Decentralized Data Protection System For Public Institutions

Xingzou Liu, Kangqian Cao, Chaobing Wang, Runzhi Zheng, Liguo Fang · 2022

In companies internal communication, most staff will use penetration of high communication tools such as QQ, Wechat. Most of this kind of communication tools are based on AES, RSA, encryption process handled by the backend server, Such software can view the messages and files sent and transferred by users, but within the confidential file cannot allow the situation to exist. In view of the appeal, the data protection system, namely fine granularity permission management, is proposed. On this basis, an application tool integrating encryption decentralized real-time communication and data security storage is realized. This system is based on the Django framework to complete the construction of communication, storage function, this system is mainly divided into two modules, the first module is decentralized encryption communication module, the proposed system provides identity authentication function, user decentralized encryption real-time communication, to ensure the communication information is not outside the attacker or system developers to obtain; The second module is cloud storage service module, cloud storage technology as the core, for file transfer of decentralized communication and data storage services, and cloud storage in the database files will be combined with fine granularity rights management function, the user can undertake the level set to other users and one-way level set of file, In this way, you can control the range of files in the cloud storage database. Based on blockchain technology, blockchain will replace traditional third-party servers, so as to complete decentralized integrity authentication. In this system, encryption-related content will not be generated by the back-end server, and key information and other important information will not enter the database based on the idea of decentralization, while ciphertext transmission and encrypted ciphertext information storage are provided by the cloud storage server. Based on the idea of decentralization, this system can be completed under the circumstance that the data is not leaked when the cloud database is invaded. All the encryption algorithms of the system use the national secret algorithm to achieve decentralized secure real-time communication, integrity authentication and fine granularity permission management.

Read the paper · More papers on PaperTik