Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

50 results about "Keyfile" patented technology

A keyfile (or key-file) is a file on a computer which contains encryption or license keys. A common use is web server software running secure socket layer (SSL) protocols. Server-specific keys issued by trusted authorities are merged into the keyfile along with the trusted root certificates. By this method keys can be updated without recompiling software or rebooting the server.

Image information encryption and decryption method and software system based on digital image steganography technology

The invention relates to the technical field of information encryption and decryption, in particular to an image information encryption and decryption method and software system based on a digital image steganography technology. According to the technical scheme, the method comprises the following steps that a carrier image format and a to-be-processed information type are determined, the carrier image format comprises a PNG image and a JPEG image, and the to-be-processed information type comprises text information, picture information and audio information; encrypting the plaintext information to generate ciphertext information; and selecting a corresponding steganography path according to the format of the carrier image, embedding the ciphertext information into the carrier image, generating an encrypted image, and generating a key file recording the embedded related information. According to the method, various image formats and information types are supported, the compatibility, safety, robustness and practicability of information encryption and decryption are improved through key encryption, face binding verification and a compensation mechanism for JPEG, and the method is suitable for scenes such as information protection and private transmission.
Owner:INST OF ENERGY HEFEI COMPREHENSIVE NAT SCI CENT (ANHUI ENERGY LAB)

Root key acquisition method of quantum security gateway

The invention discloses a root key acquisition method of a quantum security gateway, which comprises the following steps: a security gateway initiates a registration request to a command and control center, and the command and control center generates and issues a network access code and sends identity category information including identity information or the network access code to a root key pool; the root key pool generates a source key file and a root key file based on the identity category information; the security gateway carries out initialization operation on the security gateway; the aggregation security gateway confirms whether the security gateway initiates a first access request or not and whether a data transmission link is established with the security gateway or not through monitoring; the security gateway initiates a root key downloading request to an aggregation security gateway based on the message for establishing the data transmission link; the aggregation security gateway obtains a root key file from a root key pool, generates a data transmission packet and sends the data transmission packet to the security gateway; and the security gateway obtains and temporarily stores the root key file, and performs consistency authentication on the temporarily stored root key file: if the authentication is passed, persistently stores the root key file.
Owner:MATRICTIME DIGITAL TECH CO LTD

File format-based transparent encryption

This specification relates to file format-based transparent encryption tailored for big data. In some aspects, a method includes receiving a write request including a table with one or more columns to be stored in a storage device; compressing table data in a unit of block, wherein each column includes a number of blocks; generating a column key for each column and a block key for each block including sensitive information; encrypting (i) each block including sensitive information with a corresponding block key and (ii) rest of blocks in each column with a corresponding column key; generating wrapped keys for the column keys and block keys and storing the wrapped keys into a key file; and storing the encrypted blocks of each column into a data file in a data folder of the storage device.
Owner:LEMON INC(GB) +1

System switching method, electronic device, storage medium, and program product

The application discloses a system switching method, an electronic device, a storage medium and a program product, and belongs to the technical field of key storage. The method comprises the following steps: in response to the fact that a current system is switched from a first system to a second system, reading a second key file from a secure storage area, wherein the secure storage area stores a first key file which is valid for the first system and a second key file which is valid for the second system; and importing the obtained second key file.
Owner:ZTE CORP

Working method and working system of root key center

The invention discloses a working method and a working system of a root key center. The method comprises the following steps: a terminal device initiates a registration request to the root key center; the root key center generates root key files corresponding to the terminal equipment according to the registration request, generates a first key file list according to all the root key files and stores the first key file list locally; the root key center performs encryption operation on the root key file, generates a second key file list based on a root key file ciphertext, and issues the second key file list to the terminal equipment according to information in the registration request; and after receiving the second key file list, the terminal equipment initiates an authentication operation to the root key center, and after the authentication is passed, the terminal equipment obtains the root key file and locally stores the root key file. According to the method, the security of root key generation and distribution is guaranteed, the overall robustness of the quantum security network is improved, the convenience of deployment and the high efficiency of operation are taken into account, and the method has extremely high practical value and popularization prospect.
Owner:MATRICTIME DIGITAL TECH CO LTD

Secret key file updating method based on same mapping address, electronic equipment and medium

The invention discloses a key file updating method based on the same mapping address, electronic equipment and a medium, and the method comprises the following steps: after initialization, locally creating three program processes: a first process, a second process and a third process; the third process determines an available key file m and a current public offset position, maps the key file m and the current public offset position into a virtual address, and loads the virtual address into a memory; the first process and the second process respectively execute encryption operation and decryption operation and respectively obtain a first offset position and a second offset position, and the third process updates the current public offset position; the third process determines the serial number of the current key file according to the updated current public offset position and updates the virtual address; and after the execution of the first process and the second process is finished, performing persistence operation on the residual key quantity in the key file.
Owner:MATRICTIME DIGITAL TECH CO LTD

Methods and systems for secure data sharing between the first and second zones

This specification provides a method and system for secure data sharing between a first region and a second region, wherein the second region is equipped with a secure access platform. In the first region, plaintext data to be shared with multiple users on the secure access platform is encrypted to generate an encrypted data file. A key file is generated based on the target user's access permissions to the encrypted data file. The encrypted data file needs to be accessed through the secure access platform using the key file. An evidence file is generated based on a security control policy configured for the encrypted data file, including the access permissions for each user. The encrypted data file and key file are transmitted to the target user via a network gateway. The evidence file is transmitted to the secure access platform via the network gateway, and the secure access platform controls the target user's access to the data in the encrypted data file according to the security control policy in the evidence file. This approach balances data sharing and data security.
Owner:ANT BLOCKCHAIN TECHNOLOGY (SHANGHAI) CO LTD

Data communication system and method based on same-level areas

The invention discloses a data communication system and method based on same-level areas. The system comprises a first first-level area and a second first-level area which are connected with each other, the first primary area is used for performing data encryption operation on to-be-sent data, generating a relay key with the second primary area, generating a transmission ciphertext from the encrypted data ciphertext by using the relay key, and sending the transmission ciphertext to the second primary area; and the second primary region decrypts the transmission ciphertext by using the relay key, and decrypts the decrypted data again by using the decrypted key to finally obtain the data to be sent. According to the invention, the relay key is negotiated in real time and cannot be predicted, so that the transmission security of the encryption key is ensured; moreover, the relay key file is simultaneously related to local key files of the first-level key centers in the two first-level areas, and a bad user needs to attack the two key centers at the same time and also needs to know a splicing scheme negotiated by the two key centers in real time, which is very difficult.
Owner:MATRICTIME DIGITAL TECH CO LTD

Key presetting method, electronic equipment and storage medium

The invention discloses a key presetting method, electronic equipment and a storage medium. The method comprises the steps that a root key center generates an authentication key file and a data key file based on equipment identity information; the root key center presets and stores the authentication key file in a security module of the quantum security terminal, and presets and stores the data key file in an encryption processor of the quantum security terminal; the quantum security terminal establishes a corresponding relationship between the security module and the encryption processor; after it is determined that the corresponding relation is legal, the encryption processor carries out first access authentication on the root key center through the access base station, and authentication key information distributed by the root key center is obtained after the authentication is passed; and the encryption processor of the quantum security terminal performs security verification based on the authentication key information, obtains a data key after the verification is passed, and notifies the access base station to execute a key synchronization operation. According to the method, a key presetting and dynamic authentication mechanism is adopted, and potential attacks in a quantum computing environment can be resisted.
Owner:MATRICTIME DIGITAL TECH CO LTD

A method, system, device, and network payment clearing platform for processing reconciliation documents

This invention discloses a method, system, apparatus, and online payment clearing platform for processing reconciliation files. The method includes: generating a key file corresponding to a terminal; generating a first reconciliation file based on the transaction flow data of the terminal within a transaction period; encrypting the first reconciliation file based on a first digital envelope included in the key file to generate a second reconciliation file; performing hash signature processing on the key file to generate a first signature file; and performing hash signature processing on the second reconciliation file to generate a second signature file; and sending the key file, the first signature file, the second reconciliation file, and the second signature file to the terminal, so that the terminal can perform business reconciliation processing based on the received files. Encrypting the reconciliation file through a two-layer data encryption mechanism improves the security of the information data in the reconciliation file; the two-layer data signature mechanism enhances the non-repudiation and tamper-proof capabilities of the reconciliation file.
Owner:NETSUNION CLEARING CORP

Quantum key secure acquisition method and device, and storage medium

The invention discloses a quantum key security acquisition method and device and a storage medium, and the method comprises the steps: carrying out the equal-proportion configuration or non-equal-proportion configuration of an encryption and decryption host and a key host, and connecting the network ports of the encryption and decryption host and the key host through a network cable or an optical fiber; the encryption and decryption host uses an agent process of the encryption and decryption host to establish a socket channel with a key process of the key host in a socket mode, and performs temporary message communication through the socket channel; wherein the encryption and decryption host analyzes the content of the socket communication message by using a kernel mode protocol stack, and the key host analyzes the content of the socket communication message by using a user mode protocol stack. The key host not only can provide key management for a plurality of quantum encryption network elements, but also separates a key file from an application program, so that the security of the key is ensured; and meanwhile, the key process on the key host adopts a user mode protocol stack, so that illegal access of the encryption and decryption host to the key host can be avoided.
Owner:MATRICTIME DIGITAL TECH CO LTD

Method and device for acquiring symmetric communication key for first time between terminals, and storage medium

The invention discloses a method and device for obtaining a symmetric communication key between terminals for the first time and a storage medium, and the method comprises the steps that a first terminal detects whether a symmetric communication key file communicating with a second terminal exists in a local key pool or not, and responds to the situation that the key file does not exist locally; the first terminal initiates a downloading request of the symmetric communication key file to the key center through the security gateway; the key center responds to the downloading request, extracts a symmetric communication key file mile1 to be issued from the local, and records a first association relationship between the symmetric communication key file mile1 and the first terminal; according to the scheme, the single key file is adopted as the encryption key and the decryption key at the same time, the key paired downloading process of the terminal equipment is remarkably simplified, the terminal equipment only needs to successfully download the same key file to establish two-way secure communication, the encryption key and the decryption key do not need to be obtained respectively, and the user experience is improved. And the complexity of key distribution and storage is reduced.
Owner:MATRICTIME DIGITAL TECH CO LTD

Method and system for obtaining preset root key offline by quantum safety equipment terminal

The invention discloses a method and system for obtaining a preset root key offline by a quantum security device terminal, and the method comprises the steps: enabling the quantum security device terminal to initiate a registration application to a root key server through network communication equipment based on the hardware number of the quantum security device terminal; the root key server generates a root key file for the quantum security device terminal based on the registration application, encrypts the root key file by using an encryption key, and issues a root key ciphertext to the quantum security device terminal offline through an intermediate medium; the quantum security equipment terminal executes identity authentication operation to obtain a decryption key of the root key ciphertext; and the quantum security equipment terminal performs decryption operation on the root key ciphertext by using the received decryption key to obtain a plaintext-state root key file, and locally stores the plaintext-state root key file. According to the method, the security, reliability and controllability of the quantum security equipment terminal in the network access initialization process are ensured through a root key security acquisition system which is linked with one another and is deeply defended.
Owner:MATRICTIME DIGITAL TECH CO LTD

Working method and system of quantum security firewall

The invention discloses a working method and system of a quantum security firewall, and the working method comprises the steps: obtaining a plurality of business types from a business terminal by the quantum security firewall, and dividing servers in the Internet into a current business server and other business servers according to different business types; meanwhile, the quantum security firewall initiates a request for configuring a symmetric key file file0 to the quantum key service equipment, so that the quantum security firewall and the service server obtain the symmetric key file; the quantum security firewall configures IP address information and executes IP notification operation on a server in the Internet; and the quantum security firewall receives and filters the first access request from the server in the Internet to obtain a legal second access request, and sends the legal second access request to the service terminal for service processing. According to the invention, the problem of DDOS attack caused by useless access is solved through a dual filtering mechanism.
Owner:MATRICTIME DIGITAL TECH CO LTD

Method and system for activating preset key

The invention discloses a preset key activation method and system. The method comprises the steps that a preset key distribution mechanism distributes a preset key file 1 and an authentication key file 0 to first equipment and second equipment; the device authentication mechanism performs device identity authentication on the first device and the second device based on the authentication key file file0; according to the message that the identity authentication of the device is passed, the first device and the second device respectively execute an activation operation on the preset key file (file1); the first device authenticates the key data with the second device based on the data information of the preset key file file1; and the first device and the second device determine an available preset key file (file2) according to the message that the key authentication is passed. According to the method disclosed by the invention, before the terminal equipment enters a communication network for use, the key storage module of the preset key unit is in a black box state and an inaccessible state and is not interacted or connected with any unit, so that the possibility that bad users steal the preset key is avoided from the source.
Owner:MATRICTIME DIGITAL TECH CO LTD

Key use method and device and storage medium

The invention discloses a secret key using method and device and a storage medium. The method comprises the steps that n data processing processes are created and used for conducting concurrent processing on data; obtaining n unused key files with the length of L from the key files with the total length of M according to the data average length L within a past period of time T, and sequentially and correspondingly distributing the n key files to corresponding data processing processes; and distributing the to-be-processed data to the corresponding data processing process for encryption processing. According to the invention, a segment of key is preset in each data processing process, so that the data processing process can immediately execute encryption operation when receiving the to-be-processed data without waiting to request to distribute the key to a key file; particularly, under the condition that the length of the data to be processed is smaller than the length of the preset key, encryption can be completed by directly using the preset key, the encryption preparation time is remarkably shortened, and the real-time performance of data processing is improved.
Owner:MATRICTIME DIGITAL TECH CO LTD

File format-based transparent encryption on big data

This specification relates to file format-based transparent encryption tailored for big data. In some aspects, a method includes receiving, by one or more computing devices, a write request including a table with one or more columns to be stored in a storage device, wherein each column includes a number of pages; generating a column key for each column and a page key for each page including sensitive information; encrypting (i) each page including sensitive information with a corresponding page key and (ii) each column with a corresponding column key; generating wrapped keys for the column keys and page keys and storing the wrapped keys into a key file; storing the encrypted columns into a data file of the storage device and storing the wrapped keys in a separate key file; and storing a reference to the key file in a file footer of the data file.
Owner:LEMON INC(GB) +1

Encryption and decryption method and device based on symmetric key, and storage medium

The invention discloses an encryption and decryption method and device based on a symmetric key and a storage medium, and the method comprises the steps: a first security gateway as a sender determines whether a second security gateway as a receiver is in an online state, and if yes, the encryption and decryption operation continues to be executed; if not, ending the process; and the first security gateway obtains the encryption key from the local first key file, records the key index of the encryption key, and updates the state of the first key file to be in use. According to the security gateway disclosed by the invention, the key file in the security gateway does not distinguish uplink and downlink any more, but uses one key file, that is, uplink and downlink traffic are encrypted and decrypted by adopting the unified key file, and only a unique position mark needs to be read and modified before and after encryption and decryption operations; and compared with the condition that the encryption key file and the decryption key file are separated in the earlier stage, the logic for obtaining the encryption and decryption keys in the security gateway is simplified, and the processing efficiency is higher.
Owner:MATRICTIME DIGITAL TECH CO LTD

Key distribution method based on differential instruction, electronic equipment and storage medium

The invention discloses a key distribution method based on a differential instruction, electronic equipment and a storage medium, participants of the method comprise a key center and a quantum security terminal which are in communication connection, and the method comprises the following steps: step 1, the quantum security terminal initiates a key acquisition request to the key center, the key center calculates the number of key files needing to be acquired according to the key acquisition request; step 2, the key center responds to the key acquisition request, carries out key distribution, generates a differential instruction and sends the differential instruction to the quantum security terminal; and step 3, the quantum security terminal initiates a secret key downloading request to a secret key center according to the received differential instruction, and obtains a target secret key file. When the key center carries out key distribution, only the differential instruction is sent to the quantum security terminal, and the key content of the local key file is not split or combined, so that the local source key file of the key center is not wasted, and the utilization rate of key resources is ensured.
Owner:MATRICTIME DIGITAL TECH CO LTD

A user access security management method, a terminal device, and a storage medium

This invention relates to a user access security management method, terminal device, and storage medium. The method includes: S1: After receiving a successful user login message, obtaining the user's username and creation time, and combining the username and creation time to generate a verification code corresponding to the user; S2: Encrypting the verification code to obtain a corresponding encrypted verification code; S3: Generating a corresponding password and key file based on the verification code and the encrypted verification code; S4: Decrypting the key file; if decryption is successful, proceed to S5; if decryption fails, the process ends; S5: Loading the user's file directory based on the password and key file; if loading is successful, proceed to S7; if loading fails, proceed to S6; S6: Initializing the user's file directory; S7: Loading the user's storage files and operation files generated after the user's login into the user's file directory. This invention can achieve physical isolation of one user, one data, and one storage.
Owner:XIAMEN MEIYA PICO INFORMATION CO LTD

File format-based transparent encryption on big data

This specification relates to file format-based transparent encryption tailored for big data. In some aspects, a method includes receiving, by one or more computing devices, a write request including a table with one or more columns to be stored in a storage device, wherein each column includes a number of pages; generating a column key for each column and a page key for each page including sensitive information; encrypting (i) each page including sensitive information with a corresponding page key and (ii) each column with a corresponding column key; generating wrapped keys for the column keys and page keys and storing the wrapped keys into a key file; storing the encrypted columns into a data file of the storage device and storing the wrapped keys in a separate key file; and storing a reference to the key file in a file footer of the data file.
Owner:LEMON INC(GB) +1

Data decryption method and device based on lock and storage medium

The invention discloses a data decryption method and device based on a lock and a storage medium, and the method comprises the steps: obtaining transmitted ciphertext data, proofreading the checksum of the ciphertext data, and if the proofreading is passed, decrypting the ciphertext data; if yes, determining the position of the current decryption key file and the initial position of the decryption key in the current decryption key file based on a decryption key index carried in the ciphertext data; analyzing the ciphertext data to obtain a decryption key quantity required by decryption, and judging whether the current decryption key file meets the decryption key quantity or not; according to the method and the device, the decryption key file mapped to the memory is locked, so that the locked decryption key file only serves the current corresponding decryption process and cannot be used by other decryption processes at the same time, and the smoothness of the decryption operation is ensured; moreover, the locking mechanism effectively prevents resource competition and operation disorder possibly caused by the fact that a plurality of decryption processes access the same key file at the same time, so that the decryption processes can run independently without mutual interference.
Owner:MATRICTIME DIGITAL TECH CO LTD

A data processing method and device, electronic equipment, chip and medium

This disclosure provides a data processing method, apparatus, electronic device, chip, and medium, relating to the field of data encryption and decryption technology. It includes: acquiring target data corresponding to a first request; in response to the target data including file data and attribute data, generating a target key, the target key including a first key corresponding to the attribute data, a second key corresponding to the file data, and a starting offset of the file data within the target data; and processing the target data corresponding to the first request based on the target key. This disclosure determines the type of target data targeted by the first request, thereby assigning different keys to the file data and attribute data respectively, to achieve partitioned encryption and decryption of the file data and attribute data, saving storage space, improving storage efficiency, and further reducing the number of I / O requests.
Owner:BEIJING X RING TECHNOLOGY CO LTD

Multi-level ciphertext storage system for cloud-edge collaboration

The application discloses a kind of multi-level ciphertext storage systems for cloud edge cooperation, including client, secret data search service subsystem, key management subsystem, edge storage subsystem and cloud storage subsystem, wherein secret data search service subsystem is used to maintain ciphertext index and provide retrieval service;Client integrates secret search, file encryption module, and directly uploads, downloads ciphertext data to edge storage subsystem;Key management subsystem is used to manage search key, file encryption key and the like of secret data search service subsystem and client;Edge storage subsystem and cloud storage subsystem perform deletion operation on repeated ciphertext data according to pre-set encryption strategy, to realize the optimization of storage resources.The application can reduce storage delay, improve throughput, improve the efficiency of edge storage service while improving data storage security.
Owner:NO 30 INST OF CHINA ELECTRONIC TECH GRP CORP

Transmission method and system based on uplink and downlink shunting data

The invention discloses a transmission method and system based on uplink and downlink shunting data. The method comprises the following steps: step 1, first equipment and second equipment are configured with symmetric encryption and decryption key files; step 2, the first device generates a data packet mes, monitors the data packet mes to determine an encryption demand of the data packet mes, generates corresponding sending information based on an encryption key file in the first device, and sends the sending information to the second device; and step 3, the second equipment receives the sending information, analyzes the ciphertext and executes decryption operation based on the decryption key file in the second equipment. By means of the method in the scheme, the same device can conduct data sending operation and data receiving operation with other devices at the same time and do not affect each other, the data flow path is clear, and the processing capacity of data concurrent transmission is effectively improved; and meanwhile, the transmission of the plaintext can be processed, the current actual transmission requirement is met, and the practicability is high.
Owner:MATRICTIME DIGITAL TECH CO LTD

A global quantum secure multicast information transmission method

The application discloses a kind of global quantum secure multicast information transmission methods, the method comprises: based on multicast service creates multicast group;Each edge gateway device and center gateway device downloads key file from key center;Center gateway device is associated with global quantum service link and is stored in mapping table with the IP of participant;Sender user sends the information of message receiver user to application server via edge gateway device and center gateway device with the message to be sent, own IP and message receiver user information;Application server sends the data processed to each receiver user in multicast group again.This application can only participate in communication in the user of multicast group, and the communication data is encrypted and decrypted by using the related key, so that the communication message is prevented from being stolen by irrelevant personnel;Meanwhile, the key is pre-installed or pre-installed online, and then the service is distributed, and the key relay service is ensured, so that the high-load traffic service can normally operate in the global quantum security network.
Owner:MATRICTIME DIGITAL TECH CO LTD

Key management method and device, terminal and storage medium

The invention relates to the technical field of data management, in particular to a key management method and device, a terminal and a storage medium, and the method comprises the steps: generating a compressed package key library, and adding the compressed package key library into a pre-constructed key library list; determining a target compressed packet key library in the key library list, and performing identity authentication; generating a key file with key content in a key library of the target compressed package; and determining a target key file in the key file list, and encrypting the to-be-encrypted object based on the key content of the target key file. According to the method, the key file is generated in the compressed package key library, and the generated key file forms the list, so that unified management is realized, when the to-be-encrypted object is encrypted, the target key file is acquired from the compressed package key library, the encryption mode is simple, the compressed package key library can be opened only through identity authentication, and the encryption efficiency is improved. Therefore, encryption is facilitated, and the secret key is safely managed at the same time.
Owner:PENGYUAN CREDIT REPORTING CO LTD

Quantum security cross-regional communication system and method

The invention discloses a quantum security cross-regional communication system and method. The method comprises the following steps: a first key distribution mechanism distributes a first key file to a first terminal in the jurisdiction range of the first key distribution mechanism, and a third key distribution mechanism distributes a second key file to each terminal in a whole communication network; the first terminal generates an encryption key based on the length of to-be-sent transmission data, performs encryption operation on the transmission data by using the encryption key to obtain a ciphertext, generates a transmission message based on the ciphertext, and sends the transmission message to the second terminal through the data relay mechanism; and the second terminal receives the transmission message from the data relay mechanism, and locally generates a decryption key to decrypt the ciphertext so as to obtain transmission data. According to the method, the encryption key or the decryption key is obtained from two key files distributed by two different mechanisms, and the data transmission security is not influenced by the leakage of any key, so that the data security of the cross-regional terminal in the communication process is ensured.
Owner:MATRICTIME DIGITAL TECH CO LTD

Method and system for acquiring preset quantum key

The invention discloses a method and a system for acquiring a preset quantum key. The method comprises the following steps: a terminal initiates a request req for acquiring a data key to a key center; the key center generates a preset key file based on identity information EMID of a security module in the terminal, encrypts the preset key file and calculates a hash value; the secret key center sends the encrypted data secret key information to the encryption processor for preset storage, and sends the preset part of the authentication secret key to the security module for preset storage; when the data key needs to be acquired, identity authentication is performed firstly, then the encryption processor initiates first access authentication and data integrity authentication to the key center, and the data key is acquired after the authentication is passed. Before the terminal is formally used, the internal preset key is stored in the ciphertext, and a bad user cannot obtain the key file in the key file by cracking the terminal; and when the data key is obtained, strict authentication is required, so that the security and integrity of the preset key file are ensured.
Owner:MATRICTIME DIGITAL TECH CO LTD

Key supplement method and system for large-scale power user terminals

The invention discloses a key supplement method and system for a large batch of power user terminals, and the method comprises the steps: obtaining corresponding and symmetrical key files through quantum safety equipment and Ath quantum safety equipment which need key supplement, and carrying out the key negotiation to obtain a same disturbance key; the above steps are repeated for many times until all m quantum security devices needing key supplementation obtain corresponding disturbance keys; then, the m quantum security devices respectively initiate m key supplement requests to the key center, and the key center generates corresponding key supplement files and then distributes the key supplement files; and each quantum security device processes the received key supplement file by using the respective disturbance key, and verifies the key supplement file. According to the invention, the differentiated disturbance key is extracted based on the local key file, so that even if the same key supplement file is received, the final key content stored by each quantum security device after the XOR operation still has uniqueness.
Owner:STATE GRID HEBEI ELECTRIC POWER CO LTD +1