[go: up one dir, main page]

TWI650665B - Private data management system and method therefor - Google Patents

Private data management system and method therefor Download PDF

Info

Publication number
TWI650665B
TWI650665B TW106116435A TW106116435A TWI650665B TW I650665 B TWI650665 B TW I650665B TW 106116435 A TW106116435 A TW 106116435A TW 106116435 A TW106116435 A TW 106116435A TW I650665 B TWI650665 B TW I650665B
Authority
TW
Taiwan
Prior art keywords
data
data management
personal
user
personal data
Prior art date
Application number
TW106116435A
Other languages
Chinese (zh)
Other versions
TW201901504A (en
Inventor
南基元
朴吉珠
Original Assignee
南基元
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 南基元 filed Critical 南基元
Priority to TW106116435A priority Critical patent/TWI650665B/en
Publication of TW201901504A publication Critical patent/TW201901504A/en
Application granted granted Critical
Publication of TWI650665B publication Critical patent/TWI650665B/en

Links

Landscapes

  • Storage Device Security (AREA)

Abstract

本發明涉及個人資料管理系統及其管理方法,本發明的目的在於,提供不在相應的使用者終端或特定伺服器儲存使用者的個人資料, 而是分散儲存於他人的終端並管理,並且當必要時,通過多個認證步驟從相應的使用者終端恢復個人資料,從而不僅大幅降低被駭客入侵的可能性,而且在丟失相應使用者終端的情況下,也防止資料被洩露的個人資料管理系統及其管理方法。The present invention relates to a personal data management system and a management method thereof. The object of the present invention is to provide a personal data that is not stored in a corresponding user terminal or a specific server, but is distributed and managed in a terminal of another person, and when necessary At the same time, the personal data is recovered from the corresponding user terminal through multiple authentication steps, thereby not only greatly reducing the possibility of being invaded by the hacker, but also preventing the data from being leaked when the corresponding user terminal is lost. And its management methods.

Description

個人資料管理系統及其管理方法Personal data management system and management method thereof

本發明涉及個人資料管理系統及其管理方法,更詳細地,涉及不在相應的使用者終端或特定伺服器儲存使用者的個人資料, 而是分散儲存於他人的終端並管理,並且當必要時,通過多個認證步驟從相應的使用者終端恢復個人資料,從而不僅大幅降低被駭客入侵的可能性,而且在丟失相應使用者終端的情況下,也防止資料被洩露的個人資料管理系統及其管理方法。The present invention relates to a personal data management system and a management method thereof. More specifically, it relates to not storing a user's personal data in a corresponding user terminal or a specific server, but is distributed and managed in a terminal of another person, and when necessary, Recovering personal data from the corresponding user terminal through multiple authentication steps, thereby not only greatly reducing the possibility of being hacked by the hacker, but also preventing the data from being leaked when the corresponding user terminal is lost, and Management method.

最近,隨著資料通信技術的急速發展,人們會通過個人可擕式終端來進行線上轉帳和支付等各種金融處理,而為了金融處理,則需要可識別個人的識別資訊,包含其識別資訊在內的個人資訊儲存於金融伺服器中。Recently, with the rapid development of data communication technology, people will carry out various financial processing such as online transfer and payment through personal portable terminals. For financial processing, it is necessary to identify personal identification information, including its identification information. Personal information is stored in the financial server.

因此,一個金融伺服器中儲存有幾百萬件的大量的個人資訊,從而使金融伺服器成為駭客窺視的目標。實際上,諸多金融伺服器被駭客入侵,從而使多個個人資訊以非法使用為目的來得到流通。Therefore, a financial server stores millions of pieces of personal information, making the financial server a target for hackers. In fact, many financial servers are invaded by hackers, so that multiple personal information is circulated for the purpose of illegal use.

金融伺服器成為駭客目標的最大原因在於具有龐大的可利用的個人資訊。即,即使駭客需要投入時間方面的努力,也因成功入侵時可大量獲得可利用的個人資訊,從而使金融伺服器頻繁成為駭客的目標。The biggest reason for financial servers to become hackers is the huge amount of personal information available. That is, even if a hacker needs to invest time, he or she can obtain a large amount of personal information that can be obtained when a successful invasion, so that the financial server frequently becomes a target of the hacker.

另一方面,由於最近的個人可擕式終端可進行攝像和無線上網,因而儲存著帶有各種隱私的資料,但因個人隱私資料非常頻繁地被洩露在互聯網上而蒙受屈辱。尤其,在明星的情況下,當個人隱私資料被洩露時,可以說是對民眾產生非常大的波及效應。On the other hand, since recent personal portable terminals can perform videography and wireless Internet access, they store information with various privacys, but are humiliated because personal privacy information is leaked on the Internet very frequently. In particular, in the case of a star, when personal privacy information is leaked, it can be said that it has a very large ripple effect on the people.

為了防止上述問題而推出了多種安全技術,但現實上無法防止駭客入侵儲存於伺服器的資料,並且存在儲存於個人可擕式終端的資料也可能被駭客入侵並被洩露的問題。In order to prevent the above problems, a variety of security technologies have been introduced, but in reality, it is impossible to prevent hackers from intruding data stored in the server, and there is a problem that data stored in the personal portable terminal may be invaded and leaked by the hacker.

本發明鑒於上述現有技術問題而提出,本發明的目的在於,提供不在相應的使用者終端或特定伺服器儲存使用者的個人資料, 而是分散儲存於他人的終端並管理,並且當必要時,通過多個認證步驟從相應的使用者終端恢復個人資料,從而不僅大幅降低被駭客入侵的可能性,而且在丟失相應使用者終端的情況下,也防止資料被洩露的個人資料管理系統及其管理方法。The present invention has been made in view of the above prior art problems, and an object of the present invention is to provide a user profile that is not stored in a corresponding user terminal or a specific server, but is distributed and managed in a terminal of another person, and when necessary, Recovering personal data from the corresponding user terminal through multiple authentication steps, thereby not only greatly reducing the possibility of being hacked by the hacker, but also preventing the data from being leaked when the corresponding user terminal is lost, and Management method.

為了實現上述目的,根據本發明的優選實施例,提供如下的個人資料管理方法,上述個人資料管理方法的特徵在於,包括:步驟a,安裝於使用者終端2的個人資料管理應用程式6接收驅動信號;步驟b,上述個人資料管理應用程式6對資料分散選擇信號是否被施加進行判斷; 步驟c, 從使用者終端2的個人電話號碼簿提取資料儲存對象並分組;步驟d,對特定資料是否被選擇進行判斷;步驟e,所述個人資料管理應用程式6將資料儲存對象組資訊傳送給資料管理伺服器10;步驟f,所述資料管理伺服器10儲存資料儲存對象組資訊;步驟g,上述個人資料管理應用程式6按規定數量對相應資料進行分割處理;以及步驟h, 將各分割資料任意匹配並傳送給資料儲存對象組終端側。In order to achieve the above object, according to a preferred embodiment of the present invention, a personal data management method is provided. The personal data management method is characterized in that: step a, the personal data management application 6 installed in the user terminal 2 receives the driver. Signal b; step b, the personal data management application 6 determines whether the data decentralization selection signal is applied; step c, extracts the data storage object from the personal telephone directory of the user terminal 2 and groups it; step d, whether the specific data is Is selected to determine; in step e, the personal data management application 6 transmits the data storage object group information to the data management server 10; in step f, the data management server 10 stores the data storage object group information; step g, The personal data management application 6 divides the corresponding data by a predetermined amount; and in step h, the divided data is arbitrarily matched and transmitted to the terminal side of the data storage object group.

優選地,本發明提供如下的個人資料管理方法,上述個人資料管理方法的特徵在於,上述步驟h還包括上述個人資料管理應用程式6向額外的資料備份對象終端傳送被分割的備份資料的步驟。Preferably, the present invention provides a personal data management method, wherein the personal data management method is characterized in that the step h further includes the step of the personal data management application 6 transmitting the divided backup data to the additional data backup target terminal.

優選地,本發明提供如下的個人資料管理方法,上述個人資料管理方法的特徵在於,在上述步驟h之後還包括:步驟i,上述個人資料管理應用程式6對資料復原模式是否被選擇進行判斷;步驟j,若接收到特定資料恢復信號,則上述個人資料管理應用程式6提取用於對相應資料的分割資料進行分散儲存的對象終端資訊;步驟k,上述個人資料管理應用程式6通過向相應的資料儲存對象終端發送資料傳送請求來接收資料;以及步驟l,若完成資料的接收,則上述個人資料管理應用程式6恢復資料。Preferably, the present invention provides a personal data management method. The personal data management method is characterized in that after the step h, the method further includes: step i, the personal data management application 6 determines whether the data recovery mode is selected; Step j, if receiving a specific data recovery signal, the personal data management application 6 extracts target terminal information for performing distributed storage on the divided data of the corresponding data; step k, the personal data management application 6 passes the corresponding The data storage target terminal transmits a data transmission request to receive the data; and in step 1, if the data reception is completed, the personal data management application 6 restores the data.

優選地,本發明提供如下的個人資料管理方法,上述個人資料管理方法的特徵在於,在上述步驟l中還包括:若在規定時間內未從部分終端接收到資料,則上述個人資料管理應用程式6提取相應資料的備份儲存對象終端資訊的步驟;以及上述個人資料管理應用程式6向相應的備份儲存對象終端側發送資料傳送請求的步驟。Preferably, the present invention provides a personal data management method, wherein the personal data management method is characterized in that the step 1 further includes: if the data is not received from a part of the terminal within a predetermined time, the personal data management application 6: a step of extracting the backup storage target terminal information of the corresponding data; and the step of the personal data management application 6 transmitting the data transfer request to the corresponding backup storage target terminal side.

優選地,本發明提供如下的個人資料管理方法,上述個人資料管理方法的特徵在於,在上述步驟i與步驟j之間還包括:步驟m,上述個人資料管理應用程式6向上述資料管理伺服器10傳送需要恢復的資料資訊並請求相應資料的認證使用者資訊;步驟n,上述資料管理伺服器10向相應的個人資料管理應用程式6傳送相應資料的認證使用者資訊;步驟o,上述個人資料管理應用程式6向相應的認證使用者的使用者終端2請求輸入個人認證資訊;以及步驟p,當在相應的認證使用者的使用者終端2中成功通過個人認證時,相應的認證使用者的使用者終端2向上述個人資料管理應用程式6傳送認證確認信號。Preferably, the present invention provides a personal data management method, wherein the personal data management method further includes: step m, the personal data management application 6 to the data management server 10 transmitting the information information that needs to be restored and requesting the authenticated user information of the corresponding data; in step n, the data management server 10 transmits the authenticated user information of the corresponding data to the corresponding personal data management application 6; step o, the above personal data The management application 6 requests the user terminal 2 of the corresponding authenticated user to input the personal authentication information; and in step p, when the personal authentication is successfully passed in the user terminal 2 of the corresponding authenticated user, the corresponding authenticated user The user terminal 2 transmits an authentication confirmation signal to the personal data management application 6.

優選地,本發明提供如下的個人資料管理方法,上述個人資料管理方法的特徵在於,上述步驟n為上述資料管理伺服器10通過簡訊或電子郵件向相應的個人資料管理應用程式6傳送認證使用者資訊的步驟。Preferably, the present invention provides a personal data management method, wherein the personal data management method is characterized in that the step n is that the data management server 10 transmits the authenticated user to the corresponding personal data management application 6 via a short message or an email. The steps of the information.

優選地,本發明提供如下的個人資料管理方法,上述個人資料管理方法的特徵在於,上述步驟p中還包括:若從上述認證使用者的使用者終端2接收到認證失敗信號,則上述個人資料管理應用程式6向上述資料管理伺服器10傳送認證失敗資訊的步驟;若在預設時間內未接收到認證信號,則相應的個人資料管理應用程式6向上述資料管理伺服器10傳送新的認證使用者資訊的步驟;以及上述資料管理伺服器10向相應的個人資料管理應用程式6傳送新的認證使用者資訊的步驟。Preferably, the present invention provides a personal data management method, wherein the personal data management method is characterized in that the step p further includes: if receiving an authentication failure signal from the user terminal 2 of the authenticated user, the personal data The management application 6 transmits the authentication failure information to the data management server 10; if the authentication signal is not received within the preset time, the corresponding personal data management application 6 transmits the new authentication to the data management server 10. The step of user information; and the step of transmitting the new authentication user information by the data management server 10 to the corresponding personal data management application 6.

優選地,本發明提供如下的個人資料管理方法,上述個人資料管理方法的特徵在於,上述步驟l還包括:對在預設時間內是否接收到特定分割資料進行判斷的步驟;當未接收到特定分割資料時,對用於儲存備份資料的使用者終端資訊進行提取的步驟;以及上述個人資料管理應用程式6向用於儲存相應的備份資料的使用者終端2側請求傳送資料的步驟。Preferably, the present invention provides a personal data management method, wherein the personal data management method is characterized in that the step 1 further includes: a step of determining whether a specific split data is received within a preset time; when the specific a step of extracting user terminal information for storing backup data when dividing the data; and the step of requesting the transfer of the data by the personal data management application 6 to the user terminal 2 side for storing the corresponding backup data.

優選地,本發明提供如下的個人資料管理方法,上述個人資料管理方法的特徵在於,上述個人資料管理方法還包括在通過分割資料來進行傳送的傳送使用者終端2-1和試圖恢復被分割儲存的資料的接收使用者終端2-3互不相同的情況下,上述傳送使用者終端2-1向上述接收使用者終端2-3側傳送由傳送使用者終端2-1分割儲存的資料、接收到的認證資訊以及剩餘分割資料的儲存終端資訊的步驟。Preferably, the present invention provides a personal data management method according to the above, wherein the personal data management method further includes transmitting the user terminal 2-1 by dividing the data and attempting to restore the divided storage. When the receiving user terminals 2-3 are different from each other, the transmitting user terminal 2-1 transmits the data stored and received by the transmitting user terminal 2-1 to the receiving user terminal 2-3 side. The steps of the authentication information and the storage terminal information of the remaining divided data.

另一方面,本發明提供如下的個人資料管理系統,上述個人資料管理系統的特徵在於,包括:使用者終端2, 其安裝有個人資料管理應用程式6,所述個人資料管理應用程式6通過使用者的認證來驅動,作為使用者在使用者的個人電話號碼簿提取而形成資料儲存對象組,將使用者選擇的特定資料自動分離成多個,分散傳送給從資料管理伺服器10傳送的特定識別碼的多個使用者終端2,根據使用者的恢復指令,使相應的分散資料聚合並恢復;資料管理伺服器10,其儲存所述安裝了個人資料管理應用程式6的使用者終端的識別資訊,從多個使用者終端2接入他人資料分散儲存允許信號,登記相應識別資訊,只限從所述使用者終端2接入自動資料分散請求信號時進行處理,以便向隨機提取的他人的終端傳送分散資料並儲存。In another aspect, the present invention provides a personal data management system, wherein the personal data management system is characterized by comprising: a user terminal 2, which is installed with a personal data management application 6, and the personal data management application 6 is used The user's authentication is driven to form a data storage object group as a user's personal telephone directory, and the specific data selected by the user is automatically separated into a plurality of pieces and distributed to the specific data transmitted from the material management server 10. The plurality of user terminals 2 of the identification code aggregate and restore the corresponding distributed data according to the user's recovery instruction; the data management server 10 stores the identification of the user terminal on which the personal data management application 6 is installed Information, accessing the data distribution permission signal of the other user terminal 2, registering the corresponding identification information, and processing only when the user terminal 2 accesses the automatic data distribution request signal, so as to be processed to the randomly extracted others The terminal transmits the distributed data and stores it.

優選地,本發明提供如下的個人資料管理系統,上述個人資料管理系統的特徵在於,在通過分散資料來傳送的上述使用者終端2與上述資料管理伺服器10之間以及在分散儲存資料的使用者終端2與上述資料管理伺服器10之間傳送的資料均為加密資料。Preferably, the present invention provides a personal data management system characterized in that the personal data management system is characterized by the use of the user terminal 2 and the material management server 10 transmitted by the distributed data and the distributed storage data. The data transmitted between the terminal 2 and the above-described material management server 10 is encrypted data.

優選地,本發明提供如下的個人資料管理系統,上述個人資料管理系統的特徵在於,上述個人資料管理應用程式6使被分割的多個資料中的一個資料儲存於相應的使用者終端2,使其他資料分散儲存於具有特定識別碼的多個使用者終端2。Preferably, the present invention provides a personal data management system, wherein the personal data management system is characterized in that the personal data management application 6 stores one of the plurality of divided data in the corresponding user terminal 2, so that The other data is distributed and stored in a plurality of user terminals 2 having a specific identification code.

優選地,本發明提供如下的個人資料管理系統,上述個人資料管理系統的特徵在於,在上述個人資料管理應用程式6的內部包括:通訊模組20,用於與分散儲存資料的多個使用者終端2及資料管理伺服器10進行通訊;使用者認證部22,通過個人識別資訊認證對使用者進行認證;儲存對象資訊請求部24,用於自動向上述資料管理伺服器10請求需要分散儲存資料的儲存對象資訊;資料分割處理部28,用於對使用者所選的特定資料進行分割處理;加密/解碼處理部32,用於對進行通訊的資料實施加密及解碼;資料儲存部34,用於對被分割處理的資料中的一部分資料進行儲存,並對儲存有各個被分割處理的資料的儲存對象資訊進行儲存;以及控制部36,通過分割特定資料來儲存其中的一部分資料,並向多個資料儲存對象終端傳送其他資料來使上述其他資料得到分散儲存,當恢復資料時,上述控制部36通過向相應的儲存對象終端側傳送特定資料的傳送請求信號來進行恢復。Preferably, the present invention provides a personal data management system, wherein the personal data management system is characterized in that the personal data management application 6 includes: a communication module 20 for use with a plurality of users who store data in a distributed manner. The terminal 2 and the data management server 10 perform communication; the user authentication unit 22 authenticates the user by personal identification information authentication; and the storage target information requesting unit 24 is configured to automatically request the data management server 10 to store the data. The data storage unit 34 is configured to perform segmentation processing on the specific data selected by the user; the encryption/decoding processing unit 32 is configured to perform encryption and decoding on the data to be communicated; And storing a part of the data in the divided processed data, and storing the stored object information storing the divided processed data; and the control unit 36, by dividing the specific data, storing a part of the data, and Data storage object terminals transmit other data to make the above other materials distributed When restoring data, the control unit 36 transmits the particular information corresponding to the object by the terminal side storing a transfer request signal to recover.

優選地,本發明提供如下的個人資料管理系統,所述個人資料管理應用程式6在其內部還包括儲存對象分組處理部,所述儲存對象分組處理部從使用者終端2中構成的個人電話號碼簿接入指定資料儲存對象的電話號碼的信號,提取相應電話號碼並分組。Preferably, the present invention provides a personal data management system that further includes a storage object packet processing unit therein, and a personal telephone number formed by the storage object packet processing unit from the user terminal 2 The book accesses the signal of the telephone number of the specified data storage object, extracts the corresponding telephone number and groups it.

優選地,本發明提供如下的個人資料管理系統,上述個人資料管理系統的特徵在於,上述個人資料管理應用程式6向多個資料傳送對象的終端傳送分割資料,並通過向作為備份對象的終端側傳送相同的分割資料來使上述相同的分割資料得到備份儲存,當恢復資料時,若特定的分割資料在規定時間內未得到恢復,則上述個人資料管理應用程式6通過備份資料來進行恢復處理。Preferably, the present invention provides a personal data management system, wherein the personal data management system 6 transmits the divided data to the terminals of the plurality of data transfer objects, and passes the terminal side as the backup target. The same divided data is transmitted to enable the same divided data to be backed up and stored. When the data is restored, if the specific divided data is not restored within the predetermined time, the personal data management application 6 performs the recovery processing by backing up the data.

優選地,本發明提供如下的個人資料管理系統,上述個人資料管理系統的特徵在於,上述資料管理伺服器10在資料被分散儲存時對在恢復特定資料時需要認證的單一認證使用者資訊進行註冊,當上述個人資料管理應用程式6請求恢復資料時,上述資料管理伺服器10向個人資料管理應用程式6提供相應的認證使用者資訊。Preferably, the present invention provides a personal data management system, wherein the personal data management system is characterized in that the data management server 10 registers a single authenticated user information that needs to be authenticated when restoring a specific data when the data is distributed and stored. When the personal data management application 6 requests to restore the data, the data management server 10 provides the corresponding authentication user information to the personal data management application 6.

本發明的個人資料管理系統及其管理方法具有如下優點:通過分割個人資料來使個人資料分散儲存於多個使用者終端,從而即使資料管理伺服器、電子郵件伺服器或社群網路服務(SNS)伺服器被駭客入侵,駭客也無法得到資料或只能獲得分割資料的一部分,從而使駭客入侵變得毫無意義,並且在即使伺服器被駭客入侵的情況下,若駭客未能入侵多個第二使用者終端,也無法獲得全部分割資料,並且即使駭客入侵與特定資料相關的多個使用者終端,最終也只能獲得一個人的特定資料,因而給駭客帶來的實際利益非常少,從而可加強安全性能。The personal data management system and the management method thereof of the present invention have the following advantages: the personal data is distributed and stored in a plurality of user terminals by dividing the personal data, so that even the data management server, the email server or the social network service ( SNS) The server is invaded by the hacker, and the hacker can't get the data or can only get a part of the split data, so that the hacker invasion becomes meaningless, and even if the server is hacked, if The customer fails to invade multiple second user terminals, and cannot obtain all the divided data, and even if the hacker invades multiple user terminals related to the specific data, only one person's specific data can be obtained at the end, thus giving the customer a The actual benefits come very low, which enhances safety performance.

以下,參照附圖,對本發明第一實施例的個人資料管理系統進行詳細說明。Hereinafter, the personal data management system according to the first embodiment of the present invention will be described in detail with reference to the accompanying drawings.

圖1為示出本發明第一實施例的個人資料管理系統的結構的示意圖,圖2為示出通過本發明第一實施例的個人資料管理系統選定的資料儲存對象的選定狀態的圖,圖3為示出通過本發明第一實施例的個人資料管理系統分割、儲存及恢復資料的狀態的圖。1 is a view showing the configuration of a personal data management system according to a first embodiment of the present invention, and FIG. 2 is a view showing a selected state of a data storage object selected by the personal data management system according to the first embodiment of the present invention. 3 is a diagram showing a state in which data is divided, stored, and restored by the personal data management system of the first embodiment of the present invention.

參照圖1、圖2及圖3,本發明第一實施例的個人資料管理系統為如下的系統,即,不在相應的使用者終端或特定伺服器儲存使用者的個人資料, 而是分散儲存於他人的終端並管理,當必要時,通過多個認證步驟從相應的使用者終端恢復個人資料,從而不僅大幅降低被駭客入侵的可能性,而且在丟失相應使用者終端的情況下,也防止資料被洩露。Referring to FIG. 1, FIG. 2 and FIG. 3, the personal data management system according to the first embodiment of the present invention is a system in which the user's personal data is not stored in the corresponding user terminal or a specific server, but is distributed and stored in The terminal of another person manages, when necessary, recovers personal data from the corresponding user terminal through multiple authentication steps, thereby not only greatly reducing the possibility of being invaded by the hacker, but also preventing the case of losing the corresponding user terminal. The information was leaked.

即,本發明第一實施例的個人資料管理系統為如下的系統,即,未將使用者所要儲存的整體資料統一儲存於一個儲存單元,而是將整體資料分割成多個來進行分散儲存,從而即使一個儲存單元被駭客入侵,也不必擔心相應資料被洩露。That is, the personal data management system of the first embodiment of the present invention is a system in which the entire data to be stored by the user is not stored in a single storage unit, but the entire data is divided into a plurality of pieces for distributed storage. Thus, even if a storage unit is invaded by a hacker, there is no need to worry about the corresponding data being leaked.

更加詳細地, 本發明第一實施例的個人資料管理系統包括:使用者終端2,其安裝有個人資料管理應用程式6,所述個人資料管理應用程式6通過使用者的認證來驅動,作為使用者在使用者的個人電話號碼簿提取而形成的資料儲存對象組,將使用者選擇的特定資料自動分離成多個,分散傳送給從資料管理伺服器10傳送的特定識別碼的多個使用者終端2,根據使用者的恢復指令,使相應的分散資料聚合並恢復;資料管理伺服器10,其儲存所述安裝了個人資料管理應用程式6的使用者終端的識別資訊,從所述使用者終端2接收使用者在使用者的個人電話號碼簿提取而形成的資料儲存對象組資訊並登記,接入資料分散信號並進行處理,以便向屬於相應資料儲存對象組的他人的終端傳送分散資料並儲存。In more detail, the personal data management system of the first embodiment of the present invention includes: a user terminal 2 to which a personal data management application 6 is installed, and the personal data management application 6 is driven by the user's authentication as a use. The data storage object group formed by the user's personal telephone directory is automatically separated into a plurality of specific data selected by the user, and distributed to a plurality of users of the specific identification code transmitted from the material management server 10. The terminal 2 aggregates and restores the corresponding distributed data according to the user's recovery instruction; the data management server 10 stores the identification information of the user terminal on which the personal data management application 6 is installed, from the user The terminal 2 receives the data storage object group information formed by the user in the user's personal telephone directory and registers, accesses the data dispersion signal and processes the data to transmit the distributed data to the terminal of the other person belonging to the corresponding data storage object group. Store.

在此情況下,可將上述使用者終端2分為資料分割及恢復用使用者終端2和儲存用使用者終端2。上述資料分割及恢復用使用者終端2用於儲存分割之前的原始資料4,並通過實際分割相應的原始資料4來向額外的儲存單元傳送被分割的資料,並且使重新被分割的資料恢復為原始資料4,上述儲存用使用者終端2用於對從上述使用者終端2傳送的分割資料8進行儲存。In this case, the user terminal 2 can be divided into a user terminal 2 for data division and restoration and a user terminal 2 for storage. The above-mentioned data dividing and recovering user terminal 2 is configured to store the original data 4 before the division, and transmit the divided data to the additional storage unit by actually dividing the corresponding original data 4, and restore the re-segmented data to the original data. In the data 4, the storage user terminal 2 is configured to store the divided material 8 transmitted from the user terminal 2.

即,通過在上述使用者終端2的內部設置個人資料管理應用程式6,從而可以執行資料的分割及傳送,也可接收並儲存被分割的資料,也可恢復被分割的資料。That is, by providing the personal data management application 6 in the user terminal 2, it is possible to perform division and transmission of data, and it is also possible to receive and store the divided material, and to restore the divided material.

因此,上述使用者終端2無需非要按其功能實施分類,但為了便於說明,以分割的方式傳送資料,通過對用於恢復重新被分割的資料的使用者終端2賦予額外的代碼(例,A001)來示出,並且也對通過接收被分割的資料來分別進行儲存的使用者終端2賦予額外的代碼(例,B001、C001、D001、E001)來示出。Therefore, the user terminal 2 does not need to perform classification according to its function, but for convenience of explanation, the data is transmitted in a divided manner, and an additional code is given to the user terminal 2 for restoring the re-segmented material (for example, A001) is shown, and an additional code (for example, B001, C001, D001, E001) is also given to the user terminal 2 that stores the divided data by receiving it.

並且,以下,為了便於說明,將被賦予A001代碼的使用者終端2命名為第一使用者終端2-1,將被賦予B001~E001代碼的使用者終端2命名為第二使用者終端2-2。In the following, for convenience of explanation, the user terminal 2 to which the A001 code is given is named as the first user terminal 2-1, and the user terminal 2 to which the B001 to E001 code is given is named as the second user terminal 2 - 2.

使用者通過第一使用者終端2-1搭載的所述個人資料管理應用程式6,作為分散儲存特定資料的對象,在個人電話號碼簿中選擇多個電話號碼,該選擇電話號碼資訊傳送給所述資料管理伺服器10。The user accesses the personal data management application 6 carried by the first user terminal 2-1 as a target for distributing and storing specific data, and selects a plurality of telephone numbers in the personal telephone directory, and the selected telephone number information is transmitted to the office. The data management server 10 is described.

因此,在上述資料管理伺服器10儲存有與用於儲存分割資料的儲存對象有關的資訊,其中,儲存對象表示上述第二使用者終端2-2。Therefore, the above-described material management server 10 stores information relating to a storage object for storing divided data, wherein the storage object indicates the second user terminal 2-2.

並且,在上述資料管理伺服器10儲存有作為分割資料儲存對象終端的多個第二使用者終端2-2的識別資訊,將多個第二使用者終端2-2中一部分識別資訊的第二使用者終端2-2與所述第一使用者終端2-1共用。Further, the data management server 10 stores the identification information of the plurality of second user terminals 2-2 as the divided data storage target terminals, and the second identification information of the plurality of second user terminals 2-2. The user terminal 2-2 is shared with the first user terminal 2-1.

由此,包含於本發明第一實施例的個人資料管理系統中的上述資料管理伺服器10不對上述第一使用者終端2-1所要儲存的一個分割資料進行儲存,而僅僅擁有與儲存有相應分割資料的終端有關的資訊,因而即使被駭客所非法入侵,也防止駭客確保使用者的資料。Therefore, the data management server 10 included in the personal data management system of the first embodiment of the present invention does not store a piece of divided data to be stored by the first user terminal 2-1, but only has a corresponding storage. The information about the terminal that divides the data, so that even if the hacker illegally invades, the hacker is prevented from securing the user's data.

另一方面,在上述第一使用者終端2-1儲存有例如從整體原始資料4中被分割的一部分分割資料8(例如,D-1),由於僅儲存有作為儲存有多個分割資料的儲存對象的第二使用者終端2-2(例,B001、C001、D001、E001……)的識別資訊,因而即使被駭客入侵,也可使駭客僅確保使用者所要隱藏的資料的一部分分割資料。On the other hand, the first user terminal 2-1 stores, for example, a part of the divided material 8 (for example, D-1) divided from the entire original material 4, since only a plurality of divided materials are stored as stored. The identification information of the second user terminal 2-2 (for example, B001, C001, D001, E001, ...) of the storage object, so that even if the hacker invades, the hacker can only ensure a part of the data to be hidden by the user. Split the data.

即,設置於上述第一使用者終端2-1的上述個人資料管理應用程式6使被分割的多個資料中的一個資料儲存於相應的第一使用者終端2-1,並使其他資料儲存於具有特定識別碼的多個使用者終端2,即,使其他資料分散儲存於第二使用者終端2-2。That is, the personal data management application 6 provided in the first user terminal 2-1 stores one of the divided plurality of materials in the corresponding first user terminal 2-1, and stores other data. The plurality of user terminals 2 having the specific identification code, that is, the other data are distributed and stored in the second user terminal 2-2.

在此情況下,用於儲存分散資料的上述多個第二使用者終端2-2為伺服器、個人電腦或無線終端中的一種。In this case, the plurality of second user terminals 2-2 for storing the distributed material are one of a server, a personal computer, or a wireless terminal.

並且,在用於分割儲存上述原始資料4的一個第二使用者終端2-2(例,B001)儲存有一部分分割資料8(例如,D-3),在一個第二使用者終端2-2(例,C001)儲存有一部分分割資料8(例如,D-2),在一個第二使用者終端2-2(例,D001)儲存有一部分分割資料8(例如,D-5),在一個第二使用者終端2-2(例,E001)儲存有一部分分割資料8(例如,D-4),因而同樣地,即使一個上述第二使用者終端2被駭客入侵,也可使駭客僅確保一部分分割資料。And, a second user terminal 2-2 (for example, B001) for dividing and storing the original material 4 stores a part of the divided material 8 (for example, D-3) at a second user terminal 2-2. (Example, C001) A part of the divided material 8 (for example, D-2) is stored, and a part of the divided material 8 (for example, D-5) is stored in a second user terminal 2-2 (eg, D001), in one The second user terminal 2-2 (for example, E001) stores a part of the divided material 8 (for example, D-4), and thus, even if one of the second user terminals 2 is invaded by the hacker, the hacker can be made. Only ensure that a portion of the data is split.

尤其,由於多個使用者資料通常儲存於一個伺服器,因而當駭客入侵時,駭客可獲得相當於入侵所花費的努力相應的代價,但在本發明中,即使駭客入侵上述資料管理伺服器10,在上述資料管理伺服器10中根本未儲存有駭客可獲得的原始資料4,而所要獲得一個人的資料,則需要入侵不計其數的使用者終端2,因而現實上幾乎不存在駭客可獲得的代價。In particular, since a plurality of user profiles are usually stored in one server, when the hacker invades, the hacker can obtain a corresponding cost corresponding to the effort spent on the intrusion, but in the present invention, even if the hacker invades the above data management The server 10 does not store the original data 4 available to the hacker in the above-mentioned data management server 10. However, if a person's data is to be obtained, it is necessary to invade countless user terminals 2, and thus there is almost no reality. The price that hackers can get.

另一方面,與收發普通通訊資料時相同地,本發明第一實施例的個人資料管理系統中,向通過分散資料來傳送的上述使用者終端2與上述資料管理伺服器10之間以及向分散儲存資料的使用者終端2與上述資料管理伺服器10之間傳送的資料均為加密資料。On the other hand, in the personal data management system according to the first embodiment of the present invention, the user terminal 2 transmitted through the distributed data and the above-described material management server 10 are dispersed and dispersed in the same manner as when the ordinary communication data is transmitted and received. The data transmitted between the user terminal 2 storing the data and the above-described material management server 10 is encrypted data.

另一方面,優選地,假設一個第二使用者終端2-2被丟失或無法回應的情況,本發明第一實施例的個人資料管理系統設計成資料備份結構。On the other hand, preferably, the personal data management system of the first embodiment of the present invention is designed as a data backup structure assuming that a second user terminal 2-2 is lost or unresponsive.

即,安裝於上述第一使用者終端2-1的上述個人資料管理應用程式6向多個資料傳送對象的終端,例如,向上述第二使用者終端2-2傳送分割資料,並向作為備份對象的另一第二使用者終端2-2側傳送相同的分割資料來使上述分割資料備份儲存,當恢復資料時,若在規定時間內未能恢復特定分割資料,則通過備份資料執行恢復處理。In other words, the personal data management application 6 installed in the first user terminal 2-1 transmits the divided data to the terminal of the plurality of data transfer destinations, for example, to the second user terminal 2-2, and serves as a backup. The other second user terminal 2-2 side of the object transmits the same divided data to back up and store the divided data. When the data is restored, if the specific divided data cannot be restored within the predetermined time, the recovery processing is performed by the backup data. .

因此,在設置於上述第一使用者終端2-1的上述個人資料管理應用程式6分別儲存有用於儲存分割資料的上述第二使用者終端2-2的識別資訊和用於儲存備份資料的上述第二使用者終端2-2的識別資訊。Therefore, the personal data management application 6 installed in the first user terminal 2-1 stores identification information of the second user terminal 2-2 for storing the divided data and the above-mentioned storage data for storing the backup data. Identification information of the second user terminal 2-2.

圖4為示出包含於本發明第一實施例的個人資料管理系統的個人資料管理應用程式的驅動的框結構圖。4 is a block diagram showing the driving of a personal data management application included in the personal data management system of the first embodiment of the present invention.

參照圖4,在上述個人資料管理應用程式6的內部包括:通訊模組20,用於與分散儲存資料的多個使用者終端2及資料管理伺服器10進行通訊;使用者認證部22,通過個人識別資訊認證對使用者進行認證;以及儲存對象資訊請求部24,用於自動向上述資料管理伺服器10請求需要分散儲存資料的儲存對象資訊。Referring to FIG. 4, the personal data management application 6 includes a communication module 20 for communicating with a plurality of user terminals 2 and a data management server 10 that store data; the user authentication unit 22 passes The personal identification information authentication authenticates the user; and the storage object information requesting unit 24 is configured to automatically request the data management server 10 to store the storage object information that needs to be distributed.

並且,在上述個人資料管理應用程式6的內部包括:資料分割處理部28,用於對使用者所選的特定資料進行分割處理;加密/解碼處理部32,用於對進行通訊的資料實施加密及解碼;資料儲存部34,用於對被分割處理的資料中的一部分資料進行儲存,並對儲存有被分割處理的資料的儲存對象資訊進行儲存;以及控制部36,通過分割特定資料來儲存其中的一部分資料,並向多個資料儲存對象終端傳送其他資料來使上述其他資料得到分散儲存,當恢復資料時,上述控制部36通過向相應的儲存對象終端側傳送特定資料的傳送請求信號來進行恢復。Further, the personal data management application 6 includes a data division processing unit 28 for performing segmentation processing on specific data selected by the user, and an encryption/decoding processing unit 32 for encrypting the data to be communicated. And a data storage unit 34 for storing a part of the data to be divided and storing the stored object information storing the divided data; and the control unit 36 storing the specific data by dividing A part of the data is transmitted to the plurality of data storage target terminals to cause the other data to be stored in a distributed manner. When the data is restored, the control unit 36 transmits a transmission request signal of the specific data to the corresponding storage target terminal side. Carry out recovery.

參照附圖,對上述結構的本發明第一實施例的個人資料管理系統的功能和作用進行詳細說明。The function and effect of the personal data management system of the first embodiment of the present invention structured as described above will be described in detail with reference to the accompanying drawings.

圖5為示出本發明第一實施例的個人資料管理系統的信號流動的流程圖。Fig. 5 is a flow chart showing signal flow of the personal data management system of the first embodiment of the present invention.

首先,具有包含於本發明第一實施例的個人資料管理系統的使用者終端2,例如,具有上述第一使用者終端2-1的使用者為了以分散的方式儲存特定資料而驅動上述個人資料管理應用程式6,並通過輸入密碼等個人認證資訊來實施認證。First, the user terminal 2 having the personal data management system according to the first embodiment of the present invention, for example, the user having the first user terminal 2-1 drives the personal data in order to store specific materials in a distributed manner. Manage application 6 and implement authentication by entering personal authentication information such as passwords.

若成功通過認證,則上述個人資料管理應用程式6對資料分散模式是否被選擇進行判斷。If the authentication is successful, the personal data management application 6 determines whether the data dispersion mode is selected.

在資料分散模式被選的情況下,上述個人資料管理應用程式6對與特定資料有關的分散選擇信號是否被施加進行判斷。In the case where the data distribution mode is selected, the personal data management application 6 judges whether or not the distributed selection signal related to the specific material is applied.

選擇特定資料後,所述個人資料管理應用程式6判斷是否從內部的個人電話號碼簿接入了選擇成為資料傳送對象的電話號碼的信號。即,使用者在個人電話號碼簿中選擇用於儲存被分割資料的儲存對象的識別資訊。After selecting the specific material, the personal data management application 6 judges whether or not the signal for selecting the telephone number to be the data transfer target is accessed from the internal personal telephone directory. That is, the user selects the identification information of the storage object for storing the divided material in the personal directory.

並且,上述個人資料管理應用程式6按規定數量對相應資料進行分割處理,從而以任意匹配的方式向作為資料傳送對象終端的第二使用者終端2-2傳送各個分割資料。Further, the personal data management application 6 divides the corresponding data by a predetermined number to transmit the respective divided data to the second user terminal 2-2 as the data transfer target terminal in an arbitrary matching manner.

在此情況下,上述個人資料管理應用程式6向額外的資料備份對象終端傳送被分割的備份資料。In this case, the personal data management application 6 transmits the divided backup data to the additional data backup target terminal.

即,安裝於上述第一使用者終端2-1的上述個人資料管理應用程式6向多個資料傳送對象的終端,例如,向上述第二使用者終端2-2傳送分割資料,並通過向作為備份對象的另一第二使用者終端2-2側傳送相同的分割資料來使上述分割資料得到備份儲存。In other words, the personal data management application 6 installed in the first user terminal 2-1 transmits the divided data to the terminal of the plurality of data transfer destinations, for example, to the second user terminal 2-2, and The other second user terminal 2-2 of the backup object transmits the same divided data to make the divided data backed up and stored.

所述資料管理伺服器10也可以根據特定使用者的請求而分割特定資料並儲存,但是,此時只限於相應使用者請求自動儲存時才儲存,該資料的儲存對象並非使用者選擇的,而是由所述資料管理伺服器10在允許資料儲存的不特定多數的第二使用者終端2-2中隨機提取,並傳送、儲存被分割的資料。The data management server 10 may also divide and store specific data according to a request of a specific user, but at this time, it is only stored when the corresponding user requests automatic storage, and the storage object of the data is not selected by the user, and The data management server 10 randomly extracts the second user terminal 2-2 that allows an unspecified majority of data storage, and transmits and stores the divided data.

另一方面,設置於上述第一使用者終端2-1的上述個人資料管理應用程式6對資料復原模式是否被選擇進行判斷,若接收到特定資料恢復信號,則上述個人資料管理應用程式6提取用於對相應資料的分割資料進行分散儲存的對象終端資訊,例如,提取第二使用者終端2-2的識別資訊。On the other hand, the personal data management application 6 provided in the first user terminal 2-1 determines whether the data restoration mode is selected, and if the specific data restoration signal is received, the personal data management application 6 extracts The target terminal information for performing the distributed storage of the divided data of the corresponding data, for example, extracting the identification information of the second user terminal 2-2.

並且,上述第一使用者終端2-1的個人資料管理應用程式6向相應資料儲存對象終端,例如,向第二使用者終端2-2發送資料傳送請求。Further, the personal data management application 6 of the first user terminal 2-1 transmits a material transfer request to the corresponding data storage target terminal, for example, to the second user terminal 2-2.

若完成對多個分割資料的接收,則上述個人資料管理應用程式6恢復原始資料。If the receiving of the plurality of divided materials is completed, the personal data management application 6 restores the original data.

在此情況下,若未在規定時間內從一部分上述第二使用者終端2-2接收到資料,則上述個人資料管理應用程式6提取相應資料的備份儲存對象終端資訊。In this case, if the data is not received from a part of the second user terminal 2-2 within the predetermined time, the personal data management application 6 extracts the backup storage target terminal information of the corresponding material.

並且,上述個人資料管理應用程式6通過向相應的備份儲存對象終端側請求資料傳送來恢復原始資料4。Further, the personal data management application 6 restores the original material 4 by requesting data transfer from the corresponding backup storage target terminal side.

另一方面,本發明實施例的個人資料管理系統及其管理方法並非僅局限於上述實施例,在不脫離其技術主旨的範圍內可以實施多種變更。On the other hand, the personal data management system and the management method thereof according to the embodiments of the present invention are not limited to the above-described embodiments, and various modifications can be made without departing from the spirit and scope of the invention.

2 使用者終端 2-1,2-2,2-3:第一使用者終端、第二使用者終端、第三使用者終端 4 原始資料 6 個人資料管理應用程式 8 分割資料 10 資料管理伺服器 20 通訊模組 22 使用者認證部 24 儲存對象資訊請求部 28 資料分割處理部 32 加密/解碼處理部 34 資料儲存部 36 控制部2 User terminal 2-1, 2-2, 2-3: first user terminal, second user terminal, third user terminal 4 original data 6 personal data management application 8 split data 10 data management server 20 communication module 22 user authentication unit 24 storage target information requesting unit 28 data dividing processing unit 32 encryption/decoding processing unit 34 data storage unit 36 control unit

圖1為示出本發明第一實施例的個人資料管理系統的結構的示意圖。 圖2為示出通過本發明第一實施例的個人資料管理系統來選定的資料儲存對象的選定狀態的圖。 圖3為示出通過本發明第一實施例的個人資料管理系統分割、儲存及恢復資料的狀態的圖。 圖4為示出包含於本發明第一實施例的個人資料管理系統的個人資料管理應用程式的驅動的框結構圖。 圖5為示出本發明第一實施例的個人資料管理系統的信號流動的流程圖。1 is a schematic view showing the configuration of a personal data management system of a first embodiment of the present invention. Fig. 2 is a view showing a selected state of a material storage object selected by the personal data management system of the first embodiment of the present invention. Fig. 3 is a view showing a state in which data is divided, stored, and restored by the personal data management system of the first embodiment of the present invention. 4 is a block diagram showing the driving of a personal data management application included in the personal data management system of the first embodiment of the present invention. Fig. 5 is a flow chart showing signal flow of the personal data management system of the first embodiment of the present invention.

Claims (15)

一種個人資料管理方法,其特徵在於,包括:步驟a,安裝於使用者終端(2)的個人資料管理應用程式(6)接收驅動信號;步驟b,上述個人資料管理應用程式(6)對資料分散選擇信號是否被施加進行判斷;步驟c,上述個人資料管理應用程式(6)基於使用者的選擇,從使用者終端(2)的個人電話號碼簿提取資料儲存對象,並對上述資料儲存對象進行分組;步驟d,上述個人資料管理應用程式(6)對特定資料的選擇信號是否被輸入進行判斷;步驟e,所述個人資料管理應用程式(6)將資料儲存對象組資訊傳送給資料管理伺服器(10);步驟f,所述資料管理伺服器(10)儲存所述資料儲存對象組資訊;步驟g,上述個人資料管理應用程式(6)按規定數量對相應資料進行分割處理;以及步驟h,將各分割資料任意匹配並傳送給資料儲存對象組終端側。 A personal data management method, comprising: step a, a personal data management application (6) installed in a user terminal (2) receives a driving signal; and step b, the personal data management application (6) pairs data Determining whether the decentralized selection signal is applied; in step c, the personal data management application (6) extracts a data storage object from the personal telephone directory of the user terminal (2) based on the user's selection, and stores the data storage object Performing grouping; step d, the personal data management application (6) determines whether a specific data selection signal is input; in step e, the personal data management application (6) transmits the data storage object group information to the data management a server (10); in step f, the data management server (10) stores the data storage object group information; and in step g, the personal data management application (6) divides the corresponding data according to a prescribed quantity; In step h, each divided data is arbitrarily matched and transmitted to the terminal side of the data storage object group. 根據請求項1所述的個人資料管理方法,其中,上述步驟g還包括上述個人資料管理應用程式(6)向額外的資料備份對象終端傳送被分割的備份資料的步驟。 The personal data management method according to claim 1, wherein the step g further comprises the step of the personal data management application (6) transmitting the divided backup data to the additional data backup target terminal. 根據請求項1所述的個人資料管理方法,其中,在上述步驟h之後還包括:步驟i,上述個人資料管理應用程式(6)對資料復原模式是否被選擇進行判斷; 步驟j,若接收到特定資料恢復信號,則上述個人資料管理應用程式(6)提取用於對相應資料的分割資料進行分散儲存的對象終端資訊;步驟k,上述個人資料管理應用程式(6)通過向相應的資料儲存對象終端發送資料傳送請求來接收資料;以及步驟1,若完成資料的接收,則上述個人資料管理應用程式(6)恢復資料。 The personal data management method according to claim 1, wherein after the step h further, the method further comprises: step i, the personal data management application (6) determining whether the data recovery mode is selected; Step j, if receiving a specific data recovery signal, the personal data management application (6) extracts target terminal information for performing distributed storage on the divided data of the corresponding data; step k, the personal data management application (6) Receiving data by transmitting a data transfer request to the corresponding data storage target terminal; and step 1, if the data is received, the personal data management application (6) recovers the data. 根據請求項3所述的個人資料管理方法,其中,在上述步驟1中還包括:若在規定時間內未從部分終端接收到資料,則上述個人資料管理應用程式(6)提取相應資料的備份儲存對象終端資訊的步驟;以及上述個人資料管理應用程式(6)向相應的備份儲存對象終端側發送資料傳送請求的步驟。 The personal data management method according to claim 3, wherein the step 1 further comprises: if the data is not received from the partial terminal within the predetermined time, the personal data management application (6) extracts the backup of the corresponding data. a step of storing the target terminal information; and the step of the personal data management application (6) transmitting a data transfer request to the corresponding backup storage target terminal side. 根據請求項3所述的個人資料管理方法,其中,在上述步驟i與步驟j之間還包括:步驟m,上述個人資料管理應用程式(6)向上述資料管理伺服器(10)傳送需要恢復的資料資訊並請求相應資料的認證使用者資訊;步驟n,上述資料管理伺服器(10)向相應的個人資料管理應用程式(6)傳送相應資料的認證使用者資訊;步驟o,上述個人資料管理應用程式(6)向相應的認證使用者的使用者終端(2)請求輸入個人認證資訊;以及步驟p,當在相應的認證使用者的使用者終端(2)中成功通過個人認證時,相應的認證使用者的使用者終端(2)向上述個人資料管理應用程式(6)傳送認證確認信號。 According to the personal data management method of claim 3, the step i and the step j further include: step m, the personal data management application (6) transmitting to the data management server (10) needs to be restored. The information information and request the authenticated user information of the corresponding data; in step n, the data management server (10) transmits the authenticated user information of the corresponding data to the corresponding personal data management application (6); step o, the above personal data The management application (6) requests the user terminal (2) of the corresponding authenticated user to input the personal authentication information; and the step p, when the personal authentication is successfully passed in the user terminal (2) of the corresponding authenticated user, The user terminal (2) of the corresponding authenticated user transmits an authentication confirmation signal to the personal data management application (6). 根據請求項5所述的個人資料管理方法,其中,上述步驟n為上述資料管理伺服器(10)通過簡訊或電子郵件向相應的個人資料管理應用程式(6)傳送認證使用者資訊的步驟。 The personal data management method according to claim 5, wherein the step n is a step of transmitting, by the data management server (10), the authentication user information to the corresponding personal data management application (6) by means of a short message or an email. 根據請求項5所述的個人資料管理方法,其中,上述步驟p中還包括:若從上述認證使用者的使用者終端(2)接收到認證失敗信號,則上述個人資料管理應用程式(6)向上述資料管理伺服器(10)傳送認證失敗資訊的步驟;若在預設時間內未接收到認證信號,則相應的個人資料管理應用程式(6)向上述資料管理伺服器(10)傳送新的認證使用者資訊的步驟;以及上述資料管理伺服器(10)向相應的個人資料管理應用程式(6)傳送新的認證使用者資訊的步驟。 The personal data management method according to claim 5, wherein the step p further comprises: if receiving an authentication failure signal from the user terminal (2) of the authenticated user, the personal data management application (6) The step of transmitting the authentication failure information to the data management server (10); if the authentication signal is not received within the preset time, the corresponding personal data management application (6) transmits the new data management server (10) to the data management server (10). And the step of authenticating the user information to the corresponding personal data management application (6). 根據請求項3所述的個人資料管理方法,其中,上述步驟1還包括:對在預設時間內是否接收到特定分割資料進行判斷的步驟;當未接收到特定分割資料時,對用於儲存備份資料的使用者終端資訊進行提取的步驟;以及上述個人資料管理應用程式(6)向用於儲存相應的備份資料的使用者終端(2)側請求傳送資料的步驟。 The personal data management method according to claim 3, wherein the step 1 further comprises: a step of determining whether a specific split data is received within a preset time; and when the specific split data is not received, the pair is used for storing a step of extracting user terminal information of the backup data; and the step of requesting the transfer of the data by the personal data management application (6) to the user terminal (2) side for storing the corresponding backup data. 根據請求項1所述的個人資料管理方法,其中,上述個人資料管理方法還包括在通過分割資料來進行傳送的傳送使用者終端(2-1)和試圖恢復被分割儲存的資料的接收使用者終端(2-3)互不相同的情況下,上述傳送使用者終端(2-1)向上述接收使用者終端(2-3)側傳送由傳送使用者終端(2-1)分割儲存的資料、接收到的認證資訊以及剩餘分割資料的儲存終端資訊的步驟。 The personal data management method according to claim 1, wherein the personal data management method further includes a transfer user terminal (2-1) transmitting by dividing the data and a receiving user attempting to restore the divided stored data. When the terminals (2-3) are different from each other, the transmitting user terminal (2-1) transmits the data divided and stored by the transmitting user terminal (2-1) to the receiving user terminal (2-3) side. The steps of receiving the authentication information and storing the terminal information of the remaining divided data. 一種個人資料管理系統,其特徵在於,包括:使用者終端(2),其安裝有個人資料管理應用程式(6),所述個人資料管理應用程式(6)通過使用者的認證來驅動,作為使用者在使用者的個人電話號碼簿提取而形成資料儲存對象組,將使用者選擇的特定資料自動分離成多個,分散傳送給從資料管理伺服器(10)傳送的特定識別碼的多個使用者終端(2),根據使用者的恢復指令,使相應的分散資料聚合並恢復;資料管理伺服器(10),其儲存所述安裝了個人資料管理應用程式(6)的使用者終端的識別資訊,從多個使用者終端(2)接入他人資料分散儲存允許信號,登記相應識別資訊,且當從所述使用者終端(2)接收自動資料分散請求信號時,基於所述使用者終端(2)傳送的資料儲存對象組資訊,對應所述自動資料分散請求信號進行資料分散,並將分散資料傳送給屬於所述資料儲存對象組的他人終端,以儲存所述分散資料,且其中,所述個人資料管理應用程式(6)在其內部還包括儲存對象分組處理部,所述儲存對象分組處理部從使用者終端(2)中構成的個人電話號碼簿接入指定資料儲存對象的電話號碼的信號,提取相應電話號碼並分組。 A personal data management system, comprising: a user terminal (2) installed with a personal data management application (6), and the personal data management application (6) is driven by a user's authentication as The user extracts the user's personal telephone directory to form a data storage object group, and automatically separates the specific data selected by the user into a plurality of pieces, and distributes them to a plurality of specific identification codes transmitted from the data management server (10). The user terminal (2) aggregates and restores the corresponding distributed data according to the user's recovery instruction; the data management server (10) stores the user terminal of the personal data management application (6) Identifying information, accessing other people's data from the plurality of user terminals (2) to store the permission information, registering the corresponding identification information, and when receiving the automatic data distribution request signal from the user terminal (2), based on the user The data storage object group information transmitted by the terminal (2) is distributed according to the automatic data distribution request signal, and the distributed data is transmitted to the data storage belonging to the data storage a other terminal of the object group to store the distributed data, and wherein the personal data management application (6) further includes a storage object packet processing unit therein, the storage object group processing unit from the user terminal (2) The personal telephone directory formed in the database is connected to the signal of the telephone number of the specified data storage object, and the corresponding telephone number is extracted and grouped. 根據請求項10所述的個人資料管理系統,其中,在通過分散資料來傳送的上述使用者終端(2)與上述資料管理伺服器(10)之間以及在分散儲存資料的使用者終端(2)與上述資料管理伺服器(10)之間傳送的資料均為加密資料。 The personal data management system according to claim 10, wherein the user terminal (2) transmitted by the distributed material and the material management server (10) and the user terminal (2) storing the data are distributed (2) The data transmitted between the above data management server (10) is encrypted data. 根據請求項10所述的個人資料管理系統,其中,上述個人資料管理應用程式(6)使被分割的多個資料中的一個資料儲存於相應的使用者終端(2),使其他資料分散儲存於具有特定識別碼的多個使用者終端(2)。 The personal data management system according to claim 10, wherein the personal data management application (6) stores one of the plurality of divided materials in the corresponding user terminal (2) to make other data dispersed. A plurality of user terminals (2) having a specific identification code. 根據請求項10所述的個人資料管理系統,其特徵在於,在上述個人資料管理應用程式(6)的內部包括:通訊模組(20),用於與分散儲存資料的多個使用者終端(2)及資料管理伺服器(10)進行通訊;使用者認證部(22),通過個人識別資訊認證對使用者進行認證;儲存對象資訊請求部(24),用於自動向上述資料管理伺服器(10)請求需要分散儲存資料的儲存對象資訊;資料分割處理部(28),用於對使用者所選的特定資料進行分割處理;加密/解碼處理部(32),用於對進行通訊的資料實施加密及解碼;資料儲存部(34),用於對被分割處理的資料中的一部分資料進行儲存,並對儲存有各個被分割處理的資料的儲存對象資訊進行儲存;以及控制部(36),通過分割特定資料來儲存其中的一部分資料,並向多個資料儲存對象終端傳送其他資料來使上述其他資料得到分散儲存,當恢復資料時,上述控制部(36)通過向相應的儲存對象終端側傳送特定資料的傳送請求信號來進行恢復。 The personal data management system according to claim 10, wherein the personal data management application (6) includes: a communication module (20) for sharing a plurality of user terminals for storing data ( 2) communicating with the data management server (10); the user authentication unit (22) authenticating the user by personal identification information authentication; and storing the object information requesting unit (24) for automatically reporting to the data management server (10) requesting storage object information that needs to be distributed to store data; a data segmentation processing unit (28) for performing segmentation processing on specific data selected by the user; and an encryption/decoding processing unit (32) for communicating The data is encrypted and decoded; the data storage unit (34) is configured to store a part of the data to be divided and stored, and store the storage object information in which the divided data is stored; and the control unit (36) ), by dividing a specific data to store a part of the data, and transmitting other materials to a plurality of data storage target terminals to enable the above-mentioned other materials to be distributed and stored. When the control unit (36) to restore request signal by transmitting the specific data is transmitted to the terminal side of the corresponding object store. 根據請求項13所述的個人資料管理系統,其中,上述個人資料管理應用程式(6)向多個資料傳送對象的終端傳送分割資料,並通過向作為備份對象的終端側傳送相同的分割資料來使上述相同的分割資料得到備份儲存,當恢復資料時,若特定的分割資料在規定時間內未得到恢復,則上述個人資料管理應用程式(6)通過備份資料來進行恢復處理。 The personal data management system according to claim 13, wherein the personal data management application (6) transmits the divided data to the terminals of the plurality of data transfer destinations, and transmits the same divided data to the terminal side as the backup target. The same divided data is backed up and stored. When the data is restored, if the specific divided data is not restored within the specified time, the personal data management application (6) performs recovery processing by backing up the data. 根據請求項13所述的個人資料管理系統,其中,上述資料管理伺服器(10)在資料被分散儲存時對在恢復特定資料時需要認證的單一認證使用 者資訊進行註冊,當上述個人資料管理應用程式(6)請求恢復資料時,上述資料管理伺服器(10)向個人資料管理應用程式(6)提供相應的認證使用者資訊。 The personal data management system according to claim 13, wherein the data management server (10) uses a single authentication that requires authentication when recovering specific data when the data is distributed and stored. The information is registered, and when the personal data management application (6) requests to restore the data, the data management server (10) provides the corresponding authentication user information to the personal data management application (6).
TW106116435A 2017-05-18 2017-05-18 Private data management system and method therefor TWI650665B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
TW106116435A TWI650665B (en) 2017-05-18 2017-05-18 Private data management system and method therefor

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
TW106116435A TWI650665B (en) 2017-05-18 2017-05-18 Private data management system and method therefor

Publications (2)

Publication Number Publication Date
TW201901504A TW201901504A (en) 2019-01-01
TWI650665B true TWI650665B (en) 2019-02-11

Family

ID=65803402

Family Applications (1)

Application Number Title Priority Date Filing Date
TW106116435A TWI650665B (en) 2017-05-18 2017-05-18 Private data management system and method therefor

Country Status (1)

Country Link
TW (1) TWI650665B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP3951630A4 (en) * 2019-04-01 2022-11-02 Satori Electric Co., Ltd. Data restoration device, data management server, data management system, and data restoration method, and program

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7669051B2 (en) * 2000-11-13 2010-02-23 DigitalDoors, Inc. Data security system and method with multiple independent levels of security
CN106687982A (en) * 2014-08-18 2017-05-17 南基元 Private data management system and method therefor

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7669051B2 (en) * 2000-11-13 2010-02-23 DigitalDoors, Inc. Data security system and method with multiple independent levels of security
CN106687982A (en) * 2014-08-18 2017-05-17 南基元 Private data management system and method therefor

Also Published As

Publication number Publication date
TW201901504A (en) 2019-01-01

Similar Documents

Publication Publication Date Title
US11652608B2 (en) System and method to protect sensitive information via distributed trust
US11943350B2 (en) Systems and methods for re-using cold storage keys
US20230239289A1 (en) Token based one-time password security
CN106687982B (en) Personal data management system and management method thereof
EP3937040B1 (en) Systems and methods for securing login access
EP3494662B1 (en) Method for storing data blocks from client devices to a cloud storage system
EP3185465A1 (en) A method for encrypting data and a method for decrypting data
JP2021536166A (en) Verification of peer identification information
CN108121904B (en) Unlocking method, device, electronic equipment and server
CN113726515B (en) UKEY-based key processing method, storage medium and electronic device
JP2018073064A (en) File division / combination system and method
CN111008400A (en) Data processing method, device and system
TWI650665B (en) Private data management system and method therefor
CN104935606A (en) Terminal login method in cloud computing network
CN114598478B (en) Data encryption method, device, electronic equipment and storage medium
CN104935607A (en) Login certification method in cloud computing network
CN117997519A (en) Data processing method, apparatus, program product, computer device, and medium
CN115964724A (en) Data processing method and device and electronic equipment
CN112232806A (en) A blockchain private key management method, device, equipment and medium
CN118400108A (en) Conference encryption method and device, electronic equipment and storage medium
KR20230108155A (en) Method for saving to distribution data employing image value deciding based in CNN and blockchain driving
CN120433976A (en) Fully encrypted database key management method and device, electronic device, and storage medium
JP2003044342A (en) Data leakage prevention system, its input/output terminal and data transmitting method in internet communication
TW201947434A (en) Application login method

Legal Events

Date Code Title Description
MM4A Annulment or lapse of patent due to non-payment of fees