CN1848021A - Embedded safe controller and its control method and application - Google Patents

Embedded safe controller and its control method and application Download PDF

Info

Publication number
CN1848021A
CN1848021A CN 200510064437 CN200510064437A CN1848021A CN 1848021 A CN1848021 A CN 1848021A CN 200510064437 CN200510064437 CN 200510064437 CN 200510064437 A CN200510064437 A CN 200510064437A CN 1848021 A CN1848021 A CN 1848021A
Authority
CN
China
Prior art keywords
interface
data
safety governor
local input
storer
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN 200510064437
Other languages
Chinese (zh)
Inventor
许丰
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Individual filed Critical Individual
Priority to CN 200510064437 priority Critical patent/CN1848021A/en
Publication of CN1848021A publication Critical patent/CN1848021A/en
Pending legal-status Critical Current

Links

Images

Abstract

The present invention discloses one kind of embedded safe controller and its control method and application. The embedded safe controller is provided with central control unit, data memory unit, communication interface, and local input interface for data input. The data memory unit includes data memory to store key system data incapable of being copied and capable of being updated. The embedded safe controller controls the communication authority and/or data enciphering and deciphering of communication interfaces through treating the local input data and comparing with the key data to enhance the safety of the equipment. The embedded safe controller may be applied in various kinds of safety devices needing user's identity checking, such as intelligent card, remote controller, automobile engine switch, etc.

Description

Embedded safe controller, control method and application
Technical field
The present invention relates to a kind of controller, particularly a kind of embedded safe controller that is provided with local input interface also relates to the control method and the application of this embedded safe controller.
Background technology
Common controller, use very extensive, can control various communication interfaces, realize the respective communication agreement, and for the controller of being located on the ustomer premises access equipment, owing on controller, there is not local input interface, can only realize security control by coupled computing machine or exterior terminal to ustomer premises access equipment, and the opening of computing machine and most of terminal, the security of this ustomer premises access equipment can not be fully guaranteed, below describe at the insecurity of different situations to this aspect:
At present, the primary structure of typical flash disk (also claiming thumb drive, is storage medium with the high capacity nonvolatile memory) or portable hard drive is that an interface control chip adds a mass storage.Memory stores user data, interface control chip are responsible for realizing the respective communication agreement by connecting communication interface that equipment such as the computing machine that makes can be read and write the mass storage in flash disk or the portable hard drive.But flash disk or portable hard drive controller do not have the self-protection function, if increase, can only be to realize by external software, on the one hand extra drive software (possibility that cracks is arranged) need be installed on computers; Need on the other hand by computer keyboard input password (software of the keyboard data that is stolen easily obtains).After taking off flash disk or portable hard drive storer (storage card, hard disk or nonvolatile memory chip) in addition, also can directly obtain data by directly reading storer.General interface control chip can not realize independently that substantially rights of using are checked and the memory protection of safety.
The primary structure of at present typical smart card reader is that one or several card slots add a controller.Controller is responsible for realizing the respective communication agreement by connecting communication interfaces such as USB or RS232 that equipment such as the computing machine that makes can be mutual with smart card.Because smart card is as safe as a house, become the trend of E-consumer.But because common smart card and card reader all do not have user's input interface, can only import critical datas such as personal identification number, be stolen easily, make security presence hidden danger by computer keyboard.
Present telepilot, typical is a controller and radio transmitter as automobile remote-control device primary structure.Controller is responsible for producing particular data by wave point, Control of Automobile.Because telepilot is very easy to use, gradually through becoming the car gage configuration.But because normal remote control do not have user's input interface, used by the people easily after losing, make security presence hidden danger.
Summary of the invention
The present invention has overcome the shortcoming of prior art, and a kind of embedded safe controller that is provided with local input is provided, and the control method of above-mentioned safety governor also is provided, and the application of multiple above-mentioned safety governor also is provided.
In order to achieve the above object, a kind of embedded safe controller that is provided with local input interface of the present invention is provided with:
Central control unit is used for the peculiar function of executive utility or hardware;
Data storage cell is used for data and the interim data of using that application storing uses;
Communication interface is used for realizing communicating by letter with external unit;
Also be provided with local input interface, be used to import data;
Described data storage cell comprises and is used for the not reproducible of storage system critical data but the storer of updatable data.
Safety governor of the present invention, described central control unit are the central processing units (CPU) that is provided with program storage, and/or are encryption logics; Described data storage cell is nonvolatile memory and/or random access memory (RAM), and wherein nonvolatile memory is used for the critical data of storage system, is the not reproducible of controller inside but the storer of updatable data; Local input interface is the interface that input is used to control the critical data of safety governor, as keyboard interface, and induction input equipment interface or wave point, described program storage is ROM (read-only memory) (ROM) and/or nonvolatile memory.Described safety governor carries out collation operation by handling the data of local input with critical data default on the internal data storage unit, controls the communication authority of each communication interface.
The control method of described safety governor, safety governor is checked critical data by handling the data of local input, control communication authority and encryption and decryption.
Because described safety governor is the integrated safe device, and includes storer not reproducible but updatable data, therefore described safety governor is a kind of perfect privacy device, and has non-reproduction.It is the inevitable choice that has personal identification device's (as telepilot etc.) from input function.
The control method of described embedded safe controller, described safety governor is by handling the data of local input, carry out collation operation with critical data default on the storer of not reproducible but updatable data, control the communication authority and/or the data encrypting and deciphering of each communication interface.
As the application of safety governor of the present invention, design following several prods:
A kind of smart card, described safety governor is packaged into the smart card module form, wherein, the local input equipment that is connected with local input interface can be keyboard and/or biological characteristic inductor, described keyboard is (as membrane keyboard, the local input interface of coil touch keyboard etc.) and safety governor is connected (as the multiple connection technologies such as conducting resinl technology by double-interface smart card), and described safety governor is by handling the data of local input, identifying user identity.Equally, described biological characteristic inductor is (as the voice inductor, CMOS film fingerprint shooting array, body fluid extraction elements such as miniature blood, the pressure sensitive device, infrared inductor etc.) adopt and keyboard type like is connected technology and safety governor local input interface be connected, control the realization identity by safety governor and check function.
A kind of telepilot is provided with described safety governor, and wherein, the local input equipment that is connected with described local input interface on safety governor can be keyboard and/or biological characteristic inductor; Safety governor behind the identifying user identity, is realized external distant control function by connected wireless transmitting and receiving device by handling the data of local input.
A kind of motor car engine switch is provided with described safety governor, by the critical data of local input interface (also can wave point) input, as the initial conditions that start up the car.
A kind of smart card reader, described safety governor is set, on safety governor, be provided with one or more external smart card, by the critical datas such as local input interface input personal key on the described safety governor, realize checking outside intelligent card that coordination is connected with this safety governor respectively and the data communication between the exterior terminal with the identity of described outside intelligent card.
A kind of storer, described safety governor is set, on safety governor, be provided with memory interface and/or mass storage, by described safety governor mass storage and/or the external memory storage and the exterior terminal that are connected on the memory interface are coupled together, and utilize the local input interface of safety governor to import critical data, identifying user identity and control data enciphering/decipherings such as key.
The safety governor that is provided with local input of the present invention, owing to can have the function of the local input of independent processing, so this controller is before carrying out conventional control, can pass through independently application program, the data or the signal of the local input of checking through judging, have only after the authority of acquisition, just can make relevant device under the control of this controller, carry out the communication work and the data encrypting and deciphering of normal data.Data encrypting and deciphering refers to when outer computer or terminal device need read storer, and data send computing machine or terminal device to after via the safety governor deciphering; Same deposit on the storer again after when computing machine or exterior terminal equipment write data toward storer in, passing through the safety governor encryption again.So this safety governor makes this use its equipment safer, prevent because of other people illegally use this equipment, and cause user's loss.
The safety governor that is provided with local input of the present invention, use very extensive, can be applied on the various safety equipment that need identifying user identity, such as the smart card among the present invention, telepilot, the motor car engine switch, smart card reader, storage card reader, mobile memory etc., make each electronic equipment before operation, can obtain safer guarantee, make user's critical datas such as password really reach safety.
Description of drawings
Fig. 1 represents the safety governor frame assumption diagram of the embodiment of the invention 1;
Fig. 2 represents the frame assumption diagram of the safety governor that the function of the embodiment of the invention 1 is more perfect;
Fig. 3 represents the frame assumption diagram of smart card in the embodiment of the invention 2;
Fig. 4 represents a kind of outside drawing of smart card in the embodiment of the invention 2;
Fig. 5 represents the frame assumption diagram of telepilot in the embodiment of the invention 3;
Fig. 6 (a) (b) represents a kind of outside drawing of telepilot in the embodiment of the invention 3;
Fig. 7 represents a kind of outside drawing of arrangements for automotive doors and tail-off in the embodiment of the invention 3;
Fig. 8 represents the frame assumption diagram of smart card reader in the embodiment of the invention 4;
Fig. 9 represents a kind of outside drawing of smart card reader in the embodiment of the invention 4;
Figure 10 represents the frame assumption diagram of storer in the embodiment of the invention 5;
Figure 11 (a) is a kind of outside drawing of storer in (c) expression embodiment of the invention 5 (b);
Figure 12 represents a kind of outside drawing of the comprehensive amusement equipment of safety in the embodiment of the invention 6.
Wherein, the local input equipment 16 shown in the outside drawing mainly is keyboard equipment and fingerprint equipment.
Embodiment
With reference to accompanying drawing, will be described in detail the specific embodiment of the present invention.
Embodiment 1 (safety governor)
Safety governor of the present invention is mainly used in the rights of using of controlling the user, and as shown in Figure 1, safety governor mainly comprises following components: " data storage cell " is used for data and the interim data of using that application storing uses; " communication interface " is used for each and realizes communicating by letter with other external units; " local input interface " is used for by input equipment input data; " central control unit " is used for the execution of above-mentioned application program.
Above-mentioned central control unit can be CPU or encryption logic 15, the application program that CPU mainly stores by ROM or nonvolatile memory " program storages " such as (as: FLASH or EEPROM) 18, handle the data of local input, carry out password check or signal, obtain rights of using, and then work such as normally control.Encryption logic then can be by function such as realize this password check with above function of application corresponding hardware module, control.Also can be by CPU and encryption logic acting in conjunction, thus realize input, the encryption and decryption of safety governor self, the complete safe function of output.
Above-mentioned data storage cell, can be nonvolatile memory and RAM, nonvolatile memory (as: EEPROM or FLASH etc.) wherein, the critical data of storage system, such as: storage user cipher etc. needs private data, is not reproducible but " non-volatile data memory " 19 of updatable data; And in RAM, store ephemeral data, providing needs the internal memory used in the program process, as: RAM, SRAM and/or SDRAM, " being random access memory " RAM 20 re-powers after the device power down and can remove all data.
Be that data storage cell comprises program storage 18, non-volatile data memory 19 and random access memory 20.
And among the present invention most critical be to have increased local input interface, can be the keyboard interface that inserts by serial/infrared/wave point or general programmable IO interface, described keyboard can be: membrane keyboard, touch keyboard etc.; Local input interface also can be the radio receiver interface, such as: input signal or data can be launched by wireless transmitting device, and the radio receiver through matching is input in the safety controller by this radio receiver interface after receiving; Local input interface also can be an induction input equipment interface, such as: biological characteristic induction input equipment interface is (specifically, can be fingerprint input equipment interface), wherein the coupling of finger print data or other biological feature sensed data is also finished by safety governor, rather than finishes by the analysis software that moves on the computing machine.This induction input equipment also can be other equipment of induction representative of consumer feature, such as the voice inductor, body fluid extraction element (comprising body fluid extraction elements such as miniature blood), pressure sensitive, CMOS film fingerprint shooting array, infrared inductors etc., they all can be used as the input interface that the user obtains the safety governor rights of using.
On safety governor of the present invention, use for convenience, preferably be provided with " local input equipment " 16 integratedly, such as: keyboard or wireless transceiver circuit or induction input equipment, as: fingerprint inductor also can be other inductors etc.
Communication interface on safety governor of the present invention can be one or more in existing each class interface, such as:
1, usb 1: realization is connected with USB interface equipment such as computing machine, realizes data communication.
2, parallel interface 2: realize communicating with the equipment that possesses parallel interface and be connected, realize the parallel data transmission.
3, memory interface 3: be used to realize and being connected of various storeies or storage card or hard disk, realize data transmission.Be generally used for " Device memory reservoir " 21 and connect, such as equipment built-in mass storage or hard disk.
4, serial communication/infrared/wireless receiving and dispatching interface: finish specific control function,, when being arranged to the I2C serial bus interface, can connect and control serial storage and I2C interfacing equipment by the central control unit configuration; When being configured to UART serial communication pattern, can connect standard serial equipment such as control RS232, also can realize T=0/T=1 communication protocol, be connected with smart card; When being configured to infrared mode,, can be used as telepilot or data terminal and connect control infrared interface equipment by being connected with the infrared ray transmission circuit; When being configured to wireless mode,, can be used as telepilot or the corresponding radio interface equipments of data terminal connection control such as automobile by being connected with wireless transceiver circuit.
5, general programmable IO interface 5: by IO pin electrical specification and signal are set, can realize other various communication protocols flexibly, in order to connect and to control the equipment of the new communication protocol of use.
6, safety governor of the present invention can be an intelligent card interface 6 by serial communication interface is set also, use outside intelligent card to assist and finish specific encryption and decryption functions, thereby make the user encipher-decipher method of establishing certainly can be passed through smart card, participate in the work of safety governor, accomplish the user controllability of safety governor when realization is secret.
7, also tailor-made algorithm coprocessor interface 7 can be set on safety governor of the present invention, when special encryption that does not have in the needs controller safe in utilization or compression algorithm, can select to use specific coprocessor, obtain safety support at special applications.
8, the bus controlled processing unit 8: the data-signal of interfaces such as USB interface, parallel interface, memory interface and coprocessor interface convert to can with the mutual standard data format of CPU.Also direct data between the control transformation distinct interface.
9, central control unit can be by the configuration to the bus controlled processing unit, it is All-in-One memory card interface 9 that memory interface is set, and can connect SM, SD, MMC, CF, MS, XD, storage cards such as Microdrive, also can connect multiple storeies such as NAND FLASH, also can be arranged to ide interface, connect hard disk.Be generally used for " equipment external storage ", that is: external memory storage 22 connects, as equipment outer optionally storage card and hard disk etc.
10, can increase pilot lamp/buzzer interface 10: can connect many pilot lamp and hummer and indicate as the state in the course of work.
11, the audio coding decoding interface 11: the service function that realizes audio coding recording, decodes and plays;
12, pcmcia interface 12: realize pcmcia interface equipment linkage function;
Because the safety governor 1 of present embodiment is provided with local input interface, so this controller before carrying out conventional control, can pass through independently application program, the data or the signal of the local input of checking after central control unit is judged, determine whether to open authority.Have only after the authority of acquisition, just can make relevant device under the control of this controller, carry out the secure communication work of data,, prevent because of other people illegally use this equipment, and cause user's loss so this safety governor makes this use its equipment safer.
In order to guarantee safety, safety governor of the present invention preferably is made into the integrated embedding type chip.
Fig. 2 illustrates the block scheme of the more perfect safety governor of function, and all characteristics that related to more than it has comprised are the safety governors that function is integrated.
The control method of described safety governor, in advance on the data storage cell of safety governor, nonvolatile memory (as: EEPROM preferably, FLASH or FERAM etc.) on, storage user key critical datas such as (or the keys after central control unit is handled), in the safety governor back when reusing (or cross certain hour) that powers on, insert critical datas such as key through local input interface by local input equipment, central control unit is compared these data with critical data such as stored user key, if meet the requirements, open communication interface and/or carry out data encrypting and deciphering then, thus can carry out operate as normal; Otherwise, then not open each communication interface and/or do not carry out data encrypting and deciphering, this controller can't operate as normal.
Embodiment 2 (smart card)
Other conditions are identical with embodiment 1, just the simplification safety governor of above modular form used as smart card, and Fig. 3 illustrates the block scheme of this smart card, and Fig. 4 illustrates a kind of outside drawing of the smart card of band keyboard.
At present typical smart card comprises CPU and/or encryption logic, RAM, EEPROM, FLASH/ROM, reaches I/O five parts, is a complete computer security system.CPU connects USB or serial or the wireless interface that waits by I/O, realizes the respective communication agreement, makes that equipment such as card reader, card application terminal or computing machine can be mutual with smart card, before the use smart card, carry out subscriber authentication by the controller on it.
If on this smart card 24, add local input interface, promptly become wherein a kind of as embodiment 1 described safety governor of the present invention, because it has central control unit: CPU and/or encryption logic 15, data storage cell: RAM, EEPROM, program storage 18:FLASH/ROM, communication interface: the I/O interface, but also have local input interface.Therefore in other words, safety governor among the embodiment 1 only is provided with communication interface (as: serial line interface) and the local input interface that needs, and it is packaged into smart card module form 25, can realize the application function of all smart cards at present, simultaneously, because the input and the smart card of critical datas such as its password are one, need not keyboard by computing machine, therefore can its security be fully guaranteed because of input element causes leaking key.
Shown in the surface structure synoptic diagram that Fig. 4 illustrates a kind of smart card of present embodiment, input equipment and smart card are made as one, on smart card of the present invention, input equipment preferred film keyboard, it can easier be encapsulated on the card, and the keyboard connecting line is connected technology and can encapsulates by similar pair of interface C PU card (existing external contact connects, and has inside antenna to connect again) with smart card module, its manufacture craft also can same double-interface smart card, and the keyboard coil can be connected with module by conducting resinl.Input equipment is also or to be touch keyboard or other induction input equipment.
The smart card of present embodiment can use on conventional now card reader.
Embodiment 3 (telepilot)
Other conditions are identical with embodiment 1, make patch form after just above-mentioned safety governor being simplified, it possesses CPU and/or encryption logic 15, RAM20, non-volatile data memory 19, solidify or nonvolatile program memory 18 local input interface 14, serial communication/infrared/wireless receiving and dispatching interface 4.Outside infrared/wireless transmitter is realized external distant control function by being connected on the serial communication interface.That is: this safety governor becomes on the broad-spectrum safety remote control device, and Fig. 5 illustrates its basic structure block scheme, and Fig. 6 (a) (b) illustrates wherein a kind of outside drawing of two kinds of embodiments, is decorated with pilot lamp 26 on Fig. 6 (a).
This safety remote control device, most typical application are the automobile remote-control devices, and the user enters password from local input interface, behind safety remote control device password check, just can carry out normal remote control, have so just strengthened the security of telepilot.
The control code that a lot of telepilots use is all fixed, by frequency sonding and analysis imitation easily.So in the safety governor of the present invention (safety remote control device) lay special stress on a kind of rolling algorithm.Be that each control code is all different,, can realize almost not having the rolling control code of repetition by matching with receiver.When for a certain reason, transmitter emission back control code is rolled and receiving end is not received signal, and both sides cause asynchronous.At this moment, if asynchronous in limited number of times (such as 50 times), both sides are as long as correct emission/reception once just can be synchronous again, if surpass asynchronous qualification number of times, be considered as malicious sabotage, then can't realize control function again, need carry out again synchronously by controlled special synchronic command.Wherein asynchronous qualification number of times can be set.At this moment, also safety governor of the present invention can be set on described receiver, control the calculating of rolling control code on the one hand, the local input equipment of the safety governor of this receiver is wireless transceiver circuit at this moment, by receiving the wireless signal of telepilot, as local input signal or data.
For more effective protection automobile; on the switch 27 of arrangements for automotive doors and engine; safety governor of the present invention (replacement car key) also can be set separately; import the data that password or fingerprint signal or external remote send by local input interface, as the initial conditions of opening car door and/or starting up the car.When igniting, transceiver in the integrated spark plug and near telepilot authenticate mutually, start up the car.Fig. 7 illustrates a kind of outside drawing of motor car engine switch.
And aspect the wireless transmission/reception of telepilot, receiver, also can utilize wherein a kind of wave point of safety governor: blue tooth interface, that is: described communication interface is a blue tooth interface, realizes that by Bluetooth protocol controlled in wireless and automobile receiver authenticate mutually.
In order further to guarantee safety, can on above safety remote control device and/or receiver, intelligent card interface be set, by the program on each user's the outside intelligent card 24, come the auxiliary encryption and decryption functions of finishing, thereby the smart card provider is participated in the work of this safety remote control device and/or receiver, make this telepilot can have more individual difference and security.
Embodiment 4 (smart card reader)
Other conditions are identical with embodiment 1, just this safety governor simplified laggard column criterion encapsulation and got final product, and compare with embodiment 2,3, increased the bus controlled processing unit, can connect interfaces such as USB, form the safe and intelligent card reader of present embodiment.Fig. 8 illustrates its basic structure block scheme, and Fig. 9 illustrates its a kind of outside drawing.
The primary structure of at present typical smart card reader is that one or several card slots (that is: intelligent card interface) add a controller.Controller is responsible for realizing the respective communication agreement by connecting interfaces such as USB or RS232, makes that equipment such as computing machine can be mutual with smart card.Because smart card is as safe as a house, so become the trend of E-consumer.
Above-mentioned controller is set to the safety governor that is provided with local input port of the present invention, this moment, the main effect of safety governor was to coordinate to carry out data communication by the outside intelligent card that serial communication interface connects with the computing machine that is connected by the USB/ parallel interface, but the input of the user key of smart card is to import by safety governor keyboard (being the keyboard of secure readers), as shown in Figure 8, rather than computer keyboard input.
Safety governor of the present invention is provided with intelligent card interface 6, and self possesses the function of handling outer input interface input data, can possess the function of safe encryption and decryption simultaneously, can independently realize checking with the password of smart card.Need dispose this moment to safety governor, specific when checking the password order so that safety governor runs into, and the prompting user is from the input of card reader keyboard, and finish the complete order of checking.Substitute existing card reader for convenience, the general data flow process of safety governor can be the same with common card reader, but when order checked in the execution password, safety governor can be passed to equipment such as computing machine the user password of checking in the password order of smart card and discard, and changes the data of this control unit interface input into.This function is configurable, as closes this function, and safety governor is just the same with the controller of common card reader.
In addition, also can pass through universal I interface or serial communication interface, connect fingerprint sweep sensor, can realize utilizing the rights of using that carry fingerprint sensor and/or Keyboard Control safety governor, wherein the coupling of finger print data is also finished by safety governor, rather than finishes by the analysis software that moves on the computing machine.
On the smart card reader of present embodiment, can use existing normal procedure intelligent card, realize further security control, effectively prevented because of need with computer keyboard that card reader is connected on input password, and the danger of Lost Security Key.
Embodiment 5 (storer)
Other conditions are identical with embodiment 1, just safety governor of the present invention is applied on the mobile memory, realize the security control in use of this mobile memory such as being applied on flash disk (installation mass storage) or portable hard drive (installation mass storage) or the memory card reader (installation memory interface).Figure 10 illustrates its basic structure block scheme, and Figure 11 (a) (b) (c) illustrates its a kind of outside drawing.
Safety governor of the present invention self possesses the function of handling the outer input interface data, can independently realize safe memory protection.Safety governor control to mass storage (Device memory reservoir 21) and/or be connected the external memory storage (equipment external storage 22) on the memory interface correct visit (safety governor reset or power down after re-power all can remove existing authority), before visit, need to check earlier the user cipher that can be provided with.
Safety governor of the present invention can also possess the function of safe encryption and decryption.Typical external input device can be a keyboard, and the password of (seeing Figure 11 (a)) keyboard input is directly handled by safety governor, check successfully after, safety governor can be opened read-write interface, and the encryption and decryption device can be set.At this moment, when outer computer or terminal device need read storer, data sent terminal devices such as computing machine after via the safety governor deciphering to.Deposit on the storer again after when exterior terminal equipment such as computing machine write data in storer, encrypting through safety governor again equally.
Used the accidental enciphering algorithm in the safety governor, the not serious exchanges data speed that influences when carrying out the transmission of large-capacity data enciphering/deciphering.Can certainly utilize other encryption/decryption algorithm.
In addition in order to improve storage efficiency, can also select to enable the data compression/decompression function that contracts, increase the storage space service efficiency by data compression.
Carry for convenience, keyhole 28 can also be set on this storer.
Wherein input equipment also can be input medias such as fingerprint, and is different with existing band fingerprint equipment, and wherein the coupling of finger print data also is to be finished rather than by the software that moves on the computing machine by safety governor.(seeing Figure 11 (b))
The external device communication interface of safety governor of the present invention can be USB interface (a similar flash disk), also can be other communication interface such as parallel port, serial line interface or other special purpose interface.
Safety governor of the present invention also can pass through intelligent card interface, uses outside intelligent card to assist and finishes particular security functionality.Promptly with the safe flash disk of card reader.(seeing Figure 11 (c))
Safety governor of the present invention also can pass through the dedicated coprocessor interface, use to encrypt or compression coprocessor is assisted and finished specific encryption and decryption and the data compression/decompression function that contracts.
Embodiment 6
When comprehensive various additional functions, safety governor can be used as the comprehensive amusement equipment of safety and uses (seeing Figure 12), this equipment is the concrete enforcement of the perfect safety governor among the embodiment 1, be provided with local input interface and local input equipment, also be provided with smart card, memory card interface, energy and other communication interfaces, realize communicating by letter with external unit, thereby realize relevant various functions.

Claims (13)

1, a kind of embedded safe controller is provided with:
Central control unit is used for executive utility or hardware capability;
Data storage cell is used for data and the interim data of using that application storing uses;
Communication interface is used for realizing communicating by letter with external unit;
It is characterized in that, also be provided with local input interface, be used to import data;
Described data storage cell comprises and is used for the not reproducible of storage system critical data but the storer of updatable data.
2, safety governor according to claim 1, it is characterized in that, described safety governor is by handling the data of local input, carry out collation operation with critical data default on the storer of not reproducible but updatable data, control the communication authority and/or the data encrypting and deciphering of each communication interface.
3, according to the arbitrary described safety governor of claim 1 to 2, it is characterized in that,
Described central control unit is the central processing unit that is provided with program storage, and/or is encryption logic;
And/or described program storage is ROM (read-only memory) and/or nonvolatile memory;
And/or described data storage cell is nonvolatile memory and random access memory, and is wherein, described not reproducible but storer updatable data is a nonvolatile memory;
And/or described communication interface is one or more with in the lower interface:
USB interface, parallel interface, memory interface, serial communication interface, infrared interface, wave point, general programmable IO interface, pilot lamp interface, buzzer interface, audio coding decoding interface, pcmcia interface, intelligent card interface, tailor-made algorithm coprocessor interface.
4, according to the arbitrary described safety governor of claim 1 to 3, it is characterized in that, on described safety governor, be provided with the local input equipment that is connected with local input interface.
According to the arbitrary described safety governor of claim 1 to 4, it is characterized in that 5, local input interface is with in the lower interface one or more: keyboard interface, radio receiver interface, induction input equipment interface.
6, as the control method of the arbitrary described embedded safe controller of claim 1 to 5, it is characterized in that, described safety governor is by handling the data of local input, carry out collation operation with critical data default on the storer of not reproducible but updatable data, control the communication authority and/or the data encrypting and deciphering of each communication interface.
7, a kind of smart card is characterized in that, will be packaged into the smart card module form as the arbitrary described safety governor of claim 1 to 5, and described safety governor is by handling the data of local input, identifying user identity.
8, a kind of telepilot is characterized in that, is provided with as the arbitrary described safety governor of claim 1 to 5, and safety governor is by handling the data of local input, behind the identifying user identity, realizes external distant control function by connected infrared or wireless device.
9, telepilot according to claim 7, it is characterized in that, the described telepilot that is used for matches with its receiver, the control code of emission/reception synchronous rolling, and in limited number of times, receiving end can self-control make itself and transmitting terminal synchronous, and the local input equipment that wherein is used for the safety governor of receiver is a wireless transceiver circuit.
10, a kind of automotive safety switch, it is characterized in that, be provided with that safety governor is by handling from the critical data of local input interface input as the arbitrary described safety governor of claim 1 to 5, identifying user identity is as the initial conditions of opening car door and/or starting up the car.
11, a kind of smart card reader, it is characterized in that, be provided with as the arbitrary described safety governor of claim 1 to 5, on safety governor, be provided with one or more external smart card, by the local input interface input critical data on the described safety governor, the authority of realization safety governor and described outside intelligent card is checked, outside intelligent card that coordination is connected with this safety governor respectively and the data communication between the exterior terminal.
12, a kind of storer, it is characterized in that, be provided with as the arbitrary described safety governor of claim 1 to 5, on safety governor, be provided with memory interface and/or mass storage, by described safety governor mass storage and/or the external memory storage and the exterior terminal that are connected on the memory interface are coupled together, and safety governor is by handling from the critical data of local input interface input, identifying user identity.
13, storer according to claim 12 is characterized in that, is provided with application program and/or the encryption logic of realizing the enciphering/deciphering device on safety governor, is used for being input to storer or carrying out enciphering/deciphering from the data of storer output.
CN 200510064437 2005-04-15 2005-04-15 Embedded safe controller and its control method and application Pending CN1848021A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 200510064437 CN1848021A (en) 2005-04-15 2005-04-15 Embedded safe controller and its control method and application

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 200510064437 CN1848021A (en) 2005-04-15 2005-04-15 Embedded safe controller and its control method and application

Publications (1)

Publication Number Publication Date
CN1848021A true CN1848021A (en) 2006-10-18

Family

ID=37077610

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 200510064437 Pending CN1848021A (en) 2005-04-15 2005-04-15 Embedded safe controller and its control method and application

Country Status (1)

Country Link
CN (1) CN1848021A (en)

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101901196A (en) * 2010-08-09 2010-12-01 韩燕� Portable safe storage device and method
CN104604164A (en) * 2012-03-22 2015-05-06 凯萨股份有限公司 Contactless data transfer systems and methods
CN105787548A (en) * 2014-12-25 2016-07-20 北京数码视讯科技股份有限公司 Intelligent card, intelligent card physical interface control method, and intelligent card physical interface control device
CN106773887A (en) * 2015-11-24 2017-05-31 沈阳新松机器人自动化股份有限公司 A kind of programmable I/O safety governor for robot
US9960820B2 (en) 2008-12-23 2018-05-01 Keyssa, Inc. Contactless data transfer systems and methods
US10375221B2 (en) 2015-04-30 2019-08-06 Keyssa Systems, Inc. Adapter devices for enhancing the functionality of other devices
CN114609955A (en) * 2022-05-10 2022-06-10 浙江浙能航天氢能技术有限公司 Design and control method and device of multifunctional universal controller for hydrogenation

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9960820B2 (en) 2008-12-23 2018-05-01 Keyssa, Inc. Contactless data transfer systems and methods
US10601470B2 (en) 2008-12-23 2020-03-24 Keyssa, Inc. Contactless data transfer systems and methods
CN101901196A (en) * 2010-08-09 2010-12-01 韩燕� Portable safe storage device and method
CN104604164A (en) * 2012-03-22 2015-05-06 凯萨股份有限公司 Contactless data transfer systems and methods
CN105787548A (en) * 2014-12-25 2016-07-20 北京数码视讯科技股份有限公司 Intelligent card, intelligent card physical interface control method, and intelligent card physical interface control device
CN105787548B (en) * 2014-12-25 2019-03-29 北京数码视讯科技股份有限公司 The physical interface control method and device of a kind of smart card, smart card
US10375221B2 (en) 2015-04-30 2019-08-06 Keyssa Systems, Inc. Adapter devices for enhancing the functionality of other devices
US10764421B2 (en) 2015-04-30 2020-09-01 Keyssa Systems, Inc. Adapter devices for enhancing the functionality of other devices
CN106773887A (en) * 2015-11-24 2017-05-31 沈阳新松机器人自动化股份有限公司 A kind of programmable I/O safety governor for robot
CN106773887B (en) * 2015-11-24 2020-08-04 沈阳新松机器人自动化股份有限公司 Programmable IO safety controller for robot
CN114609955A (en) * 2022-05-10 2022-06-10 浙江浙能航天氢能技术有限公司 Design and control method and device of multifunctional universal controller for hydrogenation
CN114609955B (en) * 2022-05-10 2022-08-12 浙江浙能航天氢能技术有限公司 Design and control method and device of multifunctional universal controller for hydrogenation

Similar Documents

Publication Publication Date Title
CN1848021A (en) Embedded safe controller and its control method and application
JP6775626B2 (en) Multi-function authentication device and its operation method
CN101159551B (en) Multifunctional information safety equipment and method of use thereof
US20080040615A1 (en) Biometric embedded device
CN1822013A (en) Finger print biological identifying engine system and its identifying method based on credible platform module
CN1885315A (en) Embedded single secure chip biological fingerprint recognition system and method thereof
CN1518235A (en) Identification system of electronic busness and its implementing method
CN102664036A (en) Fingerprint encryption intelligent digital U disk
CN201570073U (en) Automobile remote control key
CN103246838A (en) External device of mobile terminal
CN105128818A (en) Multistage-identity-authentication car remote controlled key and work method thereof
CN101009555A (en) An intelligent secret key device and the method for information interaction with the host
CN2916768Y (en) Embedded single secure chip biologic fingerprint recognition system
CN1405780A (en) System guiding device base on core and method for realizing said guide
CN101436342A (en) Automobile fingerprint encipher remote controller
CN105787319A (en) Iris recognition-based portable terminal and method for same
US20160300416A1 (en) Electronic Lock and Verification Method for Unlocking the Same
CN201150068Y (en) Multifunctional information safety equipment
CN201408417Y (en) Dactylogram encryption hard disk
CN206322182U (en) A kind of fingerprint identification device
WO2005122689A2 (en) A method and system for securing a device
CN101646262A (en) Wireless data card and identity certification method thereof
CN102904718A (en) Audio communication based information security equipment and communication method thereof
JP2006351015A (en) Storage and method for protecting stored data thereof
CN105320903A (en) Electronic device and data reading and writing method based on the electronic device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication