CN104680055A - Control method for performing management on U disk after access into industrial control system network - Google Patents

Control method for performing management on U disk after access into industrial control system network Download PDF

Info

Publication number
CN104680055A
CN104680055A CN201510093807.9A CN201510093807A CN104680055A CN 104680055 A CN104680055 A CN 104680055A CN 201510093807 A CN201510093807 A CN 201510093807A CN 104680055 A CN104680055 A CN 104680055A
Authority
CN
China
Prior art keywords
usb flash
flash disk
disc
safe
client terminal
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201510093807.9A
Other languages
Chinese (zh)
Inventor
程灿涛
黄敏
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Wei Nu Trick Co Ltd
Original Assignee
Beijing Wei Nu Trick Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Wei Nu Trick Co Ltd filed Critical Beijing Wei Nu Trick Co Ltd
Priority to CN201510093807.9A priority Critical patent/CN104680055A/en
Publication of CN104680055A publication Critical patent/CN104680055A/en
Pending legal-status Critical Current

Links

Landscapes

  • Storage Device Security (AREA)

Abstract

The invention discloses a control method for performing management on a U disk after access into an industrial control system network. The control method is characterized in that a strategy server, a client terminal and a secure U disk are adopted; the strategy server is used for issuing a strategy to the customer terminal; the secure U disk accesses the industrial control system network; the client terminal controls the secure U disk according to the strategy issued to the client terminal by the strategy server. The control method has the advantages that viruses are prevented from invading an industrial control network; the confidential information of the industrial control network is prevented from leaking; the secure U disk can be used for safely sharing data between client terminals in the industrial control network; when the secure U disk is separated from the industrial control system network, a user cannot open or use the U disk, so that the invasion of viruses is avoided; any U disk can be made into the secure U disk via processing with the method, the cost is low, and operation is easy.

Description

The control method managed is accepted after a kind of USB flash disk access industrial Control System NetWork
Technical field
Accept the control method managed after the present invention relates to a kind of USB flash disk access industrial Control System NetWork, belong to technical field of network information.
Background technology
At present, the in-house network at industrial control system network place is isolated with internet physical/logical, in order to can internal network be penetrated into, shake a set of fairly perfect communication strategy of net viral design and attack flow process, can be propagated to internal network by USB flash disk " ferry-boat ".Shake net virus utilizes industrial control system software vulnerability, and implement to attack specific PLC (Programmable Logic Controller programmable logic controller) equipment, its final target of attack is PLC.Shake net virus has beaten alarm bell to the industrial control system network information security, and USB flash disk is one of main path of industrial control system internet worm invasion.
Such as, application number be CN201310087560.0 patent discloses a kind of memory storage, particularly relate to a kind of USB flash disk with screens device.Comprise framework and body, described framework is made up of blind end and holding frame, in U-shaped, this body is provided with USB interface, body interior is provided with circuit board, it is characterized in that: described blind end and holding frame are provided with the groove that can slide for body wherein, body is provided with the projection be stuck in described groove, projection freely can be rotated in groove, this body is slidably rotatable again between holding frame, holding frame and blind end elastic movable supports, holding frame is provided with pull handle and anti-slop serrations, described blind end is provided with screens device, can by holding frame pull-up by pull handle, be clamped on clothes.
Such as, application number be CN201110293948.7 patent discloses a kind of Multifunctional U disk, comprise USB flash disk main body, USB interface, USB flash disk subject boards, display screen, button, earphone interface, accumulator, LED, described display screen is the LCDs embedding USB flash disk, described LCDs upper surface and USB flash disk surface maintain an equal level, described LCDs is connected with accumulator by USB flash disk subject boards, described LCDs is electrically connected with MP3 function button, described earphone interface is located at the front of USB flash disk on the right side, described earphone interface is connected with USB flash disk subject boards, described LED embeds the left surface of USB flash disk near front, described LED is connected with accumulator and LED button respectively by USB flash disk subject boards, described button is connected with corresponding control section by USB flash disk subject boards, described accumulator is placed in USB flash disk inside, described accumulator is small-sized high energy storage battery.
Such as, application number be CN201110282197.9 patent discloses a kind of USB flash disk camera, it is characterized in that: described USB flash disk camera has a shell, described shell has the button that a camera is taken pictures with the described camera of control, described enclosure has imaging system and is stored as the flash memory of picture, described flash memory forms the storer of USB flash disk simultaneously, described shell stretches out the USB joint be connected with described flash memory, described USB flash disk camera does not have display screen, utilize USB flash disk camera of the present invention, USB flash disk can be made to have camera function concurrently, and due to it, not there is display screen, flashlamp etc., reduce cost as much as possible on the one hand, the volume of camera model is made again to be reduced to minimum, thus the portability of USB flash disk can not be affected.
In the prior art, in industrial control system network, between client terminal, data transmission relies on USB flash disk usually.Except common U disk, at present, the safe U disc scheme existed in the prior art comprises:
1. be with the safe U disc of password: when user inputs password, can access security USB flash disk after being verified.
2. be with the safe U disc of fingerprint: user fingerprints, by after fingerprint sensor is verified on USB flash disk, can access finger print safety USB flash disk.
Password security USB flash disk in the prior art and finger print safety USB flash disk, as long as certification, by using, the computing machine that is outside industrial control system network can use on any computer.Do one to existing safe U disc production program simply to introduce, as follows:
Such as, the core technology that common U disk makes one of the scheme of band safe U disc is the same with deedbox, has a coded lock.Its feature is as follows:
1. safe U disc can be made into N number of hidden partition.
2. carry out Administrative Security USB flash disk with a management tool, whether identifying user identity is legal, hidden partition can be loaded into drive and show.
3. subscriber authentication legal after, hidden partition can be loaded into drive by management tool and show.
4. hidden partition is once be loaded into drive display, and user and this subregion of virus access are just as access common U disk.
The shortcoming of the program is: security is low can not anti-virus.
Such as, common U disk makes the core technology of the scheme two of band safe U disc is the privately owned file system of band and privately owned file system interface; Manufacturer provides instrument to carry out volume production to USB flash disk chip, chip after volume production is exactly the safe U disc with privately owned file system, and provides the interface of a set of SDK i.e. privately owned file system, for user's secondary development, the advantage of the program is: directly can secondary development, security is high, and virus cannot enter USB flash disk, if user puts into USB flash disk virus, virus exists by data block mode, can not run in USB flash disk, other data can not be infected, USB flash disk information can not be stolen.
The shortcoming of the program is: cost is high, and chip is not general, because manufacturer provides second development interface.
In sum, the shortcoming of above-mentioned prior art is: 1, common U disk makes safe U disc, and security is low can not anti-virus.2, manufacturer provides instrument and chip manufacturing safe U disc, and cost is high, and chip is not general.
Summary of the invention
The object of the present invention is to provide a kind of can overcome the USB flash disk access industrial Control System NetWork of above-mentioned technical matters after accept manage control method, because between the client terminal in current industrial control system network, transmission of information mainly relies on USB flash disk, method of the present invention can provide a kind of safe U disc for industrial control system Web vector graphic and preventing virus invades industrial control system network effectively.
The core technology scheme accepting the control method managed after USB flash disk access industrial Control System NetWork of the present invention comprises the following steps:
(1) safe U disc adopts privately owned file system;
(2) strategy being controlled USB flash disk by safe U disc ID correspondence is adopted;
(3) rights of using of safe U disc in industrial control system network are limited.
Windows operating system due to Microsoft can not identify safe U disc privately owned file system thus can only safe U disc be used as be one piece do not have format physical hard disk; therefore, the control method accepting after USB flash disk access industrial Control System NetWork of the present invention to manage can protect the data message in safe U disc effectively.
The present invention is concrete by the following technical solutions:
Adopt strategic server, client terminal and a safe U disc; Described strategic server is used for described client terminal distributing policy; In described safe U disc access industrial Control System NetWork, the strategy that described client terminal issues to described client terminal according to described strategic server controls described safe U disc.
Described strategic server comprises to the distributing policy of client terminal: safe U disc ID and ID maps safe U disc control mode, and safe U disc control mode is made up of read-only mode, a WriteMode, read-write mode, forbidding mode.
The definition of described client terminal is the computing machine that Industry Control security system software is housed.
The definition of described safe U disc is: the privately owned file system having oneself, must by the data in privately owned file system interface ability access security USB flash disk, and the data in described safe U disc are all through cryptographic algorithm cryptographic storage.The windows operating system of Microsoft can not identify the privately owned file system of safe U disc, for the windows operating system of Microsoft, safe U disc is one piece of USB flash disk do not formatd, want access security USB flash disk, must first totally format safe U disc, the common U disk that the windows operating system enabling safe U disc become Microsoft identifies can be accessed.User and virus want access security USB flash disk, must pass through the windows operating system of Microsoft, and the windows operating system nonrecognition safe U disc of Microsoft, because this ensure that the security of data in safe U disc.
The quantity of described client terminal is one or more, and the quantity of described safe U disc is one or more.
If retrieve in the strategy that the USB flash disk ID of a security attribute the unknown can issue to described client terminal at described strategic server, and the information of safe U disc signature is obtained by privately owned file system interface, then illustrate that this USB flash disk is safe U disc, if according to the policy control safe U disc that the described strategic server that the USB flash disk ID of this security attribute the unknown is corresponding issues to described client terminal, obtain and then illustrate that the USB flash disk of this security attribute the unknown is the safe U disc forged less than signing messages, namely the USB flash disk of this security attribute the unknown is unsafe USB flash disk, then the USB flash disk of this security attribute the unknown is prohibited from using, if the USB flash disk ID of this security attribute the unknown does not exist described strategic server in the strategy that issues of described client terminal, then the USB flash disk of this security attribute the unknown is then prohibited from using, if not in the USB flash disk access network of safety, be then prohibited from using.
In industrial control system network, the policy control safe U disc that described client terminal issues to described client terminal according to described strategic server; If retrieve in the strategy that the USB flash disk ID of a security attribute the unknown can issue to described client terminal at described strategic server, and the information of safe U disc signature is obtained by privately owned file system interface, then the USB flash disk of this security attribute the unknown is safe U disc, if according to the policy control safe U disc that the described strategic server that USB flash disk ID is corresponding issues to described client terminal, obtain and illustrate that the USB flash disk of this security attribute the unknown is the safe U disc forged less than signing messages, then the USB flash disk of this security attribute the unknown is prohibited from using; If USB flash disk ID does not exist described strategic server in the strategy that issues of described client terminal, then the USB flash disk of this security attribute the unknown is prohibited from using; If not in safe U disc access network, be then prohibited from using.
Described safe U disc ID comprises: PID (Product ID, product IDs), VID (Vendor ID, production firm ID), SN (Serial Number, sequence number), namely described safe U disc ID is made up of PID+VID+SN.Described safe U disc signature by privately owned file system interface, signing messages is write on safe U disc.
Data acquisition SMS4 cryptographic algorithm in described safe U disc, SMS4 algorithm is Chinese commercial data cryptographic algorithm, SMS4 algorithm is a grouping algorithm, the block length of this SMS4 algorithm is 128 bits, key length is 128 bits, and cryptographic algorithm and key schedule all adopt 32 to take turns nonlinear iteration structure, and decipherment algorithm is identical with the structure of cryptographic algorithm, just the use order of round key is contrary, and decryption round key is the backward of encryption round key.
In safe U disc manufacturing process, automatically distribute PID, VID, SN can to safe U disc by safe U disc volume production instrument.
Described safe U disc adopts privately owned file system, when user's access security USB flash disk data, must use privately owned file system interface; The bibliographic structure of described privately owned file system adopts the tree structure of similar Linux.Safe U disc of the present invention can not use in the computing machine not filling Industry Control security system software.
The privately owned file system that described safe U disc adopts be a set of achieve data storage, hierarchically organized, access and obtain the abstract data type (Abstract data type) of operation.The file system of the windows operating system of Microsoft be standard, disclosed in, and provide the user access interface, user directly can carry out the establishment of file or catalogue, copy, rename, deletion action to the file system of the windows operating system of Microsoft by the interface that provides.Safe U disc uses privately owned file system and provides the interface of the privately owned file system of a set of access security USB flash disk, privately owned file system interface not external disclosure.
Advantage of the present invention is:
1. use safety USB flash disk, does not change user habit, does not increase cost.
2. stopped poisoning intrusion to industrial control system network; Prevent the confidential information of industrial control system network from revealing.
3. safe U disc can to meet in industrial control system network safe sharing data between client terminal.
4. safe U disc breaking away industrial Control System NetWork, user can not open USB flash disk, cannot use, and has stopped viral invasion.
5. any one USB flash disk can both be made into safe U disc and with low cost, simple to operate through the process of method of the present invention.
6. safe U disc use-pattern is the same with common U disk convenient and simple.
Therefore, the present invention has stronger practical value and realistic meaning.
Embodiment
Below embodiments of the present invention are described in detail.The control method accepting after a kind of USB flash disk access industrial Control System NetWork of the present invention to manage adopts strategic server, client terminal and a safe U disc; Described strategic server is used for described client terminal distributing policy; In described safe U disc access industrial Control System NetWork, the strategy that described client terminal issues to described client terminal according to described strategic server controls described safe U disc.Described strategic server comprises to the distributing policy of client terminal: safe U disc ID and ID maps safe U disc control mode, and safe U disc control mode is made up of read-only mode, a WriteMode, read-write mode, forbidding mode.The definition of described client terminal is the computing machine that Industry Control security system software is housed.The definition of described safe U disc is: the privately owned file system having oneself, must by the data in privately owned file system interface ability access security USB flash disk, and the data in described safe U disc are all through cryptographic algorithm cryptographic storage.The windows operating system of Microsoft can not identify the privately owned file system of safe U disc, for the windows operating system of Microsoft, safe U disc is one piece of USB flash disk do not formatd, want access security USB flash disk, must first totally format safe U disc, the common U disk that the windows operating system enabling safe U disc become Microsoft identifies can be accessed.User and virus want access security USB flash disk, must pass through the windows operating system of Microsoft, and the windows operating system nonrecognition safe U disc of Microsoft, because this ensure that the security of data in safe U disc.
The quantity of described client terminal is one or more, and the quantity of described safe U disc is one or more.
If retrieve in the strategy that the USB flash disk ID of a security attribute the unknown can issue to described client terminal at described strategic server, and the information of safe U disc signature is obtained by privately owned file system interface, then illustrate that this USB flash disk is safe U disc, if according to the policy control safe U disc that the described strategic server that the USB flash disk ID of this security attribute the unknown is corresponding issues to described client terminal, obtain and then illustrate that the USB flash disk of this security attribute the unknown is the safe U disc forged less than signing messages, namely the USB flash disk of this security attribute the unknown is unsafe USB flash disk, then the USB flash disk of this security attribute the unknown is prohibited from using, if the USB flash disk ID of this security attribute the unknown does not exist described strategic server in the strategy that issues of described client terminal, then the USB flash disk of this security attribute the unknown is then prohibited from using, if not in the USB flash disk access network of safety, be then prohibited from using.
In industrial control system network, the policy control safe U disc that described client terminal issues to described client terminal according to described strategic server; If retrieve in the strategy that the USB flash disk ID of a security attribute the unknown can issue to described client terminal at described strategic server, and the information of safe U disc signature is obtained by privately owned file system interface, then the USB flash disk of this security attribute the unknown is safe U disc, if according to the policy control safe U disc that the described strategic server that USB flash disk ID is corresponding issues to described client terminal, obtain and illustrate that the USB flash disk of this security attribute the unknown is the safe U disc forged less than signing messages, then the USB flash disk of this security attribute the unknown is prohibited from using; If USB flash disk ID does not exist described strategic server in the strategy that issues of described client terminal, then the USB flash disk of this security attribute the unknown is prohibited from using; If not in safe U disc access network, be then prohibited from using.
Described safe U disc ID comprises: PID (Product ID, product IDs), VID (Vendor ID, production firm ID), SN (Serial Number, sequence number), namely described safe U disc ID is made up of PID+VID+SN.Described safe U disc signature by privately owned file system interface, signing messages is write on safe U disc.
Data acquisition SMS4 cryptographic algorithm in described safe U disc, SMS4 algorithm is Chinese commercial data cryptographic algorithm, SMS4 algorithm is a grouping algorithm, the block length of this SMS4 algorithm is 128 bits, key length is 128 bits, and cryptographic algorithm and key schedule all adopt 32 to take turns nonlinear iteration structure, and decipherment algorithm is identical with the structure of cryptographic algorithm, just the use order of round key is contrary, and decryption round key is the backward of encryption round key.In safe U disc manufacturing process, automatically distribute PID, VID, SN can to safe U disc by safe U disc volume production instrument.
Described safe U disc adopts privately owned file system, when user's access security USB flash disk data, must use privately owned file system interface; The bibliographic structure of described privately owned file system adopts the tree structure of similar Linux.Safe U disc of the present invention can not use in the computing machine not filling Industry Control security system software.
The privately owned file system that described safe U disc adopts be a set of achieve data storage, hierarchically organized, access and obtain the abstract data type (Abstract data type) of operation.The file system of the windows operating system of Microsoft be standard, disclosed in, and provide the user access interface, user directly can carry out the establishment of file or catalogue, copy, rename, deletion action to the file system of the windows operating system of Microsoft by the interface that provides.Safe U disc uses privately owned file system and provides the interface of the privately owned file system of a set of access security USB flash disk, privately owned file system interface not external disclosure.
The above; be only the specific embodiment of the present invention, but protection scope of the present invention is not limited thereto, is anyly familiar with those skilled in the art in scope disclosed by the invention; the change that can expect easily or replacement, all should be encompassed in the protection domain of the claims in the present invention.

Claims (8)

1. accept the control method managed after USB flash disk access industrial Control System NetWork, it is characterized in that, comprise the following steps:
(1) safe U disc adopts privately owned file system;
(2) strategy being controlled USB flash disk by safe U disc ID correspondence is adopted;
(3) rights of using of safe U disc in industrial control system network are limited.
2. accept the control method managed after a kind of USB flash disk access industrial Control System NetWork according to claim 1, it is characterized in that, specifically comprise the following steps:
(1) strategic server, client terminal and a safe U disc is adopted;
(2) described strategic server is used for described client terminal distributing policy; In described safe U disc access industrial Control System NetWork;
(3) strategy that described client terminal issues to described client terminal according to described strategic server controls described safe U disc.
3. after a kind of USB flash disk access industrial Control System NetWork according to claim 1 or 2 any one, accept the control method managed, it is characterized in that, described strategic server comprises to the distributing policy of client terminal: safe U disc ID and ID maps safe U disc control mode, and safe U disc control mode is made up of read-only mode, a WriteMode, read-write mode, forbidding mode.
4. accept the control method managed after a kind of USB flash disk access industrial Control System NetWork according to claim 1 or 2 any one, it is characterized in that, the definition of described client terminal is the computing machine that Industry Control security system software is housed.
5. after a kind of USB flash disk access industrial Control System NetWork according to claim 1 or 2 any one, accept the control method managed, it is characterized in that, the definition of described safe U disc is: the privately owned file system having oneself, must by the data in privately owned file system interface ability access security USB flash disk, the data in described safe U disc are all through cryptographic algorithm cryptographic storage.
6. after a kind of USB flash disk access industrial Control System NetWork according to claim 1 or 2 any one, accept the control method managed, it is characterized in that, if retrieve in the strategy that the USB flash disk ID of a security attribute the unknown can issue to described client terminal at described strategic server, and the information of safe U disc signature is obtained by privately owned file system interface, then illustrate that this USB flash disk is safe U disc, if according to the policy control safe U disc that the described strategic server that the USB flash disk ID of this security attribute the unknown is corresponding issues to described client terminal, obtain and then illustrate that the USB flash disk of this security attribute the unknown is the safe U disc forged less than signing messages, namely the USB flash disk of this security attribute the unknown is unsafe USB flash disk, then the USB flash disk of this security attribute the unknown is prohibited from using, if the USB flash disk ID of this security attribute the unknown does not exist described strategic server in the strategy that issues of described client terminal, then the USB flash disk of this security attribute the unknown is then prohibited from using, if not in the USB flash disk access network of safety, be then prohibited from using.
7. after a kind of USB flash disk access industrial Control System NetWork according to claim 5, accept the control method managed, it is characterized in that, data acquisition SMS4 cryptographic algorithm in described safe U disc is a grouping algorithm, the block length of this SMS4 algorithm is 128 bits, key length is 128 bits, cryptographic algorithm and key schedule all adopt 32 to take turns nonlinear iteration structure, decipherment algorithm is identical with the structure of cryptographic algorithm, just the use order of round key is contrary, and decryption round key is the backward of encryption round key.
8. after a kind of USB flash disk access industrial Control System NetWork according to claim 1 or 2 any one, accept the control method managed, it is characterized in that, described safe U disc adopts privately owned file system, when user's access security USB flash disk data, must use privately owned file system interface; The bibliographic structure of described privately owned file system adopts the tree structure of similar Linux.
CN201510093807.9A 2015-03-02 2015-03-02 Control method for performing management on U disk after access into industrial control system network Pending CN104680055A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510093807.9A CN104680055A (en) 2015-03-02 2015-03-02 Control method for performing management on U disk after access into industrial control system network

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510093807.9A CN104680055A (en) 2015-03-02 2015-03-02 Control method for performing management on U disk after access into industrial control system network

Publications (1)

Publication Number Publication Date
CN104680055A true CN104680055A (en) 2015-06-03

Family

ID=53315087

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510093807.9A Pending CN104680055A (en) 2015-03-02 2015-03-02 Control method for performing management on U disk after access into industrial control system network

Country Status (1)

Country Link
CN (1) CN104680055A (en)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106685968A (en) * 2016-12-29 2017-05-17 北京安天网络安全技术有限公司 Automatic vulnerability defense system and method for industrial control equipment
CN106874802A (en) * 2017-01-19 2017-06-20 湖北航天技术研究院总体设计所 A kind of industrial control equipment virus protection system based on drive control
CN108875379A (en) * 2018-06-27 2018-11-23 南方电网科学研究院有限责任公司 The method, apparatus and USB flash disk of USB flash disk storing data
CN109145652A (en) * 2018-08-29 2019-01-04 郑州云海信息技术有限公司 Mobile medium access control system and method under a kind of linux system
CN110162946A (en) * 2019-05-30 2019-08-23 北京奇安信科技有限公司 Mobile storage management-control method and device
CN110650127A (en) * 2019-09-09 2020-01-03 核芯互联科技(青岛)有限公司 Cloud access control method, device and equipment based on mobile storage equipment

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101017525A (en) * 2007-03-05 2007-08-15 北京邮电大学 Divulging secrets prevention system of USB storage device date based on certificate and transparent encryption technology
CN103198037A (en) * 2013-04-22 2013-07-10 广东电网公司电力科学研究院 Reliable pipe control method and system for IO (input output) equipment
CN103336746A (en) * 2013-06-19 2013-10-02 江苏意源科技有限公司 Safety encrypted USB (Universal Serial Bus) flash disk and data encryption method thereof

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101017525A (en) * 2007-03-05 2007-08-15 北京邮电大学 Divulging secrets prevention system of USB storage device date based on certificate and transparent encryption technology
CN103198037A (en) * 2013-04-22 2013-07-10 广东电网公司电力科学研究院 Reliable pipe control method and system for IO (input output) equipment
CN103336746A (en) * 2013-06-19 2013-10-02 江苏意源科技有限公司 Safety encrypted USB (Universal Serial Bus) flash disk and data encryption method thereof

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106685968A (en) * 2016-12-29 2017-05-17 北京安天网络安全技术有限公司 Automatic vulnerability defense system and method for industrial control equipment
CN106874802A (en) * 2017-01-19 2017-06-20 湖北航天技术研究院总体设计所 A kind of industrial control equipment virus protection system based on drive control
CN106874802B (en) * 2017-01-19 2020-02-04 湖北航天技术研究院总体设计所 Industrial control equipment virus protection system based on drive control
CN108875379A (en) * 2018-06-27 2018-11-23 南方电网科学研究院有限责任公司 The method, apparatus and USB flash disk of USB flash disk storing data
CN109145652A (en) * 2018-08-29 2019-01-04 郑州云海信息技术有限公司 Mobile medium access control system and method under a kind of linux system
CN110162946A (en) * 2019-05-30 2019-08-23 北京奇安信科技有限公司 Mobile storage management-control method and device
CN110650127A (en) * 2019-09-09 2020-01-03 核芯互联科技(青岛)有限公司 Cloud access control method, device and equipment based on mobile storage equipment
CN110650127B (en) * 2019-09-09 2022-02-18 核芯互联科技(青岛)有限公司 Cloud access control method, device and equipment based on mobile storage equipment

Similar Documents

Publication Publication Date Title
US11036869B2 (en) Data security with a security module
US10469469B1 (en) Device-based PIN authentication process to protect encrypted data
EP3332372B1 (en) Apparatus and method for trusted execution environment based secure payment transactions
Dai et al. SBLWT: A secure blockchain lightweight wallet based on trustzone
US10211977B1 (en) Secure management of information using a security module
CN106462718B (en) Store the rapid data protection of equipment
CN104680055A (en) Control method for performing management on U disk after access into industrial control system network
US10073985B2 (en) Apparatus and method for trusted execution environment file protection
JP6286034B2 (en) Process authentication and resource permissions
WO2017041603A1 (en) Data encryption method and apparatus, mobile terminal, and computer storage medium
CN104335548B (en) A kind of secure data processing unit and method
US11269984B2 (en) Method and apparatus for securing user operation of and access to a computer system
US20130263277A1 (en) Secure computing system
TW202036347A (en) Method and apparatus for data storage and verification
US20160246957A1 (en) Method and Apparatus for Controlling Debug Port of Terminal Device
WO2010111440A2 (en) Token for securing communication
EP3210333A1 (en) Hybrid cryptographic key derivation
CN106687980A (en) Hypervisor and virtual machine protection
TW201349007A (en) Systems and methods for providing anti-malware protection on storage devices
EP3776223B1 (en) Secured computer system
WO2016192453A1 (en) Safety control method and apparatus, and terminal
TW201530344A (en) Application program access protection method and application program access protection device
US11531626B2 (en) System and method to protect digital content on external storage
WO2022126644A1 (en) Model protection device, method, and computing device
CN103617127A (en) Memory device with subareas and memorizer area dividing method

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20150603