying out the identity verification of a data user based on a DID, carrying out the authentication of the identity through a verifiable credential issued by an authority, and carrying out the verification of the identity through the verifiable credential; the privacy information range is controlled by adopting a selective disclosure mechanism; generating data authorization information based on the verifiable certificate, establishing an encrypted point-to-point data transmission channel in combination with the DID identifiers of the authorizer and the authorized person, and executing encrypted transmission and encrypted storage of data; and verifying the identity of a data user based on a DID signature mechanism, carrying out tamper-proof verification on a use strategy in the authorization certificate, and carrying out compliance judgment on an authorization range, strategy content and a decryption condition. According to the method provided by the invention, identity credibility right confirmation in a distributed environment is realized, the security and compliance of data exchange are improved, and security autonomy and verifiable control in a data use stage are realized.
Owner:AISINO CORPORATION

Context-aware adaptive camera access

A system includes non-transitory computer-readable media storing instructions and a processor configured to execute the instructions to receive a request for access to first media from a device. The first media is recorded by a first media-recording device and includes a portion identified as being associated with an event. The event is classified into an event category. The request for access includes an authorization certificate that includes a role. The processor is configured to execute the instructions to, in response to determining the authorization certificate is valid and the role is authorized to access the event category, provide the device access to the portion of the first media and transmit a token to the device. The token includes metadata associated with the portion of the first media and is usable by the device to access a portion of second media. The second media is recorded by a second media-recording device.
Owner:MOTOROLA SOLUTIONS INC

Data processing method and system for multi-factor authentication and block chain evidence storage

The invention relates to the technical field of data management, and discloses a multi-factor authentication and blockchain evidence storage data processing method and system, and the system comprises an identity authentication module which is used for carrying out the multi-factor identity verification, and writing a verification result and an authentication serial number into an authorization certificate; the authorization contract module is used for generating a block chain authorization contract according to user authorization and setting a state version number; the government affair data access module is used for reading government affair data through the government affair network integrated public data platform and adding a request signature generated based on an SM3 algorithm into a request; the block chain evidence storage module is used for performing same-rule uplink evidence storage on the authorization certificate and the calling log, generating an authorization abstract, calling the log and generating a log abstract; the consistency verification module is used for matching the authorization voucher with the call log; and the user authority management module is used for displaying an authorization state and executing modification or revocation operation. According to the invention, credible verification and dynamic management and control of the whole authorization process are realized, and the security of data sharing is improved.
Owner:温州市数安港管理服务中心

Data accurate authorization system and method based on distributed digital identity

The invention relates to the technical field of data authorization, in particular to an accurate data authorization system and method based on distributed digital identities. The system comprises a distributed digital identity management module, a verifiable data authorization certificate management module and a block chain system, wherein the distributed digital identity management module is used for carrying out distributed digital identity issuing and verification work on participants; the verifiable data authorization voucher management module is used for generating and verifying a data authorization voucher by utilizing distributed digital identity information and combining a verifiable voucher technology, and analyzing the data authorization voucher through an intelligent contract to realize accurate authorization of data; and the block chain system is used for storing the distributed digital identity information, the data authorization certificate information and related operation records. According to the method, the security, the accuracy and the high efficiency of the data authorization process are ensured through the combination of the distributed digital identity and the verifiable certificate and the transparency and the non-tampering property of the block chain.
Owner:SHANGHAI ELECTRONIC CERTIFICATE AUTHORITY CENT CO LTD

System and method for data management and security for digital manufacturing

A method and system for providing secure delivery, transport, modification, exchange of digital design and build files that have been bundled into a digital asset within a complex digital supply chain. The system also provides for quality standards when the digital asset is used to manufacture a physical part, and provides for secure feedback to stakeholders for the purpose of digital logistics, data analytics, or liability. The system includes, but is not limited to, manufacturing, licensing, modification and delegation policy, generating authorization certificates, authenticating manufacturing devices and provide qualitative and quantitative file consumption data.
Owner:MATERIALISE NV

Unmanned aerial vehicle cross-domain service function link accessing method based on alliance chain

The invention discloses an alliance chain-based unmanned aerial vehicle cross-domain service function link accessing method, which comprises the following steps of: 1, initializing a system and configuring an alliance chain, generating a global password parameter and a root key by a trusted mechanism, and finishing domain registration and certificate chain storage by each management domain edge server; 2, blockchain-driven identity management is carried out, and the unmanned aerial vehicle completes chain registration and anti-counterfeiting registration certificate acquisition through a domain edge server to which the unmanned aerial vehicle belongs; 3, deploying a flexible threshold signature algorithm to realize multi-domain joint signature and Byzantine fault tolerance; 4, executing a cross-domain SFC security authentication protocol, including SFC pre-verification and security authorization certificate issuing, first node verification starting, hop-by-hop key negotiation and handover certificate transmission, and on-chain auditing; and 5, based on the topology centrality and the path coverage, dynamically electing an orchestrator to realize load balancing. According to the invention, safe access and identity authentication of the cross-domain service function chain of the unmanned aerial vehicle are realized, safety, efficiency and expandability are balanced, and reliable guarantee is provided for cross-domain cooperation of the unmanned aerial vehicle.
Owner:NANJING UNIV OF AERONAUTICS & ASTRONAUTICS

Controlling application access to sensitive data

Some embodiments control access by applications to resources in a computing environment. An embodiment notes a request from an application to access a resource, determines a compliance status of the application based on access control policy compliance criteria, ascertains an authorization status of the request based on an authorization credential of the request and an authorization requirement of the resource, and responds to the request based on the compliance status and also based on the authorization status, thereby providing fine-grained access control. Access may also be controlled based on a request's beneficiary. An access request response may allow access, deny access, or ask for additional authorization. A compliance classifier reduces risk by dynamically updating compliance status after compliance criteria changes or attribute changes. An identity service access control architecture uses a compliance attribute to improve efficiency. Applications may be access control grouped according to resource sensitivity labels.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Identity authentication method and system, electronic equipment and storage medium

The invention discloses an identity authentication method and system, electronic equipment and a storage medium. The method comprises a password authentication login stage and a certificate authentication login stage, in a password authentication login stage, after an authentication client receives identity identification information and password information sent by a user terminal and generates a password hash value, an authentication server receives the password hash value, a random salt value and the identity identification information from the authentication client and sends the password hash value to the user terminal; the authentication server verifies the legality of the received password hash value; in a certificate authentication login stage, the authentication server sends a first random value and timestamp information to the user terminal, and after a digital signature is generated by the user terminal according to the identity identification information, the first random value, a second random value selected by a user and the timestamp information, the first random value and the second random value are sent to the user terminal. And the authentication server receives the digital signature and the authorization certificate from the user terminal, and verifies the legality of the digital signature and the authorization certificate. By adopting the technical scheme provided by the invention, the security of terminal identity management is improved by the two-factor identity authentication method fusing the dynamic verification password and the certificate.
Owner:ELECTRIC POWER RES INST STATE GRID SHANXI ELECTRIC POWER

Network authentication with cryptographic corpocessors

Disclosed are various embodiments for authentication with network connected computing resources using a cryptographic coprocessor installed on a client device. A request can be sent to the client device to provision an asymmetric encryption key-pair using a cryptographic coprocessor installed on the client device, wherein the request comprises a key-authorization credential for the asymmetric encryption key-pair and the asymmetric encryption key-pair comprises a public key and a private key. The public key of the asymmetric encryption key-pair and an identity public key for the cryptographic coprocessor can be received. The public key, key-authorization credential, and the identity public key can then be stored in association with each other.
Owner:AMERICAN EXPRESS TRAVEL RELATED SERVICES CO INC

Network authentication with cryptographic corpocessors

Disclosed are various embodiments for authentication with network connected computing resources using a cryptographic coprocessor installed on a client device. A request can be sent to the client device to provision an asymmetric encryption key-pair using a cryptographic coprocessor installed on the client device, wherein the request comprises a key-authorization credential for the asymmetric encryption key-pair and the asymmetric encryption key-pair comprises a public key and a private key. The public key of the asymmetric encryption key-pair and an identity public key for the cryptographic coprocessor can be received. The public key, key-authorization credential, and the identity public key can then be stored in association with each other.
Owner:AMERICAN EXPRESS TRAVEL RELATED SERVICES CO INC

Controlling application access to sensitive data

Some embodiments control access by applications to resources in a computing environment. An embodiment notes a request from an application to access a resource, determines a compliance status of the application based on access control policy compliance criteria, ascertains an authorization status of the request based on an authorization credential of the request and an authorization requirement of the resource, and responds to the request based on the compliance status and also based on the authorization status, thereby providing fine-grained access control. Access may also be controlled based on a request's beneficiary. An access request response may allow access, deny access, or ask for additional authorization. A compliance classifier reduces risk by dynamically updating compliance status after compliance criteria changes or attribute changes. An identity service access control architecture uses a compliance attribute to improve efficiency. Applications may be access control grouped according to resource sensitivity labels.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Legal service project three-party agent pre-auditing arrangement and double-threshold gating method and system based on large language model, and storage medium

The invention relates to the field of legal science and technology and generative artificial intelligence, and discloses a legal service project three-party agent pre-auditing arrangement and double-threshold gating method and system based on a large language model, and a storage medium. A platform, party and law institution three-party agent collaborative architecture is constructed, and role recognition, evidence structuring, law mapping, intelligent evaluation and document generation are completed through a chat mechanism. The method comprises the following steps: judging a party role based on LLM and generating an authorization certificate; demand fingerprints and evidence maps are extracted under platform arrangement, and legal mapping and reference chains are generated; hierarchical visible control is realized through a double-threshold scoring function; generating a neutral summary, a strategy tree and a document first draft through combination; and finally, outputting a desensitization packaging result and completing auditing anchoring. According to the method, the compliance, comparability and auditing performance of the project establishment stage are effectively improved, and the method is suitable for multiple types of legal service pre-docking scenes.
Owner:GUANGDONG OPERATOR WIRE INTELLIGENT TECHNOLOGY CO LTD

Resource access method and device, equipment and storage medium

The invention discloses a resource access method and device, equipment and a storage medium, and relates to the technical field of information security, and the method comprises the steps: creating each access control strategy based on the input information of a system administrator in a target system; when a resource access request sent by a target user is received, extracting user attribute information and resource attribute information from the resource access request to determine corresponding target attribute information, and matching the target attribute information with each access control strategy to obtain a matching result; if the matching result shows that the target user has the corresponding resource access authority, generating a corresponding access authorization certificate for the target user; and when the target user performs resource access by using the access authorization certificate, determining a corresponding target resource, and encrypting and transmitting the target resource to the target user side based on a preset encryption algorithm and an HTTPS transmission protocol. Therefore, the flexibility and the security in the resource access process can be improved.
Owner:SHANDONG INSPUR CLOUD GOVERNMENT INFORMATION TECHNOLOGY CO LTD

Supervisable privacy information retrieval method and device, storage medium and program product

The invention discloses a supervisible privacy information retrieval method and device, a storage medium and a program product, and relates to the technical field of cryptography and privacy computing. The method comprises the following steps: a data holder completes a publicly verifiable cryptographic commitment for a database version in a system initialization stage and records the database version commitment to an evidence storage chain, and a supervision committee establishes a threshold signature system; the supervision committee performs compliance check on the external authorization certificate and the authorization message provided by the query party, generates a threshold signature when the check is passed, and records an authorization event to the certificate storage chain; the query party assembles an authorization query packet based on the threshold signature and submits the authorization query packet to the data holder; and generating a response ciphertext under the condition that the data holder passes verification of the threshold signature and the authorization query packet, confirms that authorization is legal and is consistent with the committed binding of the database version. According to the method, authorization decision making and post responsibility asking for encrypted query are realized, and trust hypothesis for a single-point approval subject is reduced.
Owner:SICHUAN POLICE COLLEGE

User data authorization method and system based on trusted digital identity

The invention relates to a trusted digital identity-based user data authorization method and system, and the method comprises the steps: enabling a user to initiate an authorization request to a data authorization center through a third-party service system, and generating a unique authorization serial number and a safe authorization page URL (Uniform Resource Locator); and the user confirms authorization information on the authorization page and performs identity authentication through the trusted digital identity authentication system and the CTID platform. After the authentication is passed, the data authorization center generates an authorization record, an authentication record and authorization voucher data to ensure that the authorization behavior of the user is traceable and ensure that the authorization record and the authentication record are not tampered; and safely transmitting the authorization data packet confirmed by the user and the authorization serial number after authorization confirmation to a third-party service system. The method also comprises a fine-grained access control and data recovery mechanism, so that the data security is further guaranteed, the security and convenience of user data authorization are integrally improved, and the user privacy and the data security are effectively protected.
Owner:NEW CONTINENT (FUJIAN) PUBLIC SERVICE CO LTD

Security Authentication Method, Device and Storage Medium

The present application provides a security authentication method, device, and storage medium. The method includes: obtaining the local mobile phone number by taking a number through the gateway; performing verification of the local number; sending an authorization request to the operator authentication server and receiving an authorization credential returned by the operator authentication server; storing the relevant authorization information on the blockchain; sending the authorization credential to a third-party capability provider, and the third-party capability provider sends the authorization credential to the operator authentication server for authentication verification, and the operator authentication server returns the authentication result, and the relevant authentication information is stored on the blockchain; obtaining the login authorization of the terminal application based on the authentication result. It ensures traceability of the login, and improves the login security and convenience of users.
Owner:CHINA MOBILE INTERNET CO LTD +1

Machine room operation and maintenance system and machine room operation and maintenance method

The invention provides a machine room operation and maintenance system and a machine room operation and maintenance method, and relates to the technical field of cloud computing. The machine room operation and maintenance system comprises block chain equipment and a plurality of machine rooms; the first machine room is used for splitting the first task into at least one subtask and broadcasting the first subtask to other machine rooms in the machine room operation and maintenance system; after first request information sent by the second machine room is received, the first request information is sent to the block chain equipment; the first request information comprises an identifier of the second machine room and current remaining resources of the second machine room; the block chain equipment is used for determining a target machine room for executing the first subtask according to the uplink resource value of the second machine room and the first request information, generating an authorization certificate for the target machine room, and controlling the target machine room to execute the first subtask according to the authorization certificate; a smart contract is stored on the block chain device, and the smart contract comprises an uplink resource value of each machine room in the machine room operation and maintenance system. According to the invention, the flexibility of task scheduling and the flexibility of resource utilization can be improved.
Owner:CHINA MOBILE INFORMATION TECHNOLOGY CO LTD +1

Data desensitization method based on trusted data space

The invention relates to the technical field of data security, and discloses a trusted data space-based data desensitization method, which comprises the following steps of: in a trusted execution environment, analyzing data source metadata to obtain field semantic relevance and data consanguinity topology of the data source metadata; taking real-time context features of the data source metadata as nodes, taking the data consanguinity topology and the field semantic relevance as connection weight edges, and constructing a self-adaptive desensitization rule tree of the data source metadata; in the trusted execution environment, based on an authorization certificate of a user of the data source metadata and a data processing purpose, constructing a multi-party security computing protocol of the data source metadata; segmenting the desensitization rule set into distributed policy fragments based on the multi-party security computing protocol; performing parallel desensitization on a to-be-processed data source based on the distributed strategy fragment; according to the method, the adaptability and the accuracy of the desensitization rule are improved.
Owner:BEIJING ZHONGAN NEBULA SOFTWARE TECH CO LTD

Distributed data authorization method and system based on wearable device

The embodiment of the invention provides a distributed data authorization method and system based on wearable equipment, and relates to the technical field of intelligent wearable equipment. According to the method, original data can be obtained through the wearable device, forced end-to-end encryption and desensitization are executed on the original data, and authorizable data are generated. And uploading the authorizable data to the decentralized storage network so as to cast an ownership certificate of the authorizable data through the decentralized storage network. When the data authorization is performed, a data authorization credential for the authorizable data may be casted based on the ownership credential, thereby transferring the data authorization credential in accordance with the authorization request. Through forced encryption and desensitization, privacy calculation is carried out on the premise that original data is not leaked, privacy security is guaranteed to the maximum extent, and it is ensured that a user has ownership to the data through an ownership certificate. Moreover, by casting a data authorization certificate, key authorization and on-chain recording of authorization are realized, and transparency and traceability of data authorization can be improved.
Owner:XIAOCHE DIGITAL TECHNOLOGY CO LTD

USE OF UNIT-BOUND AUTHORIZATION CERTIFICATES FOR IMPROVED AUTHORIZATION SECURITY IN NATIVE APPLICATIONS

Procedure that includes: Received by an authorization server (201) and by a native application (202) on a unit, an initial authorization grant, a public key of a private / public key pair generated on the unit, and an acknowledgment of the authenticity of the native application (202); Received by the authorization server (201) and by the native application (202) on the unit, an update token and a digital signature of the update token created with the private key, wherein the authorization server (201) recognizes the update token only when the update token is verified with the public key that was previously registered; Validate, by the authorization server (201), the digital signature of the update token; In response to the validation of the update token from the native application (202) on the unit, the authorization server (201) transmits a new access token and a new update token from the authorization server (201) to the native application (202) on the unit, the new access token enabling the native application (202) on the unit to access the computer resource; Input into a neural network (757) the initial authorization, the public key, the confirmation of the authenticity of the native application (202), the update token, and the digital signature of the update token, wherein the neural network (757) is trained to generate an access token generated by the neural network (757) and an update token generated by the neural network (757); and Compare, by one or more processors, the new access token and the new update token generated by the authorization server (201) with the access token and the update token generated by the neural network (757) to validate the new access token and the new update token generated by the authorization server (201).
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Internet of Things equipment management method and system based on MQTT protocol

The invention provides an Internet of Things equipment management method and system based on an MQTT protocol. The method comprises the following steps: sending an equipment discovery request carrying an equipment unique identifier to a cloud platform; receiving an authorization certificate and MQTT server connection information sent by the cloud platform; the authorization certificate and the MQTT server connection information are generated by the cloud platform according to the unique identifier of the equipment; according to the connection information of the MQTT server, establishing encrypted connection with the MQTT server, and performing identity authentication by using the authorization certificate during connection; a downlink management message sent by the cloud platform is received and analyzed, and the downlink management message is in a predefined JSON format and comprises a message type field used for defining behavior operation and an authorization certificate used for session verification; and verifying the authorization voucher in the downlink management message, and executing a corresponding management operation according to the message type field after the verification is passed. Through the technical scheme of the invention, the security of the remote management process can be improved.
Owner:TRANSCEND COMM BEIJING

A method, system and device for inter-application data encryption communication based on a dbus bus

The application discloses an inter-application data encryption communication method based on a dbus bus, an inter-application data encryption communication system based on the dbus bus, an inter-application data encryption communication device based on the dbus bus, an electronic device, a storage medium and a vehicle, and comprises the following steps: a session is created between a server and a client, and a communication session process is executed; a communication daemon process is executed to perform communication authentication processing on the communication session process; the communication authentication processing comprises communication encryption through an authorization certificate and an authorization key, and authentication of a session data unit is performed according to the certificate and the key; if the authentication result is true, the session data unit is retained in the communication session process; and if the authentication result is false, the session data unit in the communication session process is blocked. Through the above scheme, the authorization certificate and the authorization key are double-authenticated, and the security level of the communication connection is improved relative to the original encryption mode of the digital certificate or the digital key alone.
Owner:CHINA FAW CO LTD

Authorization management method, private cloud management platform and computer device

The application relates to an authorization management method, a private cloud management platform and computer equipment. The method comprises the following steps: receiving an authorization request for a private cloud platform as a service (PaaS) platform from a client, wherein the authorization request comprises a platform identifier, an application code and at least one target authorization component; verifying the authorization request; if the verification is passed, sending the authorization request to a PaaS component product console to instruct the PaaS component product console to verify the authority of each target authorization component; if the verification is passed, determining that the corresponding target authorization component is authorized; if the verification is not passed, determining that the corresponding target authorization component is not authorized; returning the authorization results of the target authorization components to the private cloud management platform; and generating an authorization certificate based on the authorization results of the target authorization components and returning the authorization certificate to the client. The security risk is reduced.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Software authorization method, system, device and computer-readable storage medium

The present invention discloses a software authorization method, system, device, and computer-readable storage medium. The method includes: obtaining machine code data of a terminal device corresponding to the software to be authorized; generating an authorization file based on the machine code data; sending the authorization file to the terminal device using a preset sending method; verifying the authorization file on the terminal device to obtain a verification result; and authorizing the software to be authorized based on the verification result. Embodiments of this method enable the authorization certificate to be sent to the terminal device using a preset sending method, thereby authorizing the software to be authorized on the terminal device.
Owner:SHENZHEN CLOU ELECTRONICS

Offline authorization management method and system suitable for embedded operating system

The invention provides an offline authorization management method and system suitable for an embedded operating system, and belongs to the field of communication. The method comprises six functions of acquiring an equipment identification code, generating an authorization certificate, issuing a License authorization certificate and a License verification tool, installing the License authorization certificate, verifying the License authorization certificate and performing archiving management. According to the invention, the problem of License off-line authorization management of a high-security and simple embedded operating system in a local area network or an off-line environment is solved.
Owner:成都菁蓉联创科技有限公司

Knowledge graph retrieval method and device for private railway official document and electronic equipment

The invention relates to a privacy railway official document-oriented knowledge graph retrieval method and device and electronic equipment. The method comprises the following steps: receiving keyword data subjected to classification processing; constructing a tree index structure based on the received keywords; in response to the data deletion request, marking the target data as a deletion state, and updating a filtering structure and a hash value of the associated node from bottom to top; receiving a query request containing a public keyword plaintext and a non-public keyword authorization voucher, traversing the index tree, performing pruning search through filtering structure comparison, and returning a matched knowledge graph sub-graph set and verification information; and generating verification information for verifying the query result. According to the method, privacy grading protection is realized, efficient incremental maintenance is ensured, the retrieval efficiency is remarkably improved, a verifiable closed loop is formed, sensitive information protection requirements and ten thousand-level data retrieval performance of a railway official document scene are considered, and meanwhile, a tamper-proof audit link is constructed through a block chain, a hash chain and a verification packet.
Owner:INST OF COMPUTING TECH CHINA ACAD OF RAILWAY SCI +2