吉林大学学报(信息科学版) ›› 2026, Vol. 44 ›› Issue (1): 152-159.

• • 上一篇    下一篇

智能合约优化下电商网站访问权限控制机制算法设计

杨建南   

  1. 福建信息职业技术学院 商贸管理学院, 福建 平和 350012
  • 收稿日期:2025-06-06 出版日期:2026-01-31 发布日期:2026-02-04
  • 作者简介:杨建南(1979— ), 男, 福建平和人, 福建信息职业技术学院讲师, 主要从事计算机网络安全研究, (Tel)86-15880088807 (E-mail)msld_top@ 126. com
  • 基金资助:
    福建省自然科学基金资助项目(2023J011117) 

Algorithm Design for Access Control Mechanism of E-Commerce Websites under Smart Contract Optimization

YANG Jiannan    

  1. School of Commerce and Trade Management, Fujian Information Technology College, Pinghe 3500012, China
  • Received:2025-06-06 Online:2026-01-31 Published:2026-02-04

摘要: 针对目前电商网站访问权限控制方法安全性较差, 非法用户能直接访问电商网站, 导致单位时间内系统 成功处理的交易数量较少、 电商网站访问用户数异常多的问题, 设计了智能合约优化下电商网站访问权限控制 机制算法。 设计电商网站访问权限控制智能合约优化架构, 在初始化、 加密、 解密、 签名、 验证和访问阶段部 署智能合约。 使用临时对称密钥解密电商用户数据密文, 获得电商用户个人数据, 结合基于非交互零知识证明 的认证方式获取电商用户发送的信息。 根据电商网站的第 1 级安全认证口令, 恢复一个以太坊地址, 并通过信 用度模糊层分析结果, 控制电商网站访问权限。 实验结果表明, 该算法成功处理的交易数量最大为 12x 10? bit / s, 最小为 5x 10? bit / s, 且能有效控制用户访问权限。

关键词: 智能合约优化, 电商网站, 访问权限, 控制机制, 非交互零知识证明

Abstract: The current access permission control methods for e-commerce websites are not secure. Illegal users can directly access e-commerce websites, resulting in a relatively small number of transactions successfully processed by the system within a unit of time and an abnormally large number of users accessing e-commerce websites. To solve this problem, an algorithm for the access permission control mechanism of e-commerce websites under the optimization of smart contracts is designed. The optimized architecture of the smart contract for controlling the access rights of e-commerce websites is designed, and the smart contract in the initialization stage, encryption stage, decryption stage, signature stage, verification stage and access stage is deployed. The ciphertext of e-commerce user data is decrypted using a temporary symmetric key to obtain the personal data of e-commerce users, and the information sent by e-commerce users is obtained by combining the authentication method based on non-interactive zero-knowledge proof. Based on the first-level security authentication password of the e-commerce website, an Ethereum address is restored and the access rights of the e-commerce website is controlled through the credit fuzzy layer analysis results. It can be known from the experimental results that the maximum number of transactions successfully processed by this algorithm is 12 x 10? bit / s and the minimum is 5x 10? bit / s, and it can effectively control the user access rights. 

Key words: smart contract optimization, e-commerce websites, access permissions, control mechanism, non interactive zero knowledge proof

中图分类号: 

  • TP391