The embodiment of the invention relates to a public data
authorization operation trusted environment architecture design method and device, and the method comprises the steps: a calculation element generates calculation element registration information according to the attribute information of the calculation element, and uploads the calculation element registration information to a supervision
server for registration; the supervision
server issues a calculation element
certificate to each calculation element according to the calculation element registration information; the supervision
server receives an identity
certificate signature request sent by the computing node, carries out
authentication according to the identity
certificate signature request, and sends an identity certificate to the computing node; and based on request information of multi-party computing, authenticating the plurality of computing nodes according to the identity certificates of the computing nodes, and combining to establish the
trusted computing architecture. According to the technical scheme provided by the embodiment of the invention, mutual
identity recognition among the computing nodes is realized based on the identity certificate, so that the multiple computing nodes are combined into the
trusted computing architecture to carry out multi-party computing, the problems of external attacks, data stealing and the like are effectively prevented, and the security of the multi-party computing process is improved.