CN101364984A

Method for guarantee safety of electronic file

Abstract

The electronic ensuring consistency between datum of security's method, comprising an encryption technique and a process, comprising wherein the passive insulation technology of the base of active encryption; and pulling based on the outer a control to electronic document, dynamically managing a document a policy, wherein with the value of IT investment extend to the control security of the content management system, reduced with an customers, suppliers, the partners and party concerned information sharing costs.

Term

No projected expiry on record.

  1. Priority and filed
  2. Published
  3. Today

3 claims: 1 independent, 2 dependent

  1. 1
    The electronic ensuring consistency between datum of security's method, comprising an encryption technique and decryption method, the is composed characterised, wherein the encryption process's from DC to:First;the document initial density provide the data encrypting server, the document of the uploaded need to encrypt, a confirming the file format;the encryption method for selecting need, the specific selecting comprises: 1st, Wherein the need to arm the server identification authentication 2, wherein lower part of the local MAC address confirm 3, wherein the lower user fingerprint remote authenticate 4, choices permits a layer of determining failure value of the secondary 5, choices need end of the compulsory used for selecting be one or more;a Alloy, and jurisdiction distribution to the encryption document, the specific option comprises: 1st, Wherein and capable of reads 2, choices for performing the copy and cutting operation 3, choices for performing offline operation 4, choices wherein the detects the screen software and forbids 5, choices for recording encryption of the operation log and uploads for selecting be one or more an, wherein the selecting completes, wherein the encryption server and promoting the user end of the uploaded backup to an initial file, wherein the uploaded with ended, the server with the output sealing the rod EFE encryption file to a user local computer, the whole encryption technique, ended The process's a specific current: is, First time of a network environment for encrypting file, an automatic connection server and authentication, a judging for online operation or the wire-locking operation. And the online operation, which are authentication circuit is the lower grant of server is, a stores the user server and password of layer of secrecy management module end of the data in advance, or an is receiver MAC address authentication server or a fingerprint than a server verifying, a verifying is;the operation jurisdiction of which the distribution password correspondingly;and document correctly. And the output of the wire-locking operation, which is needed by user layers password and address chip and apparatus, verification method is a client verifying short, combinable rope, and flowing are the same by authorization of data;and a on the legitimate operation to the document;and document correctly. 1、一种保证电子文件安全的方法,包括加密过程和解密过程,其特征在于, 加密过程的具体流程是: 首先,文档的初始涉密人员登陆加密服务器,上传需要加密的各类文档,验证完文档格式后,选择需要的加密方式,具体的选择有: 1、是否需要加入服务器身份验证 2、是否需要绑定本机MAC地址进行验证 3、是否需要使用者指纹进行认证 4、选择最大容许验证失败次数 5、选择是否需要进行强制命令 选择可以是一种或一种以上; 其次,对加密文档进行权限分配,具体的选项有: 1、 选择是否可以打开阅读 2、 选择是否可以进行拷贝、剪切操作 3、 选择是否可以进行离线操作 4、 选择是否侦测截屏软件并禁用 5、 选择是否记录加密文件的操作日志并上传 选择可以是一种或一种以上,选择完成后加密服务器会提示用户对初始文件进行上传备份,上传结束后,服务器会自动输出封装好的EFE加密文件到使用者本地计算机,整个加密过程结束; 解密过程的具体流程是: 首先,对加密文件所使用的网络环境进行检测,自动连接服务器进行认证,判断为在线操作还是离线操作。 如果为在线操作,那么所有的认证都需要得到服务器的许可方可通过,对预先存入密级管理模块的用户名、密码进行验证,或者进行授权MAC地址服务器验证或指纹的比对服务器验证,如果验证通过,则分配密码所对应的操作权限,正确使用文档。 如果判断为离线操作,则也是需要通过用户名密码、MAC地址、指纹验证,其验证方法是客户短验证,可以任意组合,并且通过验证的授权必须相同时,才能对文件进行合法操作,正确使用文档。