摘要
针对现有物流系统在用户隐私保护上的一些弊端,提出了一种基于QR码分段加密、分级授权和时效控制的隐私保护方案。该方案将收件人所有信息进行分段RSA加密、Base64编码,整合之后嵌入QR码中。在物流运输及派件过程中,对于不同的网点或转运中心授予不同级别的QR码解密权限,查看指定内容。同时在用户签收后QR码自动失效,以此达到保护用户个人隐私的目的。方案的核心思想是尽可能减少收件人信息的接触人群,降低用户信息泄露的可能性。
In view of the disadvantages of the existing logistics system in the market in user privacy protection, a privacy protection scheme based on QR code segmentation encryption, hierarchical authorization and time-limited control was proposed. This scheme segments all the recipient information into RSA and Base64 encryption,after integration, it is embedded into the QR code. In the process of logistics transportation and delivery, different levels of QR code decryption permissions are granted to different branches or transfer centers to view the designated content. At the same time, the QR code automatically becomes invalid after the user signs for it, so as to protect the user's privacy. The core idea of the scheme is to minimize the contact group of recipient information and reduce the possibility of user information disclosure.
作者
刘亮
郭文博
杨昱威
郭怀宇
LIU Liang;GUO Wenbo;YANG Yuwei;GUO Huaiyu(College of Cybersecurity, Sichuan University, Chengdu 610207, China;College of Electronics and Information Engineering, Sichuan University, Chengdu 610065, China)
出处
《网络与信息安全学报》
2019年第4期63-70,共8页
Chinese Journal of Network and Information Security
关键词
QR码
分段加密
时效控制
双向认证
物流系统
隐私保护
QR code
segment encryption
aging control
two-way authentication
logistics system
privacy protection