Many nets physical isolation machine
Technical field
The present invention relates to a kind of mini main frame of multiple network physical isolation, especially a kind of many nets physical isolation machine.
Background technology
1999, National Administration for the Protection of State Secrets's issue " notice about strengthening e-government implementation information privacy management " No. 4 files, file specifies: classified information network must carry out physical isolation with public information network, and the information equipment be connected with public information network must not store, processes and transmit state secret information.Information security circle that is distributed on of No. 4 files has evoked thousand floor wave, just then, some manufacturers just have developed single hard disk, double-harddisk physical separate card, three net physical isolation card products successively, and it can save a computer, can ensure again the physical isolation of intranet and extranet; On three net isolation card markets, technology is also immature, because technical matters there is no sale; But this product is some drawback all: easily do not burn out the problems such as hard disk during longer, switching frequency height switching time between easy care, poor compatibility, network.
Be in the patent of " CN102239674 " in the patent No., provide the secret KVM device of a kind of use from the multiple computing machine of single consing, prevent equipment and the system of information leakage between computing machine simultaneously, this system comprises the multiple main frames being connected to keyboard and mouse and one or more user display by secret KVM device, secret KVM makes it possible to carry out standard one-way communication between secret KVM and user's keyboard machine mouse and between main frame peripheral device port and secret KVM, secret KVM forces to flow from appended keyboard and mouse to the one-way data of appended main frame peripheral device port to avoid the potential leakage main frame physically.What this technical scheme solved is switching problem between multiple computing machine, and multiple computing machine works simultaneously, not only power consumption, and the volumetric spaces taken is large, during every task, needs to control to open each computing machine simultaneously, thus causes problems such as controlling inconvenience.
Summary of the invention
The object of the invention is, in order to provide a kind of many nets physical isolation machine, the physical isolation of two or more network can be realized, between heterogeneous networks, store the physical isolation of data, and switch between network and only need 1-2 second, really realize network, store Data Physical isolation.
Above-described problem is solved by following measure: a kind of many nets physical isolation machine, comprises at least two mainboards, and mutual physical isolation is arranged, and each mainboard comprises video-out port and input media input port; One display device, has video input port; One input media, has input media output port; One KVM plate, for connecting the video input port of described video-out port and described display device, concrete, described KVM plate is provided with multiple display input port and a display translation port, described display input port connects the video-out port of described mainboard respectively, and described display translation port connects display device; Described KVM plate is provided with multiple input media signal output port and an input media signal input port, and described input media signal output port connects described mainboard respectively, and described input media signal input port connects described input media.Described KVM plate is also for connecting described input media input port and described input media output port; One power supply mainboard, is connected with described mainboard and KVM plate, and is connected with external power equipment.
In order to ensure the network information security of described isolation machine, at least two mainboards are connected to the heterogeneous networks with different security level.
Wherein, described mainboard superposes up and down and is positioned in mainframe box.
Wherein, described mainboard is with hard disk, CPU, internal memory, network interface card, integrated graphics card or sound card.
In further improvement opportunity scheme, described hard disk is solid state hard disc.Adopt solid state hard disc, its heat radiation is few, low in energy consumption, thus can ensure the running environment of described isolation machine safety.
In order to solve the heat dissipation problem of multiple CPU, described CPU position connects heat radiation conduit, and heat is discharged through radiator fan by the ventilating opening place that described heat radiation conduit causes cabinet.
In order to prevent the interference between multiple CPU, ensureing the heat dispersion of described isolation machine, being isolated by aluminium sheet between adjacent two CPU.
Concrete, described input media is mouse or keyboard.
Further, described display device is liquid crystal display.
The present invention also discloses a kind of application method of many nets physical isolation machine, comprises the steps:
S100: power initiation;
S200: mainboard, KVM plate are powered and started working, and each motherboard hardware starts successfully, enter default mainboard;
S300A: display device receives display, display device can show; Input media receives signal, and input media can be used;
S300B: after entering default mainboard, described main board system self-inspection success, enters mainboard software system, operating system and operating system desktop successively, starting up's success;
S400: powered-down, each mainboard and the power-off of KVM plate are also closed.
The invention has the beneficial effects as follows:
What be different from conventional solution adopts isolation card isolation, and it exists not easy care, poor compatibility, and between network, switching time is long, easily burns out hard disk etc. during switching frequency height.
The technical program, polylith mainboard is loaded in described many nets physical isolation machine, each mainboard is connected with KVM plate, and being connected to main board power supply interface respectively, the display input access KVM plate of described mainboard, input media connects KVM plate by the same input and output of KVM plate, when electric power starting, power to each mainboard and KVM plate, now acquiescence enters a mainboard preset, by the switching between each mainboard of described Keyboard Control simultaneously.By described many nets physical isolation machine, the physical isolation of two or more network can be realized, the physical isolation of data is stored between heterogeneous networks, and switch between network and only need 1-2 time second, really realize network, store Data Physical isolation, it exists, and manageability, volume are little, high-performance, low-power consumption etc. advantage.
Keyboard-video-mouse switch (KVM plate) makes the multiple mainboard interconnection in single computing machine, for the object controlled, this switch makes it possible to send instruction to controlled computing machine and obtain information from controlled computing machine, thus make user can only use single keyboard, monitor and mouse switch operating between different mainboard, during the visit, keypad character or point to data to be sent on work at present mainboard and the signal carrying out work at present mainboard through this switch select the mainboard that needs to switch and display on said display means, usual user is undertaken navigating so that switch between controlled mainboard by the menu on screen or display.
Accompanying drawing explanation
Fig. 1 is the structural representation of many nets physical isolation machine of the present invention;
Fig. 2 is the workflow diagram of many nets physical isolation machine of the present invention.
Embodiment
By describing technology contents of the present invention, structural attitude in detail, realized object and effect, accompanying drawing is coordinated to be explained in detail below in conjunction with embodiment.
Refer to Fig. 1, show the structural representation of this many nets physical isolation machine in figure, it comprises at least two mainboards, and each mainboard mutual physical isolation in mainframe box is arranged, and described mainboard comprises video-out port, input media input port; Described mainboard superposes up and down and is positioned in mainframe box, in order to prevent the interference etc. between each mainboard in the course of work, each mainboard adopts aluminium sheet isolation, due to the good heat conductivity of aluminium sheet, thus can ensure that described mainboard can dispel the heat in time, in addition, described CPU position connects heat radiation conduit, heat is discharged through radiator fan by the ventilating opening place that described heat radiation conduit causes cabinet, by the setting of aluminium sheet and radiating tube, ensure that the good performance of ventilating of described many nets physical isolation machine.It is the situation of connection 3 mainboards described in Fig. 1.Further, described mainboard is with hard disk, CPU, internal memory, network interface card, integrated graphics card or sound card.Described hard disk is solid state hard disc, adopts solid state hard disc, and its heat radiation is few, low in energy consumption, thus can ensure the running environment of described isolation machine safety.
In order to ensure the network information security of described isolation machine, described mainboard is connected to the heterogeneous networks with different security level.Described many nets physical isolation machine can realize the physical isolation of plural network, stores the physical isolation of data between heterogeneous networks, and switches between network and only need 1-2 time second, really realizes network, stores Data Physical isolation.
Described many nets physical isolation machine also comprises: connect mainboard video-out port with between display device input port and the KVM plate be connected between mainboard input media input port and input media output port; Concrete, described KVM plate is provided with multiple display input port and a display translation port, and described display input port connects the video-out port of described mainboard respectively, and described display translation port connects display device; Described KVM plate is provided with multiple input media signal output port and an input media signal input port, and described input media signal output port connects described mainboard respectively, and described input media signal input port connects described input media.Described mainboard is connected with KVM plate respectively, thus can ensure described mainboard independent operating, does not interfere with each other in the course of the work.
Described many nets physical isolation machine also has the display device of video input port; Described display device can be liquid crystal display or existing television indicator etc., and this display device is shared by three mainboards.
Described many nets physical isolation machine also comprises input media, and input media comprises mouse, keyboard etc., can also comprise scanner, printing device etc.It is public that the peripherals such as the display device described in the technical program, input media are multiple mainboard institute, realizes their sharing by described KVM.
Described many nets physical isolation machine also arranges a power supply mainboard shared, and described power supply mainboard connects described mainboard and KVM plate, and is connected with external power equipment.After power supply mainboard powers on, power to described mainboard, KVM plate simultaneously.
Consult Fig. 2, the present invention also discloses a kind of application process of many nets physical isolation machine, comprises the steps:
S100: power initiation;
S200: mainboard, KVM plate are powered and started working, and each motherboard hardware starts successfully, enter default mainboard;
S300A: display device receives display, display device can show; Input media receives signal, and input media can be used;
S300B: after entering default mainboard, described main board system self-inspection success, enters mainboard software system, operating system and operating system desktop successively, starting up's success;
S400: powered-down, each mainboard and the power-off of KVM plate are also closed.
Concrete, described its main working process of many nets physical isolation machine is as follows:
After electric power starting, power supply mainboard starts power supply, described mainboard, KVM plate are all started working, each main board system self-inspection starts successfully, enter mainboard software system, now, KVM plate acquiescence enters a predetermined mainboard, and the software systems of mainboard start complete, enter operating system, described display device shows the display interface of this predetermined mainboard, and the signal of mouse, keyboard is connected to this predetermined mainboard, and display device receives signal, display device can show, keyboard and mouse receives signal, and input media can use, and controls its work connecting mainboard.When other mainboards will be switched to, only need be ordered accordingly by described input through keyboard, the first mainboard is switched to as " ctrl+1 " represents, " ctrl+2 " expression is switched to the second mainboard, " ctrl+3 " expression is switched to the 3rd mainboard ... these orders are all what preset, described mainboard can initiative recognition these order, and after receiving orders, be switched to corresponding mainboard, after being switched to corresponding mainboard, namely described display device shows the interface content of present motherboards, the peripherals such as each input media also conversion are simultaneously connected to the mainboard of switching, and complete the corresponding course of work in back to described mainboard.
When the power is turned off, each mainboard and system cut-off, and Shutdown Hosts.
The foregoing is only embodiments of the invention; not thereby the scope of the claims of the present invention is limited; every utilize instructions of the present invention and accompanying drawing content to do equivalent structure or equivalent flow process conversion; or be directly or indirectly used in other relevant technical fields, be all in like manner included in scope of patent protection of the present invention.