The invention discloses a tamper-resistant end-to-end service data storage method and
system, and relates to the technical field of service data storage methods, and the method comprises the steps: initializing a
hardware security module and a monotone increasing
clock in
terminal equipment, building a unique identity identifier of the equipment, and preparing a log environment for recording service data; the method comprises the following steps: collecting current
business data and associated meta-information thereof, and constructing input content of current
data processing in combination with an equipment identity, a
clock value, a
data structure template and an abstract value generated by previous
business data; hash operation is carried out on the input content to generate an abstract of the
business data, the abstract is signed by using a
hardware security module to form an equipment side
digital signature, and the abstract, the signature and meta-information are written into a log only increasing but not changing and an offline
queue; and after the terminal recovers the
network connection, generating a unique idempotent key based on the abstract of the service data or the combination of the equipment identity and the
clock, and submitting an evidence storage request containing the abstract and the signature to the
server.