CN202939674U - Multiple safety management security device and system - Google Patents

Multiple safety management security device and system Download PDF

Info

Publication number
CN202939674U
CN202939674U CN 201220228084 CN201220228084U CN202939674U CN 202939674 U CN202939674 U CN 202939674U CN 201220228084 CN201220228084 CN 201220228084 CN 201220228084 U CN201220228084 U CN 201220228084U CN 202939674 U CN202939674 U CN 202939674U
Authority
CN
China
Prior art keywords
authentication
secure device
microprocessor
maltilevel security
door lock
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Lifetime
Application number
CN 201220228084
Other languages
Chinese (zh)
Inventor
李鸿生
许证渊
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
SHINSOFT CO Ltd
Original Assignee
SHINSOFT CO Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by SHINSOFT CO Ltd filed Critical SHINSOFT CO Ltd
Priority to CN 201220228084 priority Critical patent/CN202939674U/en
Application granted granted Critical
Publication of CN202939674U publication Critical patent/CN202939674U/en
Anticipated expiration legal-status Critical
Expired - Lifetime legal-status Critical Current

Links

Images

Landscapes

  • Lock And Its Accessories (AREA)

Abstract

The utility model relates to a multiple safety management security device and a system. The security device is linked to a protected subject and is connected with a gate lock of the protected subject. The circuit characteristics of the security device mainly comprise a microprocessor for executing data processing, an entrance guard control unit connected with the gate lock, an authentication interface unit capable of executing at least two authentication functions and a memory unit for recording program codes of the at least two authentication functions. According to one embodiment, the authentication interface unit comprises a wireless signal access unit capable of detecting and receiving signals of an authentication device in a wireless mode. When a person holds the authentication device, the wireless signal access unit can read authentication information in the authentication device; and in another authentication program, a person can input the authentication information by using an input unit, the device determines authentication results after checking the information, and security of the protected subject can be reinforced by multiple authentication modes.

Description

Maltilevel security management secure device and system
Technical field
The utility model relates to a kind of maltilevel security management secure device and system, particularly a kind ofly is installed in the specific secure device of saving place turnover entrance from damage, and a safety system with maltilevel security authentication techniques of setting up whereby.
Background technology
Security in order to ensure the specific occasion, special as bank vault, enter and exit door, known technology proposes multiple safety practice, comprises sending the personnel that enter that appoint a security personnel, manage these occasions with the authentication mechanism of complexity and the measures such as intensity that improve door mechanism to guarantee security.
Proof box or the national treasury of known technology as being applied to, the technology of saving from damage of this respect mainly provides one to have the firm ectosome that prevents from destroying and the lock with secret and anti-theft feature, correlation technique once had the fit structure of known technology such as Taiwan new patent M335550 disclosed cashbox coded lock antitheft mechanism and No. 158304 disclosed national treasury electronic password lock, but these are mainly the technology and the wherein design of special construction of using the conventional cipher lock.
Preservation measures for proof box or national treasury, may have the measure of alarm, when improper invasion or the behavior of unlatching are arranged, can give the alarm, known technology once had the proof box of No. 148345 disclosed tool warning system of Taiwan patent, this technology is mainly to be provided with alarm circuit in proof box, can produce wireless signal after triggering, and produces alarm after being received by warning horn.
In recent years, development due to short-range radio communication, this type of communication mode with security also can be applicable in the preservation measures of specific occasion, known technology as shown in Figure 1 is that a kind of active rfid door lock is saved control structure (No. the M388690th, Taiwan patent from damage, the day for announcing: 2010/09/11), wherein used with radio-frequency (RF) identification (RFID) utilization in door lock is saved from damage.
The door lock that shows in Fig. 1 is saved control structure from damage and is comprised an active wireless radio frequency unit 10, and wherein element mainly contains the first antenna 101 and chip 103, is loaded with identifier in chip 103.When this active wireless radio frequency unit 10 started, identifier changed into signal via circuit, by the first antenna 101 transmission.
Door lock is saved from damage and is had a main control system 12 in control structure, wherein element mainly contains the second antenna 121, receiver 123 and processor 125, to form signals corresponding with the first antenna 101 in active wireless radio frequency unit 10, and the processor 125 of main control system 12 connects the keying of control one warning horn 16 with signal wire.
Above-mentionedly respectively hold system that element forms also to include a sensing apparatus 14 of being located at the object of protection outside, function is the sensing range of induction invader access to plant.
The means of this technology are mainly to use the authentication mode whether active wireless radio frequency unit 10 and the radio RF recognition technology conduct of 12 of main control systems start or close preservation measures.In the time of in sensing apparatus 14 has been sensed personnel's entry range, personnel should utilize will be the wherein contained identifier in active wireless radio frequency unit 10 to be sent to main control system 12, after wherein receiver 123 receives, judge and whether conform to registered identifier, judge whether whereby to utilize warning horn 16 to produce alarms.
The utility model content
The various preservation measures that propose in view of known technology still possess the defective that system itself is arranged, as easily being tampered, invading, defective on still may having safely and the doubt of security deficiency, therefore the utility model proposes device in the specific occasion a kind of maltilevel security management secure device of (as national treasury, turnover entrance), can strengthen survival capability by the multiple safety certification function that device provides.
The utility model is described a kind of maltilevel security management secure device and system, and wherein maltilevel security management secure device is linked on a protected main body, and is connected with wherein door lock.
Secure device mainly includes microprocessor, the access control unit that is connected in door lock that executing data processes, the authentication interface unit that can carry out at least two authentication functions, and the mnemon of the program code of at least two authentication functions of record.
In other words, the utility model provides a kind of maltilevel security management secure device, is linked in a door lock of a protected main body and this protected main body, and described device comprises: one carries out the microprocessor that in this maltilevel security management secure device, data are processed; One access control unit is electrically connected this microprocessor, and is connected in the door lock of this protected main body; One has the authentication interface unit of at least two authentication functions, is electrically connected this microprocessor; And the mnemon of the program code of these at least two authentication functions of record, be electrically connected this microprocessor; Wherein, after this microprocessor was confirmed these at least two authentication function authentication successs, this microprocessor produced control signal, and by this access control unit opening the door lock of this protected main body.
According to one of embodiment, authentication interface unit in above-mentioned secure device comprises can be with wireless mode detecting and the wireless signal access unit that receives the authenticate device signal, such as being uses radio-frequency (RF) identification (RFID) technology, when personnel hold authenticate device, the wireless signal access unit will read wherein authentication information.Authentication interface unit includes an input block, for personnel's input authentication data, can be keyboard, the video camera that captures face feature that receives the character input or the Touch Screen that receives gesture instruction.
According to one of embodiment, if secure device adopts a kind of technology of using dynamic cipher verification, above-mentioned authentication interface unit more comprises the password generator that produces dynamic password, when starting the relevant authentication program, device will be synchronizeed with the hand-held device of personnel and produced dynamic password, to check verify data.
Maltilevel security management secure device also comprises a communication unit, provides this secure device to connect an administrative center, can communicate by letter or transmission of signal with administrative center.The authentication database of a record verify data, the various authentication informations that provide the personnel of checking to input can be provided above-mentioned mnemon.Secure device also can comprise one in order to the detecting personnel a kind of near the perception unit near this secure device, such as the mode of utilizing the light blocking.
The utility model also provides one to be located at the safety system that national treasury passes in and out entrance, particularly uses the safety system of above-mentioned maltilevel security management secure device.
In other words, the utility model also provides a kind of safety system with above-mentioned maltilevel security management secure device, be applied to the turnover entrance of a national treasury, described safety system comprises one at least by this detecting of authentication interface unit wireless and the authenticate device that receives the verify data that is loaded with, and this safety system also connects an administrative center.
According to embodiment of the present utility model, use above-mentioned secure device with maltilevel security administrative mechanism that at least two kinds of authentication procedures can be provided, such as the first authentication procedure starts during near secure device in personnel, device will the person of asking for help be carried out authentication for the first time, such as the authentication interface that utilizes nearly this secure device of an induction chip clamping, after authenticated success, start the second authentication procedure, require these personnel to carry out authentication for the second time.
This second authentication procedure is such as the password by comparison Dynamic Generation that personnel input after Dynamic Generation after the secure device computing, and after comparison, authentication success, also complete the authentication procedure that maltilevel security is managed safety system for the second time, opens the door lock of protected main body.
To be secure device produce according to the data in authentication procedure for the first time the dynamic password of above-mentioned Dynamic Generation, also can comprise the temporal information of system, points out in personnel, inputted according to this by personnel and complete authentication.
The utility model is described maltilevel security management secure device system provides two or multiple authentication procedure of different shape to guarantee the security of particular place.
Description of drawings
Fig. 1 is that known technology active rfid door lock is saved the control structure schematic diagram from damage;
Fig. 2 is the use embodiment schematic diagram of the utility model maltilevel security management safety system;
Fig. 3 is one of embodiment schematic diagram of the utility model maltilevel security management secure device;
Fig. 4 be the utility model maltilevel security management secure device the embodiment schematic diagram two;
Fig. 5 be the utility model maltilevel security management secure device the embodiment schematic diagram three;
Fig. 6 is the embodiment schematic diagram that the utility model device arranges.
[main element description of reference numerals]
Active wireless radio frequency unit 10 first antennas 101
Chip 103 sensing apparatus 14
Main control system 12 receivers 123
The second antenna 121 processors 125
Warning horn 16
Personnel's 22 secure devices 20
Wireless senser 203 input interfaces 204
National treasury 2 gateways 201
Induction card 205 secure devices 30
Protected main body 32 access control unit 307
Authenticate device 33 passwords 34
Microprocessor 301 authentication interfaces 303
Door lock 309 internal memories 302
Secure device 4 door locks 40
Microprocessor 41 access control unit 43
Authentication interface unit 47
Mnemon 49 wireless signal access units 471
Input block 472 password generation units 473
The first authentication procedure block 491 second authentication procedure blocks 492
Authentication database 493
The protected main body 54 of administrative center 52
Microprocessor 501 communication units 502
Display unit 503 authentication interface unit 504
Mnemon 505 access control unit 506
Dynamic password processing unit 507 power management unit 508
Near perception unit 509 secure devices 50
Display 531 induction interfaces 541
Input interface 542 sensors 591
Battery 581 power supplys 582
Turnover entrance 6 door locks 60
Network router 62 secure devices 64
Display screen 642 key groups 644
Induction card 66 cipher authentication devices 68
Embodiment
In order to provide security better preservation measures, the utility model proposes a kind of in conjunction with multiple authentication techniques the management secure device of the maltilevel security in one and system, wherein secure device is installed in the specific place turnover entrance of saving from damage, and device is set up a safety system with maltilevel security authentication techniques whereby.Using the maltilevel security management safety system embodiment that this secure device discloses can be with reference to the use embodiment schematic diagram of the utility model maltilevel security management safety system shown in Figure 2.
Be presented in Fig. 2 in a place (as national treasury 2) and be provided with a secure device 20, introduce the maltilevel security management safety system that the utility model discloses in the place of special safety-sensitive, be connected in by secure device 20 wherein the gateway 201 that enters and exits this place, particularly connect door lock, enter through just making after multiple authentication.
In this embodiment, the secure device 20 of being located at national treasury 2 gateways 201 provides twice authentication procedure at least, and secure device 20 electrically is linked in controls the door lock that gateway 201 is opened or closed, and outer member includes a wireless senser 203 and input interface 204.
The hand-held induction card 205 of personnel 22 is arranged in Fig. 2, such as being the IC-card that uses REID (RFID), induction card 205 is loaded with identifier, warp is responded to the wireless senser 203 on secure device 20, can read wherein identifier (needing deciphering), identify whereby possessor's identity, this is one of authentication mode of the present utility model, is not for restriction the utility model.
In addition, input interface 204 on secure device 20 can be the numeric keypad of a link internal circuit or has particular letter and the keyboard of symbol, personnel 22 respond to card 205 authentications except utilizing to on-the-spot, also need input password, complete by twice authentication procedure at least the authentication that has more security.
In above-mentioned authentication mode, induction card that personnel 22 hold 205 is because be loaded with the identifier that system has logined, so everyone's 22 holds are exclusive card, when personnel leave office or transfer, answers authentication database in update system.
In other embodiment of the utility model, do not get rid of the technology (as face, fingerprint, vein image, iris, vocal print etc.) of utilizing biological identification (biometric recognition) and authenticate.
In another embodiment, secure device 20 can be by network on-line telemanagement center, the signal (as alarm, power state, error message etc.) that administrative center sends except receiving secure device 20, but the online secure device of remote access is with change inner setting (as password, enter and exit personnel's authority), and running information (as infringement, fault, power state) that can long-range acquisition device, administrative center more can carry out remote update to the data in secure device 20, comprises wherein database, password and program updates etc.
Above-mentioned secure device can be with reference to example shown in Figure 3 with turnover introduction and the relation of administrative center.
Each element function in one maltilevel security management secure device 30 is wherein described, secure device 30 has data processing function, its arithmetic core is a microprocessor 301 for each circuit component signal processing of execution, the communication module 305 of microprocessor 301 electric connections is therewith separately arranged, secure device 30 communication module 305 whereby connects external management center 3 with wired or wireless means, such as by the online administrative center 3 in the Internet (Internet), and transmission of information.
Secure device 30 can provide and enter the personnel identity authentication, comprise the authentication interface 303 in icon, according to one of embodiment, authentication interface 303 can provide the function as near-end communication technologys such as RFID, NFC, the contact authentication mode of swiping the card maybe can be provided, the hand-holdable authenticate device 33 just like the induction chip card of user approaches authentication interface 303, interacts and exchange message.In addition, authentication interface 303 also can be the interface that can input data, comprises the keyboard of touch-control and entity, and personnel can input password 34 and authenticate.
Indicating 32 in Fig. 3 is a protected main body, is provided with a turnover entrance, and secure device 30 is installed on the turnover introduction, particularly is electrically connected at the door lock 309 that shows in Fig. 3, the signal that the switching motion of door lock 309 can transmit according to secure device 30.In this embodiment; secure device 30 includes an access control unit 307 that is electrically connected above-mentioned microprocessor 301; access control unit 307 is connected in door lock 309; be protected main body 32 interface of 30 of secure devices therewith; microprocessor 301 will judge according to the obtained verify data of authentication interface 303; and then produce control signal to access control unit 307, control whereby the switching motion of door lock 309.
Such as, if door lock 309 is an electromagnetic lock (electromagnetic lock), therefore can controls according to the current signal that the control signal decision gives and open or close; If common mechanical formula door lock, bolt (bolt) mechanism that door lock 309 connects the turnover introduction will be controlled according to control signal in access control unit 307, control and open or close.Wherein can allow because of authentication success opening door lock 309, otherwise the information whether door lock 309 closes also can be through this access control unit 307 passes to secure device 30.Also can comprise the internal memory 302 of contents such as recording verify data, system program, password generating routine in secure device 30, internal memory 302 is electrically connected at microprocessor 301.
Fig. 4 be the utility model maltilevel security management secure device the embodiment schematic diagram two, show that then secure device can carry out the circuit box example of at least two group authentication procedures.
Be shown as a kind of maltilevel security management secure device 4 in Fig. 4; be linked in the door lock 40 of a protected main body and protected main body; in the main circuit feature of this device 4; include and carry out the microprocessor 41 that in secure device 4, the data between each circuit unit are processed, the element that is electrically connected this microprocessor 41 also includes access control unit 43, authentication interface unit 47 and mnemon 49.
According to embodiment; access control unit 43 is connected in the door lock 40 of protected main body; open or close door lock 40 in order to the control signal that produces according to microprocessor 41; if this controls for a kind of the change with electric current the electromagnetic door lock that opens and closes; can receive the keying signal that gate inhibition's control module 43 produces, change electric current according to authentication result and open or close electromagnetic door lock.Door lock 40 is not also got rid of the door lock that can be a mechanism design, so access control unit 43 can utilize mechanism design directly control the mechanism of door lock 40 and control and open or close.The description of this routine door lock 40 is not limited to practical range of the present utility model.
Operation and the contact interface of authentication interface unit 47 when providing personnel to authenticate wherein has at least two authentication functions.For instance, device 4 provides the function of a wireless signal authentication, as a calculating punch that utilizes radio-frequency (RF) identification (RFID) technology, authentication interface unit 47 comprises a wireless signal access unit 471, can detect and the signal that receives an authenticate device by wireless mode, authenticate device is loaded with verify data, any wireless device that the personnel of can be hold is as induction chip card, wireless transceiver (dongle) or other the similar wireless devices that has storage and transmit recognition data that uses REID.
Authentication interface unit 47 can include input block 472, and personnel's input authentication data are provided, and its embodiment comprises that one receives the keyboard of character input, the video camera of acquisition face feature or the Touch Screen of reception gesture instruction.Wherein keyboard can provide personnel's input authentication data, password etc.; The setting of video camera can be the supervision field conditions, also can be the instrument that a kind of reception staff's limbs produce authentication, such as personnel can make the authentication basis that a confirming operation is drawn up in advance; This input block 472 can be embodied as a contact panel, so personnel can authenticate by the mode of gesture touch-control, or input message.
As shown in Figure 4, authentication interface unit 47 can have a password generation unit 473, generator as dynamic password, when device 4 provides the authentication function of dynamic password, personnel will obtain a dynamic password in real time in verification process, input in a setting-up time, to obtain authentication, dynamic password producing method herein should be consistent with the interior password generation unit 473 of secure device 4, so both can produce corresponding password under identical conditions, by checking authenticating identity.
Above-mentioned mnemon 49 can be put down in writing the program code of at least two authentication functions, such as the first authentication procedure block 491 shown in Fig. 4 and 492 two memory regions of the second authentication procedure block, be loaded with respectively the program code of two different authentication programs of device 4 execution.For instance, when device 4 starts the first authentication procedure, microprocessor 41 will load the first authentication procedure block 491, carry out the first authentication procedure, as above routine, the authentication procedure that device 4 will the person of asking for help uses the induction chip card to carry out identification, related software will read recognition data contained in the induction chip card, and whether check be the interior people of safe list.When device 4 starts the second authentication procedure, microprocessor 41 will load the second authentication procedure block 492, carry out the second authentication procedure, as above example, the second authentication procedure of device 4 will drive the password generator and produce dynamic password, check with the password that personnel input.
Mnemon 49 separately can possess the authentication database 493 of storage personnel verify data, in order to check some verify datas.
Fig. 5 be the utility model maltilevel security management secure device the embodiment schematic diagram three, wherein relate to the safety system of using the utility model maltilevel security management secure device, this safety system can be located at a national treasury or the various turnover entrance that is provided with safety practice.
In this embodiment; be provided with the secure device 50 that is linked in protected main body 54 in maltilevel security management safety system; include according to circuit function in secure device 50 and carry out the microprocessor 501 that in secure device 50, each element signal is processed; secure device 50 includes communication unit 502; whereby can be online in administrative center 52; communication unit 502 is electrically connected microprocessor 501; microprocessor 501 will be processed the signal of communication that produces from communication unit 502, and administrative center 52 is namely received the signal of secure device 50 by communication unit 502.Protected main body 54 as a national treasury.
More include the authentication interface unit 504 that the personnel of acceptance carry out authentication in secure device 50, authentication interface unit 504 is electrically connected microprocessor 501, processed the authentication signal of various authentication interfaces unit 504 generations by microprocessor 501, comprise encryption and decryption, identification, the action of ratio equity of signal, and start relevant authentication procedure.The identification signal (identifier) that authentication interface unit 504 produces in order to the authenticate device that is received from personnel and holds and the interface of dynamic password input, such as the reader device etc. that is a contact panel, keyboard, contactless (as using the near-field communication technology such as RFID) or contact (swiping the card), can connect in this embodiment and be located at outside induction interface 541, as a touch area, or can read the reader of chip signal, separately can connect input interface 542, provide personnel to input data.
Secure device 50 has mnemon 505, utilizes wherein memory storage verify data, comprises the static data that store, and authenticates the authentication database of the identifier of above-mentioned authenticate device as record; Also can comprise the program of computing dynamic password, after starting the dynamic cipher verification program, above-mentioned microprocessor 501 will load the related operation program, and the Dynamic Generation password can be synchronizeed with the external authentication device.
in the utility model embodiment, maltilevel security management safety system particularly is designed for the turnover entrance of protection particular place, secure device 50 will be arranged on protected main body 54, and can be linked on the door lock of protected main body 54, device is provided with access control unit 506 in 50, access control unit 506 is electrically connected microprocessor 501, be linked in door lock (as the door lock of national treasury), for secure device 50 is controlled the control circuit that door lock opens and closes, to open and close door lock according to the signal driver that microprocessor 501 produces after authentication, door lock is such as being a kind of electromagnetic door lock that opens and closes according to electric signal.
If maltilevel security management safety system is for carrying out dynamic cipher verification, secure device 50 comprises dynamic password processing unit 507, dynamic password processing unit 507 is electrically connected microprocessor 501, the authentication procedure performed according to microprocessor 501, system can carry out the dynamic password program by this dynamic password processing unit 507 with arithmetic capability, and can manage according to maltilevel security information (as temporal information) the Dynamic Generation dynamic password of safety system.These verify data majorities of being managed by dynamic password processing unit 507 are the password of random fluctuation; to change along with time fluctuation; carry out synchronously with relative authenticate device, the personnel that therefore enter this protected main body 54 need to hold corresponding password generation device and could correctly carry out authentication.
The outer display 531 of linking up with personnel that also can connect of secure device 50, inside has the display unit 503 that is electrically connected microprocessor 501, and in order to the processes and displays signal, display can be used to the display reminding personnel and carries out each step action, or the demonstration authentication result, comprise the warning content.
For guaranteeing the security of maltilevel security management safety system, the electric power supply of secure device 50 can comprise the direct current power that alternating electromotive force (as power supply 582) that Utilities Electric Co. provides and internal cell 581 provide simultaneously.Have a power management unit 508 in device 50, in order to the electrical arrangement in management devices, comprise the state of supervising device running electric power, guarantee the stable running of device 50.
Secure device 50 provides the function of induction near object, as wherein have be electrically connected microprocessor 501 near perception unit 509, the outside sensor 591 that connects, utilize optics, wireless signal induction, image sensing, temperature sensing or other to judge whether that the induction mode sensing personnel of object proximity approach, and make system further require to carry out authentication near personnel according to environmental change.
Use secure device and its system that the utility model provides, embodiment comprises that mainly utilizing the twice authentication procedure to carry out personal security manages, when being personnel near this secure device, the identifying procedure that triggers starts the first authentication procedure by installing, the requirement personnel carry out authentication for the first time, authentication for the first time can be selected one in numerous authentication modes, such as utilizing wireless communication technology (as RFID by the induction card of holding in personnel hand, NFC) with the secure device exchange message, authenticate personnel identity with this.
One of the utility model embodiment flow process:
Will this first identifying procedure judge whether authentication for the first time successful? if unsuccessfully, can utilize the modes such as cresset, information, the sound to send caution, then can re-execute the first authentication procedure, or set unsuccessfully and fair entering of whole authentication procedure.If but authentication success for the first time will then start the second authentication procedure, require personnel to carry out authentication for the second time.
The second authentication procedure can be the step that is different from the first authentication procedure, such as requiring personnel's key feeding cipher, password comprises the static password (can be recorded in the authentication database in secure device) of memory and by hand-held device executive routine Dynamic Generation or the dynamic password of reception, the program of password confirming is the second authentication procedure for this reason.Other are not also got rid of can biological characteristic, the identification mode of gesture etc. replaces the second authentication procedure.
If authentification failure for the second time, secure device will send information warning for the second time, can be equally the modes such as cresset, information, the sound, then maybe can re-execute this second authentication procedure, or need to get back to the first authentication procedure, authentication again; If authentication success, namely complete the authentication procedure that maltilevel security is managed safety system for the second time, the microprocessor of device will produce control signal, by access control unit reception, to open the door lock of protected main body.
Two of the utility model embodiment flow process:
When having personnel to enter the occasion of the specific secure device that is provided with the maltilevel security management function, personnel can utilize the identity recognition device of holding to carry out the first authentication, as using chip card, radio transceiver (dongle) or carrying out biological identification by the recognition device on device.If take chip card as example, can use and swipe the card or the technology of wireless card reading, be provided with card reader and internal memory in secure device, utilize the recognition data in internal memory to authenticate.Connect to when separately being not precluded within authentication and be located at long-range authentication database, carry out remote authentication.
If recognition failures, according to the rule of setting (such as allowing the frequency of failure, the time interval etc.), secure device can produce alarm and can re-execute the action of identification identity; If success identity namely enters the second authentication procedure, can be secure device and remind personnel's key feeding cipher by modes such as voice, display or cressets.According to embodiment, password can be the password by a kind of static setting (still may regularly upgrade) that personnel remembered or tabled look-up, and the input interface that provides by secure device at the scene (as keyboard, contact panel) is keyed in should input password instantly; Separately having embodiment not get rid of in another mode that is different from the first authentication procedure authenticates, such as utilizing the image identification technology to judge personnel identity, judging whether the gesture password is correct, maybe can use the other biological recognition method, more can authenticate by the second password.
In this embodiment, the second authentication procedure is for being utilized specific support to receive a kind of password of Dynamic Generation by personnel, this dynamic password is for to offer this personnel according to virtual condition, by the dynamic password input of personnel according to the Dynamic Generation of indication, after system receives this dynamic password, just can judge whether by the second authentication procedure.
The authentication mode of above-mentioned dynamic password be mainly personnel wear or hand-held device on show and the password of systems compliant, this type of technology is mainly the synchronous condition of being held the password generator on device as system's (can be provided with the server that password produces function) and turnover personnel with the mistiming.In the needs authentication, just utilize the password generator to produce a dynamic password, should input password in secure device in the time restriction that sets, otherwise this group password lost efficacy namely, authentication next time must be used another group dynamic password of new generation, has tight security.
Enumerate an example at this, enter in the personnel hand of this particular place and hold a kind of carrier, can be the dynamic password generator of a kind of Token of being called, the top has display, (be not precluded within the first authentication procedure and namely use this positive mode) after entering the second authentication procedure, can be by administrative center, or online arbitrary authentication center transmits dynamic password, and be shown in display on this Token device, then input to secure device by personnel; Separately can be performed calculations according to the information that internal information (as system time information or password generator) or personnel authenticate for the first time by secure device, and then show dynamic password by the device on personnel hand, personnel input according to this and carry out authentication; Separately there is embodiment to utilize short message mode (simple message service by the telemanagement center, SMS) transmit the mobile phone that dynamic password is held to the personnel hand, personnel can input accordingly, and it is correct whether secure device has the mechanism of synchronous this information to judge to input.
In the above-mentioned mode that is produced the moving password of one group of changing by the specific cryptosystem algorithm, mainly can avoid the non-former people who holds chip card to swarm into without authorization, though may pass through the first authentication procedure, may because do not hold another as the device of Token, still be difficult to by the second authentication procedure.This type of dynamic password by personnel hand-held be installed on to complete after the first authentication procedure produce voluntarily, wherein information will be synchronizeed with secure device, therefore can obtain authentication.
When the failure of second authentication procedure, system produces alarm or the requirement of any pattern and re-enters password, and step still can be got back in the first authenticating step, re-executes authentication; If but be required to re-enter another time password, can produce one group of new dynamic password as the producing method of above-mentioned password equally.
The authentication number of times of dynamic password can be decided according to system, and step can be proceeded by the first authentication procedure again, or again again obtains another dynamic password.After the second authentication success, safety system is with allowing to enter protected main body, such as driving opening door lock.
When carrying out authentication procedure, according to system, the different modes that start each authentication procedure can be arranged, according to one of embodiment, when above-noted persons enter the occasion of the specific secure device that is provided with the maltilevel security management function, if these personnel hold or are wearing and can respond to the article that maltilevel security management safety system starts, as use an induction chip card, online with a radio-frequency (RF) identification communication means between induction chip and secure device.When holding this induction chip (comprising the device or the carrier that are loaded with this chip) near secure device, can at once start the first authentication procedure.In this embodiment, the first authentication procedure comprises that secure device receives the identification identifier that transmits from the induction chip card, in order to compare the authentication database that secure device is built-in or company obtains outward, to confirm that whether identification identifier is as safe list.At this moment, if identification identifier is not to be safe list, be judged as authentification failure for the first time as above-mentioned step; If identification identifier is safe list, authentication success for the first time.
In the device design, can with reference to figure 6, Figure 6 shows that the embodiment schematic diagram that the utility model device arranges.
Show a secure device 64 being located at turnover entrance 6 in Fig. 6, secure device 64 is connecting door lock 60, utilizes electronic type or mechanical mode to open or close door lock 60.
Because secure device 64 has communication function, can be by network router 62 link external device (ED)s, servo host as administrative center, whereby can with PERCOM peripheral communication, transmission of signal, comprise that the administrative center personnel can obtain live view, sound, or the various information of saving from damage, perhaps, administrative center can by these means of communication to secure device 64 safeguard, the action such as software upgrading, monitoring.
Secure device 64 can have a display screen 642, in order to show the information of linking up with personnel, 644 of key groups are to provide personnel and input various verify datas, and secure device 64 more is provided with the wireless authentication function, and personnel can use induction card 66 and secure device 64 exchange messages; Secure device 64 can possess the function of dynamic cipher verification, therefore personnel can a hand-held cipher authentication device 68, the top shows the password of real-time Dynamic Generation, by key groups 644 with Password Input secure device 64, take this confirmation personnel whether as one of safe list.
according to the utility model embodiment, the maltilevel security management secure device that is connected in a turnover entrance door lock is mainly to utilize the multiple authentication mode to manage the personnel of entering and exiting, guarantee the security of particular place, in preferred embodiment, order is carried out twice authentication procedure at least, be preferably the authentication mode of different examples, as requiring personnel to carry out a cipher in the first authentication procedure, utilize the biological identification mode (as voice in another road authentication procedure again, action, fingerprint, palmmprint, vocal print, iris, retina, the vein identification, face recognition etc.), or dynamic password etc. is carried out authentication.When the event of wrong authentication produces, can notify administrative center, warning, or require identity validation for the second time.Therefore, the utility model maltilevel security management secure device system of describing provides two or multiple authentication procedure of different shape to guarantee the security of particular place.
But the above is only better feasible embodiment of the present utility model; non-so namely limit to the utility model; therefore the equivalent structure that all utilization the utility model instructionss and accompanying drawing content are done changes, and all in like manner is contained in protection domain of the present utility model explanation hereby.

Claims (9)

1. a maltilevel security is managed secure device, is linked in a door lock of a protected main body and this protected main body, it is characterized in that, described device comprises:
One carries out the microprocessor that in this maltilevel security management secure device, data are processed;
One access control unit is electrically connected this microprocessor, and is connected in the door lock of this protected main body;
One has the authentication interface unit of at least two authentication functions, is electrically connected this microprocessor; And
The mnemon of the program code of one these at least two authentication functions of record is electrically connected this microprocessor;
Wherein, after this microprocessor was confirmed these at least two authentication function authentication successs, this microprocessor produced control signal, and by this access control unit opening the door lock of this protected main body.
2. maltilevel security as claimed in claim 1 management secure device, is characterized in that, described authentication interface unit comprises:
One wireless signal access unit is with wireless mode detecting and the signal that receives an authenticate device; And
One provides the input block of input authentication data.
3. maltilevel security management secure device as claimed in claim 2, is characterized in that, described wireless signal access unit is the calculating punch with REID.
4. maltilevel security management secure device as claimed in claim 2, is characterized in that, described input block is that a keyboard, that receives the character input captures the video camera of face feature or the Touch Screen of a reception gesture instruction.
5. maltilevel security as claimed in claim 2 management secure device, is characterized in that, described authentication interface unit comprises that also one produces the password generator of dynamic password.
6. maltilevel security management secure device as claimed in claim 1, is characterized in that, described device also comprises a communication unit, is electrically connected this microprocessor, and this maltilevel security management secure device connects an administrative center by this communication unit.
7. maltilevel security management secure device as claimed in claim 1, is characterized in that, described door lock is the electromagnetic door lock that a keying signal that receives this access control unit generation changes electric current.
8. maltilevel security as claimed in claim 1 management secure device, is characterized in that, described secure device also comprise be electrically connected this microprocessor one near the perception unit.
9. one kind has the safety system that maltilevel security as claimed in claim 1 is managed secure device, be applied to the turnover entrance of a national treasury, it is characterized in that, described safety system comprises one at least by this detecting of authentication interface unit wireless and the authenticate device that receives the verify data that is loaded with, and this safety system also connects an administrative center.
CN 201220228084 2012-05-21 2012-05-21 Multiple safety management security device and system Expired - Lifetime CN202939674U (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 201220228084 CN202939674U (en) 2012-05-21 2012-05-21 Multiple safety management security device and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 201220228084 CN202939674U (en) 2012-05-21 2012-05-21 Multiple safety management security device and system

Publications (1)

Publication Number Publication Date
CN202939674U true CN202939674U (en) 2013-05-15

Family

ID=48323902

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201220228084 Expired - Lifetime CN202939674U (en) 2012-05-21 2012-05-21 Multiple safety management security device and system

Country Status (1)

Country Link
CN (1) CN202939674U (en)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103903318A (en) * 2013-11-29 2014-07-02 广州中大电讯科技有限公司 Identity authentication system and identity authentication method in home care based on gesture recognition
CN104567382A (en) * 2014-12-25 2015-04-29 贵州永兴科技有限公司 Universal electric stove with alarm and human face recognition functions
CN109147103A (en) * 2018-06-29 2019-01-04 江苏恒宝智能系统技术有限公司 dynamic password intelligent unlocking system and method
CN110009776A (en) * 2019-03-20 2019-07-12 深兰科技(上海)有限公司 A kind of identity identifying method and device

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103903318A (en) * 2013-11-29 2014-07-02 广州中大电讯科技有限公司 Identity authentication system and identity authentication method in home care based on gesture recognition
CN104567382A (en) * 2014-12-25 2015-04-29 贵州永兴科技有限公司 Universal electric stove with alarm and human face recognition functions
CN104567382B (en) * 2014-12-25 2016-08-24 贵州永兴科技有限公司 A kind of have the universal electric furnace reported to the police with face identification functions
CN109147103A (en) * 2018-06-29 2019-01-04 江苏恒宝智能系统技术有限公司 dynamic password intelligent unlocking system and method
CN110009776A (en) * 2019-03-20 2019-07-12 深兰科技(上海)有限公司 A kind of identity identifying method and device
CN110009776B (en) * 2019-03-20 2021-09-24 深兰科技(上海)有限公司 Identity authentication method and device

Similar Documents

Publication Publication Date Title
CN103390297A (en) Multiple security control security system and security information processing method
US20170264608A1 (en) Visual biometric authentication supplemented with a time-based secondary authentication factor
CN104778765B (en) mobile access control system and method
CN109204227A (en) Vehicle shared system and vehicle sharing method
CN105761347B (en) The electric system Special anti-theft electromagnetism lock system verified based on two dimensional code and GPS
US20080148059A1 (en) Universal, Biometric, Self-Authenticating Identity Computer Having Multiple Communication Ports
US20130076482A1 (en) Secure access system employing biometric identification
JP2019505058A (en) System and method for controlling access to physical space
US20180359635A1 (en) Securitization of Temporal Digital Communications Via Authentication and Validation for Wireless User and Access Devices
GB2420098A (en) Identification card with bio-sensor and user authentication method.
CN104727658A (en) Intelligent lock, intelligent key and control method and device thereof
CN108701383A (en) Attack resistance bio-identification authorization device
CN202939674U (en) Multiple safety management security device and system
CN105447688A (en) Using ce device record of e-card transactions to reconcile bank record
Govindraj et al. Smart door using biometric NFC band and OTP based methods
KR20140021874A (en) System for entrance management using smart code and method of the same
KR20110096576A (en) Access identification and control device
CN205541046U (en) Special theftproof electromagnetic lock of electric power system based on two -dimensional code and GPS verify
TWM439229U (en) Security apparatus with mulitple safety controls and system using the same
US20190028470A1 (en) Method For Verifying The Identity Of A Person
CN110223420A (en) A kind of fingerprint unlocking system
KR20120134607A (en) The door-lock apparatus available to prevent hacking and method for authenticating smart-keys using the same
TWI452204B (en) Security system with mulitple safety controls and method for processing the security signals
CN210924713U (en) Access control system based on iBeacon technology
Pooja et al. Finger print based bank locker security system

Legal Events

Date Code Title Description
C14 Grant of patent or utility model
GR01 Patent grant
CX01 Expiry of patent term
CX01 Expiry of patent term

Granted publication date: 20130515