CN101060552A - Network telephone device and method with multiple services - Google Patents

Network telephone device and method with multiple services Download PDF

Info

Publication number
CN101060552A
CN101060552A CN 200610076338 CN200610076338A CN101060552A CN 101060552 A CN101060552 A CN 101060552A CN 200610076338 CN200610076338 CN 200610076338 CN 200610076338 A CN200610076338 A CN 200610076338A CN 101060552 A CN101060552 A CN 101060552A
Authority
CN
China
Prior art keywords
network
unit
control module
network telephone
networking
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN 200610076338
Other languages
Chinese (zh)
Inventor
陈彦名
张上彬
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Essence Technology Solution Inc
Original Assignee
Essence Technology Solution Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Essence Technology Solution Inc filed Critical Essence Technology Solution Inc
Priority to CN 200610076338 priority Critical patent/CN101060552A/en
Publication of CN101060552A publication Critical patent/CN101060552A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)
  • Telephonic Communication Services (AREA)

Abstract

The multi-service network telephone comprises: a network telephone device for connecting network and calling inward or outward, a network control module regulating network transmission data. This invention makes user can access network resource by this device, and improves application security.

Description

Network telephone device and method with multiple service
Technical field
The present invention is relevant for a kind of device and method of network telephone, in particular to a kind of network telephone device with multiple service and method with safety control, bandwidth manager and Virtual Private Network road function.
Technical background
Along with the appearance of Internet, message is all over the world linked up fast.The growth rate of Internet is surprising, it is more more direct and far-reaching than newspapers, magazine, TV to influence aspect, because of it has instantaneity, interactive, low-cost, multimedia and borderless characteristic, and network communication serve framework just under such networking characteristic in response to development.
Early stage network communication exist sound quality bad, postpone and use problem such as inconvenience; And the network telephone of a new generation is under the application of VOIP technology maturation and network telephone gateway road server (Internet/PSTN GatewayServer), had conveniently, cheap, high-quality, characteristic such as multidirectional.
Easy to use: former network telephone is matching computer use simultaneously also, the network telephone of a new generation does not need PC, even utilize the regular phone machine to converse, and also more easy on the Cheng Xu that installs and operate, do not need special study and skill just can easily use.
With low cost: the most competitive part of network communication just is its Ultra Low Cost, and in the early stage soft, hardware are purchased the aspect, and you need not buy more a large amount of equipment or buy expensive software; Aspect cost of the phone call, you only need can dial toll telephone with the expense of local telephone, the service that overflows most to you.
Multidirectional function: network communication can carry out multi-functional transmission in conjunction with sound, image, message simultaneously simultaneously, the development of picture networking fax, network telephone, networking answer phone, networking picture telephone, video conference etc., allow communication function diversification more, also allow the distance in the world significantly shorten.
Yet below only be to see through Internet to transmit the audio-visual communications data of Denging, or save the cost of fax in conjunction with document facsimile.At present at the network telephone device that has occurred on the market being connected in series mutually with computer equipment, these network telephone devices can be with the networking be connected except that having the networking Port, and have the computer Port and be connected with computer equipment, the switch that sees through in the network telephone device will pass via the networking from the audiovisual materials of network telephone device and from the digital date of computer equipment.The operation principles of switch is to pass (for example compressing, simulate numerical digit conversion etc.) after treatment from the sound of network telephone device or audiovisual materials and seeing through the networking Port, then directly will be directed to the networking Port as for digital date from computer equipment, just with the serial connection mode, allow the shared same networking of network telephone device and computer equipment line, promptly turn to the networking in the mode of bypass for the digital date that comes from computer equipment, switch is not done any processing in Datagram.Networking security or monitoring, anti-astonished, the spam of gas defence, filtering packets, intrusion detecting is still through other equipment or software and reaches.
See also Fig. 1, Figure 1 shows that traditional network telephone device configuration diagram.Tradition network telephone device 10 comprises: voice receiving and sending device 11, button 12, display unit 13, networking Port 14, computer Port 15 and core module 20.Wherein core module 20 be the digital signals processor (Digital Signal Processing, DSP) 21, formed by central processing unit (CPU) 22, peripheral control die set 23, storage device 24 and switch module 25.Every apparatus function division is as follows:
Tradition network telephone device 10 comes internally or externally conversation by the networking, which is provided with the voice receiving and sending device 11 that Gong receives calls, be provided with for the user and call or the button 12 of operating and setting, be provided with the display unit 13 of display operation message, and be provided with the networking Port 14 that can be connected with network equipment A.Network telephone device is owing to the other cochain networking jack that takies former computer equipment of the personal computer equipment that is arranged at employee in the enterprise, so can possessing a computer Port 15 (being generally the RJ45 Port), existing network telephone device is connected in series with the port, networking of computer equipment B, the switch module 25 that sees through in the core module 20 will be directed to networking Port 14 from the networking package of computer Port 15, its principle is bypass (Bypass), and then is sent to network equipment A.
Core module 20, it is arranged in the aforementioned network telephone device 10, comprise and be used for the digital signals processor 21 that signal is handled, be used for carrying out the ordering calculation of network telephone device 10 and the central processing unit (CPU) 22 of behavior control or coordination, can accept the peripheral control die set 23 of the instruction of central processing unit 22 with control network telephone periphery (as voice receiving and sending device 11), the storage device that is used for storing data (as memory card) 24, and will be directed to networking Port 14 from the networking package of computer Port 15 and be sent to network equipment B and the audiovisual materials of traditional network telephone device are seen through the switch module 25 that the networking sends out.
Switch module 25 is not to exist in all network telephone devices 10, only in the network telephone device domestic demand with computer Port 15 switch module 25 is set.The major function of switch module 25 in the controlling signal that receives central processing unit 22 with conversion and handle desire and see through that the networking sends out or see through speech sound signal that the networking receives into (as being the image network telephone device, then still comprise image signal), and to the isdn data package from computer equipment B or network equipment A, 25 of switch modules are directly computer Port 15 to be communicated with networking Port 14, and central processing unit 22 can't be done any processing to the isdn data package.
Each device unit (digital signals processor 21, central processing unit 22, peripheral control die set 23, storage device 24 and switch module 25) in the core module 20 can be each single-chip or partly be integrated into one to several single-chips or all be integrated into a single-chip independently.
Because traditional network telephone still has the imperfection part, through inventor's constantly research and development for many years, finally develop answering, call and see through network telephone device access internet resource simultaneously, the network telephone device with multiple service and the method for networking security, data security, filtering packets and frequency range regulatory function can be provided.
Summary of the invention
Main purpose of the present invention is to provide a kind of network telephone device with multiple service, allows the user rise receiving calls simultaneously and sees through this network telephone device access internet resource, and networking security, data security, filtering packets and frequency range regulatory function are provided.
Another object of the present invention is to provide a kind of network control module of network telephone device, the energy framework allows network telephone device can have networking security, data security, filtering packets and frequency range regulatory function on network telephone device.
A further object of the present invention is to provide a kind of method with network telephone of multiple service, under the network telephone framework, provides networking security, data security, filtering packets and frequency range regulatory function.
From the above, the present invention except can be unprecedented with network telephone device and network control function fully integrated, effectively reduce cost and save outside the space, and can see through the deficiency that the framework that the keyholed back plate point of network control function is located at each computer equipment improve existing relevant networking keyholed back plate software or functions of the equipments.
The device and method that the present invention has a network telephone of multiple service lies in following at least three functions is provided under original network telephone framework:
1. networking security control function (Network Security Control and Management)
A. existing corporate intranet road safety control only reaches the detecting that accesses in the inter-network section, security protection is protected and is difficult to implement for the same network segment (Subnet) main frame net, and its reason is that the laying framework of multilayer interchanger (Switch) and high frequency range demand cause the event of interchanger net peace insufficiency of function itself.Network telephone device is arranged at by the personal computer equipment of employee in the enterprise, because it takies the cochain networking jack of former computer equipment, so can also come out with the network telephone device that computer equipment is connected in series mutually, it is a computer Port (being generally port, RJ45 networking) to be set be connected in series with the port, networking of PC, its principle be a built-in small switch in network telephone device, PC is connected in series with the networking.The present invention promptly adds a net safety unit (can reach by a single-chip or by CPU) or directly uses the net safety unit to replace this built-in switch on original switch in network telephone device.So upward all turnover company isdn datas can be prior to the network telephone device inner filtration for computer equipment (PC or employee's notebook computer), comprise user's access control (Access Control List, ACL), gas defence (Anti-virus), anti-hacker attacks, (DoS/DDoS) attacked in anti-blocking-up, anti-website is attacked and (is comprised SQL Injection attack, Hidden Field Tampering attacks, Cross-Site Scripting attacks method, and Session Hijacking attacks), the protection level is set, preventing advertising mail (Anti-spam), the file security management, networking application access management, the communications protocol management, the intrusion detecting defence (Intrusion Detection and Prevention, IDP), the data transmission log, networking application service recorder and port number external internal fail safe policy is set.
B. built-in 802.1X client of network telephone device and upper strata interchanger authentication, any employee work district network equipment see through network telephone device promptly can't connect the relevant internet resource of company's networking use.
C. the built-in security policy management software of network telephone device (Security Policy ProvisioningAgent) can upgrade each employee at any time through the networking by far-end central control network pipe software and protect level and viral identification code or attack signature etc.
2. network bandwidth management function (Network Bandwidth Management Phone, or NetworkQuality of Service (QoS))
A. because the laying framework and the high frequency range demand of multilayer interchanger (Switch) cause the traffic management insufficiency of function of interchanger own.The present invention promptly adds a network management unit (can reach by a single-chip or by CPU) or directly uses network management unit to replace this built-in switch on original switch in network telephone device.When so computer equipment (PC or employee's notebook computer) connects the networking, can be prior to using the frequency range that distributes according to this its employee's authority in the network telephone device, decapacitation is adjusted outside the frequency range according to position character and needs, also can exempt from the individual and take too much frequency range and influence company's whole networking usefulness.
B. the built-in networking of network telephone device quality policy management software (QoS policy provisioningagent) can be upgraded each employee's network bandwidth configuration (frequency range that comprises each communications protocol, each application etc.) at any time by far-end central control network pipe software.
C. remove the frequency range management and also can reset the package QoS grade that PC is uploaded, as IP TOS, DiffServ DSCP and 802.1P CoS etc. according to application.
3. virtual home zone networking function (Virtual Private Local Area Network)
A. existing enterprise accesses (Remote Access) intra-company networking for far-end and adopts IPSec VPN or SSL VPN more.It is linked to the VPN Gateway of company earlier again to intra-company's main frame access data by the software of installing on the far-end computer, this kind mode shortcoming is can't real simulation to be connected with the former working region network segment in data link layer (Data Link Layer), causes many applications to link and does not have in far-end as carrying out work in the network segment of working region at ordinary times.The present invention promptly adds unit, a Virtual Private Network road (can reach by a single-chip or by CPU) or directly uses unit, Virtual Private Network road to replace this built-in switch on original switch in network telephone device, make each employee's extension set become VPN Gateway by this and reach following two kinds of application:
A. utilize arbitrary extension set to build extension set that Layer-2 VPN tunnel returns oneself to access the former working region network segment in the intra-company networking.
B. build IPSec VPN by outside networking and build Layer-2 VPN tunnel again to the VPN Gateway of company and return the extension set of oneself, to access the former working region network segment.
C. the built-in Virtual Private Network road administration of network telephone device plan management software (VPN policy provisioningagent) can upgrade each network telephone device VPN authority (being employee VPN authority) at any time by far-end central control network pipe software.
For the auditor can be easier to understand characteristics of the present invention, see also following graphic and embodiments of the present invention explanation.
Description of drawings
Fig. 1: be traditional network telephone device configuration diagram
Fig. 2: the configuration diagram that has the network telephone device of multiple service for the present invention
Fig. 3: the present invention has the application schematic diagram of the network telephone device of multiple service
Fig. 4: the network control modular structure schematic diagram that has the network telephone device of multiple service for the present invention
Embodiment
See also Fig. 2, Figure 2 shows that the present invention has the configuration diagram of the network telephone device of multiple service, it adds network control module 30 in traditional network telephone device.Network control module 30 is used for controlling the data of networking transmission, this network control module 30 includes the net safety unit 31 that is used for filtering isdn data and monitoring networking security, be used for distributing, limit, adjusting and monitor the network management unit 32 of network bandwidth flow, and be used for unit, Virtual Private Network road (VPN module) 33 that the data transmitted on the networking is encrypted.
By above-mentioned architecture design, the networking Port 14 of network telephone device 10 is connected with network equipment A, computer Port 15 with network telephone device 10 is connected with computer equipment B again, except that can see through network telephone device 10 receive calls and allow computer equipment B through network telephone device 10 thus with inner networking and Internet are connected; The net safety unit 31 that more can further see through in the network control module 30 filters isdn data and monitoring networking security, and this net safety unit 31 also can be accepted far-end control formula and upgrade to strengthen protection, filtration and monitoring function; And see through network management unit 32 in the network control module 30 and distribute, limit, adjust and monitor the network bandwidth flow; Unit, Virtual Private Network road 33 in the last network control module 30 of arranging in pairs or groups again allows the user can utilize the access company working region network segment of Internet safety from the company outside, see through so framework, when allowing the user see through network telephone device 10 access internet resources, the function that provides networking security, data security, filtering packets and frequency range to regulate simultaneously.
Can be equiped with controlled software in the storage device 24, this controlled software can be accepted far-end control formula or browser on company's host C and set network telephone device 10, upgrades the setting of the function of each unit in the network control module 30 or increase and strengthen the function of each unit in the network control module 30.In addition, also can see through the function that this controlled software is accepted each unit in far-end control and the network control module 30.This controlled software also can be designed to set through the operation of voice or button.
Aforementioned computer Port 15 and networking Port 14 can be one or more networking Port, cable Port, RJ-11 modem Port, AUX Port, Wi-Fi device, infrared ray port, serial port, serial port, USB Port and IEEE 1394 Ports, and the computer equipment B that it connected can be PC, server, notebook computer, PDA, mobile phone, other electronic equipments or network equipment; The network equipment A that is connected then can include hub, router, IP Wireless Router, fire compartment wall, Wi-Fi base station, ATU-R modem, DSU modem, ISDN modem, Cable Modem, host computer, switch, other electronic equipments or network equipment.
Aforementioned net safety unit 31 except filtering isdn data and monitoring networking security, and can comprise that user's access control (ACL), gas defence, anti-hacker attack, anti-blocking-up attacks that (DoS/DDoS), anti-website are attacked, number external internal fail safe policy setting of (IDP), data transmission log, networking application service recorder and port is defendd in settings of protection level, preventing advertising mail (Anti-spam), file security management, networking application access management, communications protocol management, intrusion detecting.In addition, net safety unit 31 can be reached an agreement on to obtain the authentication of authenticating device by built-in 802.1X, and the computer equipment of the service area of process authentication can not use internet resource through this element.
Aforementioned network management unit 32 can be set at according to user or its transmission of group allocation and receive frequency range, influence the usefulness of whole networking except that avoiding the user to take too much frequency range, can also or only allow its period to connect inner or outside networking according to the suitable frequency range of the required configuration of user's post, to reach the optimized purpose of networking flow in appointment.In addition, network management unit 32 can be set at according to user or group allocation and make the communications protocol (TCP/IP, NETBUI, IPX, APPLE TALK) that can use, communication port, and networking application, and corresponding to aforementioned three's transmission and receive frequency range.
The net safety unit 31 that network control module 30 of the present invention is comprised, network management unit 32, and the function of unit, Virtual Private Network road 33 can be by net peace single-chip, the webmaster single-chip, Virtual Private Network road single-chip is reached, aforementioned three single-chips can be combined into a single-chip in twos, or all are integrated into a single-chip.In addition, the net safety unit 31 in the network control module 30, network management unit 32, the function that reaches wherein any unit of unit, Virtual Private Network road 33 all can change by central processing unit 22 to be reached.In addition, the net safety unit 31 that network control module 30 is comprised, network management unit 32, and the part of unit, Virtual Private Network road 33 or all also can with part in 10 the core module 20 in the network telephone device or all element combine, or further integrate and become a single-chip.Network control module 30 is the same through single-chip or through the effect that central processing unit 22 is reached, and its difference only is usefulness.Reach if see through single-chip, central processing unit 22 can attentively be handled other instruction, and as the interpolation of package and turn to, usefulness is better, but the function that is reached is the same.
Storage device 20 can be equiped with networking application service software, and website service (WEB), domain name service (DNS), dynamically domain name service (DDNS), dynamically address distribution services (DHCP), the mail service of sending (SMTP) and archives transmission services (FTP) can be provided.
What deserves to be mentioned is, the present invention has the device of the network telephone of multiple service can further integrate ATU-R modem, DSU modem, ISDN modem or Cable Modem, and its networking Port directly is connected with adsl line, leased-line, ISDN special line or data cable line.
The present invention has in the device of network telephone of multiple service, the net safety unit 31 in the network control module 30, and network management unit 32 and unit, Virtual Private Network road 33 all can be embedded unit, can embed according to need or remove.In addition, the present invention can comprise one again and expand the embedding interface, can embed other functional units according to need.
Each unit can also allow traditional network telephone device possess net peace, webmaster and Virtual Private Network road function through the mode that adds or replace in the network control module 30 of the present invention.
See also Fig. 3, Figure 3 shows that the present invention has the application schematic diagram of the network telephone device of multiple service.As shown in the figure, the networking Port 14 that the present invention has the network telephone device T of multiple service is connected with network equipment G, and wherein network equipment G can comprise following: router G1, IP Wireless Router G2, fire compartment wall G3, hub G4.And user's computer equipment, can be connected with the internal-corporate host C via network equipment G with the network telephone device T that has multiple service by the present invention and link the outside through being connected as palm PC (PDA) D, PC E or notebook computer F with the computer Port 15 of the network telephone device T with multiple service with access company profile or via border, networking networking L.
Aforementioned network equipment G still can comprise Wi-Fi base station, ATU-R modem, DSU modem, Cable Modem, host computer or switch.And user's computer equipment still comprises server, mobile phone, other electronic equipments or network equipment.
Under such framework; except aforesaid networking security; network control module among the network telephone device T also can be reached an agreement on to obtain the authentication of authenticating device by built-in 802.1X; that is to say and do not having through authentication through the network telephone device T of multiple service or the network telephone device T of this multiple service; then computer equipment can't be connected to intra-company's host C or Internet L; this purpose is to protect company profile's safety; allow general personal computer equipment (palm PC D; PC E; or notebook computer F) or other electronics and network equipment; under without permission, can not directly use company networking and access company host C data; can not obtain information or company profile is seen through Internet through Internet and send out; this is only and really reaches networking security, also be only purpose of the present invention and the effect desiring to reach.
See also Fig. 4, Fig. 4 has the structural representation of network control module of the network telephone device of multiple service for the present invention.Wherein, the end points 301 of network control module 30 is accepted the control of central processing unit, and end points 302 is connected with the computer Port and can links up with computer equipment, and 303 of another end points are connected with the networking Port and can link up with network equipment.
The tradition network telephone device can be divided into two kinds, and a kind of is the network telephone device with switch module, and a kind of is the network telephone device with switch module.Because network control module 30 of the present invention itself promptly has the function of switch module, so can be arranged in above-mentioned two kinds of network telephone devices, and can make traditional network telephone device possess the function of switch module or replace original switch module in traditional network telephone device.
The present invention have multiple service network telephone device network control module 30 as be arranged in former traditional network telephone device with switch module, then the end points 301 of network control module 30 is connected with central processing unit in traditional network telephone device, original traditional network telephone device can upgrade to the network telephone device with computer Port, and this moment, network control module 30 was promptly as the switch module of tool network control ability; And the present invention have multiple service network telephone device network control module 30 as be arranged in former traditional network telephone device with switch module, then switch module in traditional network telephone device can be given up need not, the direct network control module 30 that has the network telephone device of multiple service with the present invention replaces, or network control module 30 is connected in series mutually with the switch module of traditional network telephone device.The mode of aforementioned serial connection is with switch module in the end points 301 of network control module 30 and the traditional network telephone device be connected with the end points that the computer Port is connected (so being in order still to accept the control of central processing unit via original switch module), end points 302 is connected with the computer Port, another end points 303 then is connected with the networking Port again.The remaining end points (the originally end points that is connected with the networking Port) of original switch module this moment can not use or as other purposes (for example can be connected with other host computers and be used as networking package monitoring client).Certainly, the serial connection mode is not only above-mentioned a kind of, and for example the end points 301 with the network control module is connected with the end points that the switch module was connected with the networking Port originally, and keeps that the former end points that is connected with the computer Port does not use or as other purposes.
When expanding network control module 30 of the present invention on original network telephone device, during expansion, no matter the network control module is to reach or reach with software with single-chip, all the central processing unit that can see through easily on original network telephone device drives.
Yet, the number of endpoint of network control module 30 is not restricted to three, the for example aforementioned number of endpoint that is used for the network control module 30 that is connected in series with the switch module of traditional network telephone device can be reduced to two end points, and just end points that is connected with the computer Port or the end points that is connected with the networking Port can be provided by former switch module.
Its main function of network control module of the present invention is being done general and is being entered rank and handle to the networking package, this module in network telephone device and the relative position between other devices or the element not limited by the foregoing description.
Be noted that at last, the present invention has the network telephone device of multiple service and method provided is not a kind of network telephone device with multiple service, also provide simultaneously a kind of network telephone with multiple service method and can framework at the network control module of arbitrary network telephone device, and can be under the network telephone framework, the function that provides networking security, data security, filtering packets and frequency range to regulate.
The above only is to describe the present invention in detail by preferred embodiment, yet for any modification and the variation that this embodiment did, the kind of network telephone device for example, the function of each unit under the network control module, the unit number that the network control module comprises, the kind of storage device (for example changing hard disc into), the position of each element in network telephone device, the number of endpoint of network control module, network telephone device also can be had a SKYPE network telephone function, and the variation of the pattern of computer Port and networking Port or the like does not all break away from spirit of the present invention and scope.
Can make by above detailed description and to know this skill person and understand that the present invention can reach aforementioned purpose really, meet the regulation of Patent Law, propose application for a patent for invention then in accordance with the law.

Claims (43)

1. network telephone device with multiple service is characterized in that:
One network telephone device, it is used for connecting the networking and internally or externally converses,
It is provided with networking Port that is connected with network equipment and the computer Port that is connected with computer equipment;
One core module, it is arranged in the above-mentioned network telephone device, this core module includes the digital signals processor that is used for signal and handles, be used for carrying out the ordering calculation of network telephone device and behavior control with the central processing unit of coordinating, can receive the peripheral control die set of the instruction of central processing unit, and the storage device that is used for storing data with control network telephone device periphery; And
One network control module, it is arranged in the above-mentioned network telephone device, this network control module is used for controlling the data of networking transmission, this network control module includes following one of them unit at least: the net safety unit that is used for filtering isdn data and monitoring networking security, be used for distributing, limit, adjusting and monitor the network management unit of network bandwidth flow, and be used for unit, Virtual Private Network road that the data transmitted on the networking is encrypted;
The networking Port of network telephone device is connected with network equipment, computer Port with network telephone device is connected with computer equipment again, can see through network telephone device and receive calls and allow computer equipment be connected with inner networking and Internet through network telephone device thus; The net safety unit that more can further see through in the network control module filters isdn data and monitoring networking security, and this net safety unit also can be accepted far-end control formula and upgrade to strengthen protection, to filter and monitoring; And see through network management unit in the network control module and distribute, limit, adjust and monitor the network bandwidth flow; Unit, Virtual Private Network road in the last network control module of arranging in pairs or groups again allows the user can utilize the access company working region network segment of Internet safety from the company outside, see through so framework, allow the user when seeing through network telephone device access internet resource, provide the function of networking security, data security, filtering packets and frequency range adjusting simultaneously.
2. the network telephone device with multiple service as claimed in claim 1 is characterized in that: can be provided with on the network telephone device for the user and call or the button of operating and setting, the voice receiving and sending device that Gong receives calls and in order to the display unit of display operation message.
3. the network telephone device with multiple service as claimed in claim 1 is characterized in that: can comprise a switch module again in the core module.
4. the network telephone device with multiple service as claimed in claim 1 is characterized in that: the storage device of core module can be memory card or hard disc.
5. the network telephone device with multiple service as claimed in claim 1, it is characterized in that: the net safety unit that the network control module is comprised, network management unit, and the function of unit, Virtual Private Network road can be respectively by net peace single-chip, the webmaster single-chip, reach Virtual Private Network road single-chip and reach, aforementioned three single-chips can be combined into a single-chip in twos, or all are integrated into a single-chip.
6. the network telephone device with multiple service as claimed in claim 1, it is characterized in that: the net safety unit that the network control module is comprised, network management unit, and the part of unit, Virtual Private Network road or all can with part in the core module or all element combine.
7. the network telephone device with multiple service as claimed in claim 1 is characterized in that: the net safety unit in the network control module, and network management unit, the function that reaches wherein any unit of unit, Virtual Private Network road all can change by central processing unit to be reached.
8. as claim 1,5,6 or 7 described network telephone devices with multiple service, it is characterized in that: the net safety unit and can comprise user's access control (ACL) except filtering isdn data and monitoring networking security, gas defence, anti-hacker attacks, (DoS/DDoS) attacked in anti-blocking-up, anti-website is attacked, the protection level is set, preventing advertising mail (Anti-spam), the file security management, networking application access management, the communications protocol management, intrusion detecting defence (IDP), the data transmission log, networking application service recorder and port number external internal fail safe policy is set; And can reach an agreement on to obtain the authentication of authenticating device by built-in 802.1X, the computer equipment of the service area of process authentication can not use internet resource through this element.
9. as claim 1,5,6 or 7 described network telephone devices with multiple service, it is characterized in that: network management unit is set at according to user or its transmission of group allocation and receives frequency range, influence whole networking usefulness in order to avoid the user to take too much frequency range, can also or only allow its period to connect inner or outside networking according to the suitable frequency range of the required configuration of user's post, to reach the optimized purpose of networking flow in appointment.
10. as claim 1,5,6 or 7 described network telephone devices with multiple service, it is characterized in that: network management unit is set at according to user or group allocation and makes the communications protocol that can use, communication port, and networking application, and corresponding to aforementioned three's transmission and receive frequency range.
11. as claim 1,5,6 or 7 described network telephone devices with multiple service, it is characterized in that: the net safety unit, network management unit and unit, Virtual Private Network road are the embedded unit that can embed according to need or remove.
12. the network telephone device with multiple service as claimed in claim 1 is characterized in that: also comprise an expansion that can embed other unit according to need and embed the interface.
13. as claim 1 or 4 described network telephone devices with multiple service, it is characterized in that: storage device is equiped with controlled software, come to link up the setting of setting network apparatus or upgrading each unit in the network control module in order to see through far-end control formula or browser, or increase and strengthen the function of each unit with this controlled software.
14. as claim 1 or 4 described network telephone devices with multiple service, it is characterized in that: storage device is equiped with controlled software, sets the function of each unit in network telephone device and the network control module in order to the operation that sees through voice or button.
15. as claim 1 or 4 described network telephone devices with multiple service, it is characterized in that: storage device is equiped with networking application service software, and website service, domain name service, dynamically domain name service, dynamically address distribution services, mail server service and archives transmission service can be provided.
16. as claim 1 a described network telephone device with multiple service, it is characterized in that: this network telephone device is the device of tool SKYPE network telephone function.
17. the network telephone device with multiple service as claimed in claim 1, it is characterized in that: the computer Port of network telephone device is one or more networking Port, cable Port, RJ-11 modem Port, AUX Port, Wi-Fi device, infrared ray port, serial port, serial port, USB Port and IEEE 1394 Ports, and the computer equipment that it connected can be PC, server, notebook computer, PDA, mobile phone electronic equipment or network equipment.
18. the network telephone device with multiple service as claimed in claim 1, it is characterized in that: the networking Port of network telephone device can be one or more networking Port, the cable Port, RJ-11 modem Port, the AUX Port, the Wi-Fi device, the infrared ray port, serial port, serial port, USB Port and IEEE1394 Port, and the network equipment that it connected can include hub, router, the IP Wireless Router, fire compartment wall, the Wi-Fi base station, the ATU-R modem, the DSU modem, the ISDN modem, Cable Modem, the ISDN modem, host computer, switch electronic equipment or network equipment.
19. as claim 1,5,6 or 7 described network telephone devices with multiple service, it is characterized in that: it can integrate ATU-R modem, DSU modem, ISDN modem or Cable Modem, and its networking Port directly is connected with adsl line, leased-line, ISDN special line or data cable line.
20. the network control module of a network telephone device is characterized in that: it is arranged in the network telephone device, this network control module includes following one of them unit: the net safety unit that is used for filtering isdn data and monitoring networking security; Be used for distributing, limit, adjusting and monitor the network management unit of network bandwidth flow; And be used for unit, Virtual Private Network road that the data transmitted on the networking is encrypted, with so that the user see through network telephone device receive calls and allow computer equipment through network telephone device thus with beyond inner networking and Internet are connected, the net safety unit that more can further see through in the network control module filters isdn data and monitoring networking security, and this net safety unit also can be accepted far-end control formula and upgrade to strengthen protection, filtration and monitoring function; And see through network management unit in the network control module and distribute, limit, adjust and monitor the network bandwidth flow; Unit, Virtual Private Network road in the last network control module of arranging in pairs or groups again allows the user can utilize the access company working region network segment of Internet safety from the company outside, and allow the user when seeing through network telephone device access internet resource, provide networking security, data security, filtering packets and frequency range to regulate simultaneously.
21. the network control module of network telephone device as claimed in claim 20, it is characterized in that: the net safety unit that the network control module is comprised, network management unit, and the function of unit, Virtual Private Network road can be respectively by net peace single-chip, the webmaster single-chip, reach Virtual Private Network road single-chip and reach, aforementioned three single-chips are combined into a single-chip in twos, or all are integrated into a single-chip.
22. the network control module of network telephone device as claimed in claim 20, it is characterized in that: the net safety unit that the network control module is comprised, network management unit, and the part of unit, Virtual Private Network road or all combine with interior part of network telephone device or whole element.
23. the network control module of network telephone device as claimed in claim 20 is characterized in that: the net safety unit that the network control module is comprised, network management unit, and the function of any unit is reached by central processing unit among the unit, Virtual Private Network road.
24. as claim 20,21, the network control module of 22 or 23 described network telephone devices, it is characterized in that: include and can filter isdn data and monitoring networking security, and user's access control (ACL), gas defence, anti-hacker attacks, (DoS/DDoS) attacked in anti-blocking-up, anti-website is attacked, the protection level is set, preventing advertising mail (Anti-spam), the file security management, networking application access management, the communications protocol management, intrusion detecting defence (IDP), the data transmission log, networking application service recorder and port number external internal fail safe policy is set; And built-in 802.1X agreement to be to obtain the authentication of authenticating device, can not use the net safety unit of internet resource through this element through the computer equipment of the service area of authentication.
25. network control module as claim 20,21,22 or 23 described network telephone devices, it is characterized in that: network management unit is set at according to user or its transmission of group allocation and receives frequency range, can or only allow its period to connect inner or outside networking according to the suitable frequency range of the required configuration of user's post in appointment, or be set at according to user or group allocation and make the communications protocol that can use, communication port, and the networking application, and corresponding to aforementioned three's transmission and receive frequency range.
26. the network control module as claim 20,21,22 or 23 described network telephone devices is characterized in that: it can see through far-end control formula or browser upgrades the setting of each unit in the network control module, or increases and strengthen the function of each unit.
27. the network control module as claim 20,21,22 or 23 described network telephone devices is characterized in that: the function of each unit in the network control module is set in the operation that can see through voice or button.
28. the network control module as claim 20,21,22 or 23 described network telephone devices is characterized in that: website service, domain name service, dynamically domain name service, dynamically address distribution services, mail server service and the archives transmission service of providing further is provided the network control module.
29. network control module as claim 20,21,22 or 23 described network telephone devices, it is characterized in that: it can integrate ATU-R modem, DSU modem, ISDN modem or Cable Modem, and network telephone device directly is connected with adsl line, leased-line, ISDN special line or data cable line.
30. the network control module as claim 20,21,22 or 23 described network telephone devices is characterized in that: the net safety unit that the network control module is comprised, network management unit and unit, Virtual Private Network road are embedded unit, can embed according to need or remove.
31. the network control module as claim 20,21,22 or 23 described network telephone devices is characterized in that: also comprise one and expand the embedding interface, can embed other unit according to need.
32. the method with network telephone of multiple service, it lies in and adopts networking keyholed back plate framework on the network telephone device, and it comprises:
One network telephone device; And
One network control module, it is used for controlling the data that transfers to the networking via aforementioned network telephone device, at least it includes the net safety unit that is used for filtering isdn data and monitoring networking security to this NCU at least, be used for distributing, limit, adjusting and monitor the network management unit of network bandwidth flow, and be used for one of them unit to above-mentioned this Unit three, unit, Virtual Private Network road of encrypting via the data of networking transmission;
Make the user see through network telephone device receive calls and allow computer equipment through network telephone device thus with beyond inner networking and Internet are connected, the net safety unit that further sees through in the network control module filters isdn data and monitoring networking security, and this net safety unit also can be accepted far-end control formula and upgrade to strengthen protection, filtration and monitoring function; And see through network management unit in the network control module and distribute, limit, adjust and monitor the network bandwidth flow; Unit, Virtual Private Network road in the last network control module of arranging in pairs or groups again allows the user can utilize the access company working region network segment of Internet safety from the company outside, make the user when seeing through network telephone device access internet resource, provide the function of networking security, data security, filtering packets and frequency range adjusting simultaneously.
33. the method with network telephone of multiple service as claimed in claim 32, it is characterized in that: the net safety unit that the network control module is comprised, network management unit, and the function of unit, Virtual Private Network road is respectively by net peace single-chip, the webmaster single-chip, reach Virtual Private Network road single-chip and reach, aforementioned three single-chips are combined into a single-chip in twos, or all are integrated into a single-chip.
34. the method with network telephone of multiple service as claimed in claim 32, it is characterized in that: the net safety unit that the network control module is comprised, network management unit, and the part of unit, Virtual Private Network road or all combine with interior part of network telephone device or whole element.
35. the method with network telephone of multiple service as claimed in claim 32 is characterized in that: the net safety unit that the network control module is comprised, network management unit, and the function of wherein any unit of unit, Virtual Private Network road is reached by central processing unit.
36. as claim 32,33,34 or 35 described methods with network telephone of multiple service, it is characterized in that: include and to filter isdn data and monitoring networking security, and can make user's access control (ACL), gas defence, anti-hacker attacks, (DoS/DDoS) attacked in anti-blocking-up, anti-website is attacked, the protection level is set, preventing advertising mail (Anti-spam), the file security management, networking application access management, the communications protocol management, intrusion detecting defence (IDP), the data transmission log, networking application service recorder and port number external internal fail safe policy is set; And can reach an agreement on to obtain the authentication of authenticating device by built-in 802.1X, the computer equipment of the service area of process authentication can not use the net safety unit of internet resource through this element.
37. as claim 32,33,34 or 35 described methods with network telephone of multiple service, it is characterized in that: network management unit is set at according to user or its transmission of group allocation and receives frequency range, or can or only allow its period to connect inner or outside networking according to the suitable frequency range of the required configuration of user's post in appointment, or be set at according to user or group allocation and make the communications protocol that can use, communication port, and the networking application, and corresponding to aforementioned three's transmission and receive frequency range.
38., it is characterized in that: can see through the setting that far-end control formula or browser upgrade each unit in the network control module, or increase and strengthen the function of each unit as claim 32,33,34 or 35 described methods with network telephone of multiple service.
39. as claim 32,33,34 or 35 described methods with network telephone of multiple service, it is characterized in that: the function of each unit in the network control module is set in the operation that can see through voice or button.
40. as claim 32,33,34 or 35 described methods with network telephone of multiple service, it is characterized in that: the network control module can further provide website service, domain name service, dynamically domain name service, dynamically address distribution services, mail server service and archives transmission service.
41. as claim 32,33,34 or 35 described methods with network telephone of multiple service, it is characterized in that: it can integrate ATU-R modem, DSU modem, ISDN modem or Cable Modem, and network telephone device can directly be connected with adsl line, leased-line, ISDN special line or data cable line.
42. as claim 32,33,34 or 35 described methods with network telephone of multiple service, it is characterized in that: the net safety unit that the network control module is comprised, network management unit and unit, Virtual Private Network road all can be embedded unit, can embed according to need or remove.
43. as claim 32,33,34 or 35 described methods with network telephone of multiple service, it is characterized in that: it can comprise one again and expand the embedding interface, can embed other unit according to need.
CN 200610076338 2006-04-21 2006-04-21 Network telephone device and method with multiple services Pending CN101060552A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 200610076338 CN101060552A (en) 2006-04-21 2006-04-21 Network telephone device and method with multiple services

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 200610076338 CN101060552A (en) 2006-04-21 2006-04-21 Network telephone device and method with multiple services

Publications (1)

Publication Number Publication Date
CN101060552A true CN101060552A (en) 2007-10-24

Family

ID=38866434

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 200610076338 Pending CN101060552A (en) 2006-04-21 2006-04-21 Network telephone device and method with multiple services

Country Status (1)

Country Link
CN (1) CN101060552A (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106559393A (en) * 2015-09-29 2017-04-05 华为数字技术(苏州)有限公司 A kind of method of call encryption, apparatus and system
TWI644544B (en) * 2017-12-27 2018-12-11 中華電信股份有限公司 Method for increasing capacity of internet protocol private branch exchange system and system using the same
US11388134B2 (en) 2019-09-03 2022-07-12 National Cheng Kung University Wireless network-based voice communication security protection method

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106559393A (en) * 2015-09-29 2017-04-05 华为数字技术(苏州)有限公司 A kind of method of call encryption, apparatus and system
TWI644544B (en) * 2017-12-27 2018-12-11 中華電信股份有限公司 Method for increasing capacity of internet protocol private branch exchange system and system using the same
US11388134B2 (en) 2019-09-03 2022-07-12 National Cheng Kung University Wireless network-based voice communication security protection method

Similar Documents

Publication Publication Date Title
US20070248098A1 (en) Device and method of multi-service IP-phone
CN1270248C (en) Home network system
CN1152333C (en) Method for realizing portal authentication based on protocols of authentication, charging and authorization
CN112261067A (en) Method and system for multi-stage single-packet authorization
CN1270476C (en) Network management method based on quality of service
CN1781099A (en) Automatic configuration of client terminal in public hot spot
CN1835455A (en) Communication relay device, communication relay method and computer program product for communication relay
CN108833363A (en) A kind of block chain right management method and system
CN107370715A (en) Network safety protection method and device
Coulibaly et al. Security of Voip networks
CN101051967A (en) Communication system and its method for user's device in user's network
CN1310410A (en) service login
CN101060552A (en) Network telephone device and method with multiple services
CN1665238A (en) Networking system for next generation network
CN1728637A (en) Method for identifying physical uniqueness of networked terminal, and access authentication system for terminals
US8302179B2 (en) Embedded firewall at a telecommunications endpoint
CN1248455C (en) Customer access management system for wideband network
CN1489341A (en) Method and service device for allocating local network resource to terminal according to types of terminal
KR100998284B1 (en) Protection switch system integrated network and security and the method thereof
CN2909716Y (en) Network phone device with multi-service
CN1581833A (en) Public internet connecting service system and access line connecting device
US20100232421A1 (en) Audio/video communications system
CN1606304A (en) Method for traversing NAT equipment/firewall by NGN service
Cisco Designing the IP Telephony Network
CN1571361A (en) Broadband access safety and control ensuring system and method thereof

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
AD01 Patent right deemed abandoned

Effective date of abandoning: 20071024

C20 Patent right or utility model deemed to be abandoned or is abandoned