Movatterモバイル変換


[0]ホーム

URL:


CN106330819B - Password information security storage method and password manager based on SIM card information - Google Patents

Password information security storage method and password manager based on SIM card information
Download PDF

Info

Publication number
CN106330819B
CN106330819BCN201510345430.1ACN201510345430ACN106330819BCN 106330819 BCN106330819 BCN 106330819BCN 201510345430 ACN201510345430 ACN 201510345430ACN 106330819 BCN106330819 BCN 106330819B
Authority
CN
China
Prior art keywords
password
sim card
user
encrypted message
unique identification
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201510345430.1A
Other languages
Chinese (zh)
Other versions
CN106330819A (en
Inventor
崔晓瑜
汤帜
俞银燕
吕肖庆
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China news publishing research institute
Peking University
Original Assignee
China news publishing research institute
Peking University
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China news publishing research institute, Peking UniversityfiledCriticalChina news publishing research institute
Priority to CN201510345430.1ApriorityCriticalpatent/CN106330819B/en
Publication of CN106330819ApublicationCriticalpatent/CN106330819A/en
Application grantedgrantedCritical
Publication of CN106330819BpublicationCriticalpatent/CN106330819B/en
Activelegal-statusCriticalCurrent
Anticipated expirationlegal-statusCritical

Links

Classifications

Landscapes

Abstract

The present invention relates to a kind of encrypted message method for secure storing and code management device based on SIM card information.This method is suitable for inclusion in the electronic device of SIM card, and step includes: 1) to check the validity of SIM card in electronic device;2) for effective SIM card, the unique identification information of SIM card is extracted;3) encrypted message of the unique identification information of SIM card and the Internet resources of user is bound;4) binding result that step 3) generates is locally stored.The code management device includes password acquisition module, Password Management module, cryptographic binding module and password solution binding module.The Internet resources encrypted message of user and SIM card information are carried out hardware binding and have ensured the safety of user password information well while providing easy-to-use Password management services for user by the present invention.

Description

Encrypted message method for secure storing and code management device based on SIM card information
Technical field
The invention belongs to technical field of network security, and in particular to a kind of encrypted message based on SIM card information is deposited safelyMethod for storing and a kind of code management device, are suitable for inclusion in the electronic device of SIM card, such as smart phone.
Background technique
Currently, well known network resource security mostly uses the mode of " user name+password " to ensure the safety of user informationProperty, but becoming increasingly popular with network, people are also become increasingly abundant and are increased to the use of Internet resources, it is followed by that netThe problem of management of network resource password.If the Internet resources password of user is all consistent, there will be user information " single-point breakthrough "Security risk;, whereas if user uses different Internet resources passwords, then there are problems that password is not easy to remember more again.
To solve the above-mentioned problems, mainly there are two big schemes at present, one is online code management devices, such as LastPass.The characteristics of this scheme is in the all-network resource password storage to server by user, and user need to only remember a main password, it is responsible for automatically generating and remember the password of heterogeneous networks resource by code management device, and Auto-writing is to login interface.ThisAlthough kind scheme solves the problem of management of numerous passwords, what different Internet resources passwords was also randomly generated, security intensityIt is relatively high, but due to being centralized management mode, so being easily subject to hacker attack, equally exist the wind of " single point failure "Danger.And it is also often to suffer from a problem that whether user, which trusts cloud server,.Second scheme is offline cryptogram managementDevice, such as KeePass.This kind of code management device is in the password of local preservation management user, and there is no users whether to trust cloudThe problem of server.And popularizing with mobile Internet, many common offline cryptogram managers are all proposed intelligent handMachine version, solves the cross-platform ease of use issues of code management device, but encrypted message mobile phone local storage problem withAnd secure access problem is the weak spot of this kind of scheme.The high private information of many users is bundled on smart phone at present,Such as bank card, payment information and above-mentioned Internet resources encrypted message.How to pacify on smart phone for this category informationHow full storage, prevent from being cracked after being obtained by illegal user from malicious, and current universal method is " soft binding ", is exactly using softPart generates key by itself, is then responsible for the safety for itself using resource information using Encryption Algorithm.But this modeSecurity intensity is not high in face of current numerous Brute Force softwares.In addition, being the positioning service using mobile phone there are also a kind of mode(" the iPhone application program for searching me " of such as apple and " the Android device manager " of Google) solves smart phoneThe safety of the data stored on mobile phone after loss, but the premise of this method is to need mobile phone moment for losing online just can be withIt completes, does not prevent reading of the illegal user to sensitive data file on mobile phone at all.
Summary of the invention
The present invention provides it is a kind of suitable for smart phone etc. include SIM card electronic device based on SIM card informationUser password information method for secure storing and a kind of code management device.It is being supplied to user's Password Management clothes easy to useWhile business, encrypted message storage file and SIM card unique identification are subjected to " hard binding ", allowed in this way even if someone's maliceEncrypted message storage file is obtained, can not also crack this document to obtain related clear data encrypted message.Meanwhile close using thisWhen code manager, also to check whether the SIM card of current smart phone is effective first, be allowed in this way when user's lost mobile phoneAfterwards, the ineffectivity of the code management device on lost mobile phone can be ensured by reporting the loss the SIM card of oneself in time, to reachProtect the safety of itself encrypted message.
Specifically, The technical solution adopted by the invention is as follows:
A kind of user password information method for secure storing based on SIM card information, is suitable for inclusion in the electronic device of SIM card(such as smart phone), includes the following steps:
1) validity of SIM card in the electronic device is checked;
2) for effective SIM card, the unique identification information of SIM card is extracted;
3) encrypted message of the unique identification information of SIM card and the Internet resources of user is bound;
4) binding result that step 3) generates is locally stored.
Further, step 3) is encrypted when binding the encrypted message of the unique identification information of SIM card and userOperation generates ciphertext password, and network resource identifier and corresponding ciphertext code data is carried out write-in file operation, is formedEncrypted message file simultaneously stores.
Further, in the user password of user query Internet resources, pass through encrypted message file checking user firstWhether the network resource identifier of input is effective, and it is right to extract network resource identifier institute from encrypted message file if effectivelyThe ciphertext password answered;Then the unique identifier for extracting SIM card carries out solution binding solution to ciphertext password using the unique identifierClose operation obtains clear-text passwords, and the clear-text passwords is returned to user query interface.
A kind of code management device based on SIM card information using the above method, is suitable for inclusion in the electronic device of SIM card(such as smart phone), as shown in Figure 1, including password acquisition module, Password Management module, cryptographic binding module and password unbundlingsThe workflow of cover half block, each module is as follows:
(1) check whether current SIM card is effective
Whether whether the SIM card that the Password Management module check of code management device is current can be used, i.e., can be in mobile networkOn communicated.If it is valid, normally entering code management device;Otherwise prompt user's SIM card is illegal, cannot use password pipeManage device.
(2) the Internet resources encrypted message of user is collected
The identifier for each Internet resources that user needs to record by the interface input of code management device is used with correspondingFamily password, these information are arranged by password acquisition module and are sent to Password Management module with certain format.
(3) user bound Internet resources encrypted message
After Password Management module receives password relevant information data, the code data of wherein each Internet resources is extracted, it willThese code datas pass to cryptographic binding module.
Cryptographic binding module receives after binding data, extracts the unique identification information of current smart phone SIM card, soBinding cryptographic operation is carried out using the unique identification information and code data afterwards, generates ciphertext password.Then cryptographic binding moduleCiphertext password is returned into Password Management module.
(4) encrypted message file is generated
Password Management module is according to the format of encrypted message file by network resource identifier and corresponding ciphertext password numberAccording to write-in file operation is carried out, encrypted message file is formed, is then locally stored.Fig. 2 is encrypted message text of the inventionThe topology example figure of part.
(5) user password of Internet resources is inquired
User's legal entrance code management device, inputs network resource identifier, and Password Management module passes through message in cipher firstWhether effective the file checking identifier is ceased, if in vain, directly returning to inquiry failure prompt information;Otherwise, from message in cipherIt ceases and extracts ciphertext password corresponding to network resource identifier in file, the ciphertext password is then sent to password unbundlings cover halfBlock.
After password solution binding module receives ciphertext password, the SIM card unique identifier of current smart phone is extracted first,Solution binding decryption oprerations are carried out to ciphertext password using the unique identifier, clear-text passwords is obtained, then returns the clear-text passwordsBack to Password Management module.
Clear-text passwords information is returned to user query interface by Password Management module.
(6) update of encrypted message file
User's legal entrance code management device increases, deletes, modification Internet resources password record.
Increase operation
Password Management module issues acquisition to password acquisition module, and new Internet resources are acquired by password acquisition moduleThen the new new-added item of Password Management is sent to Password Management module by identifier and corresponding user password;
After Password Management module receives the new new-added item of Password Management, first according to the encrypted message file checking being locally storedWhether newly-increased network resource identifier is legal.After legitimacy passes through, the corresponding clear-text passwords of the network resource identifier is sent outGive cryptographic binding module;
Cryptographic binding module extracts the unique identification information of current smart phone SIM card, then by the unique identification informationBinding cryptographic operation is carried out with clear-text passwords, ciphertext password is generated, ciphertext password is then returned into Password Management module;
Password Management module believes newly-increased network resource identifier, ciphertext password etc. according to the format of encrypted message fileExisting encrypted message file is written in breath, and is locally stored.
Delete operation
After Password Management module receives the delete operation of Password Management, the password that user is chosen deletes item, by closeThe corresponding code data of search and orientation of code message file, forms new encrypted message file after being deleted.
Modification operation
After Password Management module receives the modification operation of Password Management, is issued to password acquisition module and acquire new passwordManagement item instruction, and by searching for encrypted message document alignment secret data item to be replaced, then password acquisition module is sentThe new password data come are sent to cryptographic binding module, request the bindings of SIM card;
Cryptographic binding module extracts the unique identification information of current smart phone SIM card, then by the unique identification informationBinding cryptographic operation is carried out with clear-text passwords, ciphertext code data is generated, ciphertext code data is then returned into Password ManagementModule;
Password Management module replaces old ciphertext code data using new ciphertext code data, and forms new message in cipherCease file.
(7) export and importing of encrypted message file
User can make a backup store encrypted message file from being exported in other media in mobile phone.Due to user'sInternet resources encrypted message be all with SIM card information " hard binding ", therefore be not required to worry the peace of derived encrypted message fileQuan Xing.
The encrypted message file of backup can also be imported into mobile phone by user from other media, due to this document be withSIM card binding, as long as SIM card is constant, what the encrypted message file imported can be convenient is used.It is more hand-off as userMachine operates the normal use for not influencing encrypted message file.
(8) deletion certainly of encrypted message file
In order to further ensure the safety of encrypted message file, can force check current SIM card it is invalid when, it is closeCode management software automatically deletes the local password message file on mobile phone, to prevent illegal user to Cryptogram Information DataIt obtains.
Further, of the invention with better effect to make, there can also be following additional technical feature:
(1) Password Management software can not save the direct password of Internet resources, but save prompt information, further plusThe safety of big encrypted message;
(2) encrypted message file can be carried out to segmentation stand alone type " hard binding " encryption, guarantee the use of each Internet resourcesThe binding encryption key that family password uses all is independent from each other to each other, can be further improved the peace of code management device in this wayQuan Xing.Because user is usually to look at the user password of some Internet resources using code management device every time, unified key addsSolve the risk that secret meeting increases user password leakage.Therefore the encrypted messages of each Internet resources is carried out independent encryption and decryption can be intoThe disclosure risk of one step reduction privacy of user data;
(3) unique identifier of SIM card can be written in encrypted message file with ciphertext form, can be thus expiredThe encrypted message file that old SIM card is bound is updated to the binding using new SIM card after the legal replacement SIM card of user by foot.ButWhile bringing user's ease for use, the safety of encrypted message file is also reduced to a certain extent.Mobile phone can be usedUser Identity symbol (such as subscriber phone number) or stronger PIN code SIM card unique identifier is carried out at encryptionReason, to make up security risk brought by above-mentioned bindings again;
(4) different degrees of software can be set to code management device using password, to the password sensitive information of user intoOne step enhances security protection;
(5) unique identifier of SIM card can be freestanding, be also possible to knockdown.As long as meet uniqueness andValidity, can Internet resources encrypted message to user carry out " hard binding ".In practical applications, it can extract multipleEffective unique information of SIM card, is combined encapsulation, ultimately generates a unique identifier and is tied up with encrypted message fileIt is fixed.In addition, for a machine plurality of SIM cards situation one or more SIM card can be selected according to the actual use situation of user" hard binding " operation is carried out simultaneously.
The beneficial effects of the present invention are: firstly, the Internet resources encrypted message of user and the SIM card information of smart phoneIt carries out hardware binding and has ensured user password letter well while providing easy-to-use Password management services for userThe safety of breath;Secondly, by checking whether the SIM card of current smart phone is effective, to ensure that the safety of code management device makesWith further protection user password information data;Further, encrypted message file and SIM card are bound, and replace mobile phone in userIn the case where, the use of existing Password Management is not influenced, the ease for use of user is improved;Finally, to the Internet resources password of userInformation carries out segmentation separate bind operation, can further strengthen the safety of encrypted message and crack difficulty.
Detailed description of the invention
Fig. 1 is code management device structure chart of the invention.
Fig. 2 is encrypted message file structure figure of the invention.
Specific embodiment
Further description of the specific embodiments of the present invention with reference to the accompanying drawing.Embodiment 1 is that user uses passwordManager increases Internet resources code data newly, and embodiment 2 is the password that user inquires some Internet resources using code management deviceInformation.
Embodiment 1:
Embodiment 1 provided by the invention is to use the IMSI of SIM card newly-increased as the code management device of unique identification informationPassword Management item flow scheme.Specifically includes the following steps:
(1) validity of SIM card is checked
User inputs code management device and uses password, into code management device software.
Code management device check current phone SIM card mobile network whether successful connection, it is successful then carry out next step;It is noThen, the encrypted message file that access mobile phone is locally stored directly is deleted if file exists.Then return " SIM card is illegal,It is not available current password manager software!" etc. prompt informations;
(2) Internet resources Password Management information is increased newly
After mobile phone user's legal entrance code management device, pass through the new user network of the newly-increased interface typing of code management deviceResource identifier NewWebsiteID and corresponding user password NewWebsitePW.After user's confirmation, code management device is firstThe encrypted message file being locally stored is obtained, if it is not, directly carrying out in next step;
Code management device accesses the inquiry table of encrypted message file, checks whether current new network resource identifier has been deposited?.If existing, prompt informations such as " current network resources password have been set " are returned;Otherwise, it carries out in next step;
(3) Internet resources encrypted message is bound
Code management device is that newly-increased Password Management item generates management ID first, and then the IMSI of reading SIM card, uses IMSIBinding encryption is carried out to newly-increased Internet resources password NewWebsitePW, obtains cryptographic binding encrypted result NewCipherPW:
NewCipherPW=E (NewWebsitePW, IMSI);
(4) new encrypted message file is generated
Code management device is by newly-increased Password Management item information: management ID, NewWebsiteID and NewCipherPW are written toEncrypted message file, and carry out the local of encrypted message file and save.
Embodiment 2:
Embodiment 2 provided by the invention is that the IMSI of SIM card is used to inquire as the code management device of unique identification informationThe flow scheme of Password Management item.Specifically includes the following steps:
(1) validity of SIM card is checked
User inputs code management device and uses password, into code management device software.
Code management device check current phone SIM card mobile network whether successful connection, it is successful then carry out next step;It is noThen, the encrypted message file that access mobile phone is locally stored directly is deleted if file exists.Then return " SIM card is illegal,It is not available current password manager software!" etc. prompt informations;
(2) network resource identifier to be checked is inputted
After user's legal entrance code management device, the network resource identifier WebsiteID to be inquired is inputted.
Code management device obtains the encrypted message file being locally stored, and therefrom inquires WebsiteID, if inquiry is lostIt loses, then the prompt informations such as returns to " without this Password Management item ";Successful inquiring carries out in next step;
(3) Internet resources encrypted message is obtained
Code management device reads corresponding Internet resources cryptographic binding result according to network resource identifier WebsiteIDCipherPW。
The IMSI of code management device reading SIM card carries out solution binding decryption oprerations to CipherPW using IMSI, obtains closeThe solution binding result WebsitePW of code information:
WebsitePW=D (CipherPW, IMSI).
WebsitePW is returned to user query interface by code management device.
As can be seen that the present invention has the effect that from above-described embodiment
1. code management device " ties up the encrypted message of user network resource and the progress of the unique identification information of SIM card firmlyIt is fixed ", both facilitated user effectively to manage oneself Internet resources password, while providing more the sensitive information data of userThe safeguard measure of safety;
2. inspection of the code management device to SIM card validity can be further improved the peace to user password information accessGuarantor's measure, reading of the illegal user to user password information after effectivelying prevent user mobile phone to lose;
3. the binding of encrypted message and SIM card does not influence the replacement of user mobile phone, it can preferably meet user in realityApplication in life;
4. code management device be segmented stand alone type binding to the encrypted message of each Internet resources and can further strengthenThe safety of user password information data, increase illegal user cracks difficulty.
The above embodiments are merely illustrative of the technical solutions of the present invention rather than is limited, the ordinary skill of this fieldPersonnel can be with modification or equivalent replacement of the technical solution of the present invention are made, without departing from the spirit and scope of the present invention, thisThe protection scope of invention should be subject to described in claims.

Claims (7)

Step 3) carries out cryptographic operation when binding the encrypted message of the unique identification information of SIM card and user, generates ciphertextPassword, and network resource identifier and corresponding ciphertext code data are subjected to write-in file operation, form encrypted message fileAnd it stores;In the user password of user query Internet resources, pass through the network of encrypted message file checking user input firstWhether resource identifier is effective, and it is close to extract ciphertext corresponding to network resource identifier from encrypted message file if effectivelyCode;Then the unique identification information for extracting SIM card carries out solution binding decryption behaviour to ciphertext password using the unique identification informationMake, obtains clear-text passwords, and the clear-text passwords is returned into user query interface;The user password of each Internet resources is usedDecryption when encryption reconciliation when mutually independent key is bound is bound.
Whether the current SIM card of the Password Management module check is effective, so that user is normally entered Password Management if effectivelyOtherwise device prompts user's SIM card illegal, prevent user from using code management device;The password acquisition module acquisition user is defeatedThe identifier and corresponding user password of each Internet resources entered, and it is sent to the Password Management module;The password is tied upCover half block obtains the code data of user from the Password Management module, and the unique identification information of itself and current SIM card is carried outCryptographic operation is bound, generates ciphertext password, and be sent to the Password Management module;The Password Management module is by Internet resourcesIdentifier and corresponding ciphertext code data carry out write-in file operation, form encrypted message file;
In the user password of user query Internet resources, the Password Management module is defeated by encrypted message file checking userWhether the network resource identifier entered is effective, extracts corresponding to network resource identifier from encrypted message file if effectivelyCiphertext password, the ciphertext password is then sent to the password solution binding module;The password solution binding module receivesAfter ciphertext password, the unique identification information of current SIM card is extracted, solution binding is carried out to ciphertext password using the unique identification informationDecryption oprerations obtain clear-text passwords, the clear-text passwords are then returned to the Password Management module, the Password Management moduleClear-text passwords information is returned into user query interface;To the user passwords of each Internet resources using mutually independent key intoDecryption when encryption reconciliation when row binding is bound.
CN201510345430.1A2015-06-192015-06-19 Password information security storage method and password manager based on SIM card informationActiveCN106330819B (en)

Priority Applications (1)

Application NumberPriority DateFiling DateTitle
CN201510345430.1ACN106330819B (en)2015-06-192015-06-19 Password information security storage method and password manager based on SIM card information

Applications Claiming Priority (1)

Application NumberPriority DateFiling DateTitle
CN201510345430.1ACN106330819B (en)2015-06-192015-06-19 Password information security storage method and password manager based on SIM card information

Publications (2)

Publication NumberPublication Date
CN106330819A CN106330819A (en)2017-01-11
CN106330819Btrue CN106330819B (en)2019-04-30

Family

ID=57727529

Family Applications (1)

Application NumberTitlePriority DateFiling Date
CN201510345430.1AActiveCN106330819B (en)2015-06-192015-06-19 Password information security storage method and password manager based on SIM card information

Country Status (1)

CountryLink
CN (1)CN106330819B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
CN119577163A (en)*2023-09-062025-03-07华为技术有限公司 Metadata generation method and electronic device

Citations (5)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
CN101568119A (en)*2008-04-242009-10-28鸿富锦精密工业(深圳)有限公司Mobile terminal with antitheft function and antitheft method thereof
CN101677442A (en)*2008-09-172010-03-24艾威梯科技(北京)有限公司Method and equipment for automatically logging in application programs
CN101815291A (en)*2010-03-222010-08-25中兴通讯股份有限公司Method and system for logging on client automatically
CN101895513A (en)*2009-05-202010-11-24广州盛华信息技术有限公司Log-in authentication system for service website and implementation method
KR20150004955A (en)*2013-07-032015-01-14주식회사 비즈모델라인Method for Providing Authentication Code by using End-To-End Authentication between USIM and Server

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
US9256763B2 (en)*2012-09-032016-02-09Nec Europe Ltd.Method and system for providing a public key/secret key pair for encrypting and decrypting data

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication numberPriority datePublication dateAssigneeTitle
CN101568119A (en)*2008-04-242009-10-28鸿富锦精密工业(深圳)有限公司Mobile terminal with antitheft function and antitheft method thereof
CN101677442A (en)*2008-09-172010-03-24艾威梯科技(北京)有限公司Method and equipment for automatically logging in application programs
CN101895513A (en)*2009-05-202010-11-24广州盛华信息技术有限公司Log-in authentication system for service website and implementation method
CN101815291A (en)*2010-03-222010-08-25中兴通讯股份有限公司Method and system for logging on client automatically
KR20150004955A (en)*2013-07-032015-01-14주식회사 비즈모델라인Method for Providing Authentication Code by using End-To-End Authentication between USIM and Server

Also Published As

Publication numberPublication date
CN106330819A (en)2017-01-11

Similar Documents

PublicationPublication DateTitle
CN108989346B (en)Third-party valid identity escrow agile authentication access method based on account hiding
CN103607416B (en)A kind of method and application system of the certification of network terminal machine identity
US10250613B2 (en)Data access method based on cloud computing platform, and user terminal
CA2613733A1 (en)System and method for security in global computer transactions that enable reverse-authentication of a server by a client
JP2014529837A (en) ID authentication management apparatus and method
CN105099690A (en)OTP and user behavior-based certification and authorization method in mobile cloud computing environment
CN106464494A (en)Wireless device authentication and service access
CN101827101A (en)Information asset protection method based on credible isolated operating environment
CN101321064A (en)Information system access control method and apparatus based on digital certificate technique
CN104704511A (en)Qr code utilization in self-registration in a network
CN103825863B (en)A kind of accounts management method and device
CN110995661B (en)Network card platform
US20220374872A1 (en)Platform for building decentralized applications
CN107426223A (en)Cloud file encryption and decryption method, encryption and decryption device and processing system
CN110855664A (en)Network certificate system
CN120597251A (en) Personal information protection system and method
CN111814130B (en)Single sign-on method and system
CN106778178A (en) Method and device for calling fingerprint business card
CN103401686A (en)User Internet identity authentication system and application method thereof
CN107679379A (en)A kind of Voiceprint Recognition System and recognition methods
CN110189440A (en)A kind of smart lock monitoring equipment and its method based on block chain
JP5485452B1 (en) Key management system, key management method, user terminal, key generation management device, and program
CN106330819B (en) Password information security storage method and password manager based on SIM card information
US20220343025A1 (en)Process for managing the rights and assets of a user on a blockchain
KR102771347B1 (en)Integrated log data security management system based on blockchain

Legal Events

DateCodeTitleDescription
PB01Publication
PB01Publication
C10Entry into substantive examination
SE01Entry into force of request for substantive examination
GR01Patent grant
GR01Patent grant

[8]ページ先頭

©2009-2025 Movatter.jp