CN101667163A - Encrypting and authenticating equipment with dual safety chips - Google Patents

Encrypting and authenticating equipment with dual safety chips Download PDF

Info

Publication number
CN101667163A
CN101667163A CN200910235548A CN200910235548A CN101667163A CN 101667163 A CN101667163 A CN 101667163A CN 200910235548 A CN200910235548 A CN 200910235548A CN 200910235548 A CN200910235548 A CN 200910235548A CN 101667163 A CN101667163 A CN 101667163A
Authority
CN
China
Prior art keywords
safety chip
safety
radio
chips
communication
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN200910235548A
Other languages
Chinese (zh)
Inventor
广忠海
华燕翔
罗元遵
李良
刘建军
张炜
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Huada Zhibao Electronic System Co Ltd
Original Assignee
Beijing Huada Zhibao Electronic System Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Huada Zhibao Electronic System Co Ltd filed Critical Beijing Huada Zhibao Electronic System Co Ltd
Priority to CN200910235548A priority Critical patent/CN101667163A/en
Publication of CN101667163A publication Critical patent/CN101667163A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Storage Device Security (AREA)

Abstract

The invention discloses an encrypting and authenticating equipment with dual safety chips, belonging to the technical field of identity authentication. The equipment comprises a shell, a USB plug outside the shell, a first safety chip, a second safety chip and a radio-frequency antenna, wherein the first safety chip, the second safety chip and the radio-frequency antenna are encapsulated in the shell; the first safety chip is connected with the USB plug, is connected with the second safety chip in the shell, and is also connected with an external system host computer by the USB plug; the second safety chip is connected with the radio-frequency antenna and is connected with a radio-frequency receiving terminal by the radio-frequency antenna; and the first safety chip and the second safety chip carry out communication with each other by an I/O interface. In the invention, two safety chips are used, the two safety chips are internally embedded in an intelligent card embedding software system respectively, thus realizing one corresponding application respectively; and the mutual independence of the two safety chips is effectively ensured, the safe and convenient multi-application formsare realized, furthermore, the two safety chips can realize the safe communication by the I/O interface.

Description

A kind of encrypting and authenticating equipment with dual safety chips
Technical field
The present invention relates to the identity identifying technology field, particularly a kind of encrypting and authenticating equipment with dual safety chips.
Background technology
At present, card because safe, easy to use, advantage such as be easy to carry, be widely used in fields such as finance, tax control, communication, oil, medical treatment, amusement, and produced multiple multi-form cards such as non-contact card, double-interface card, CPU card thereupon.In recent years, intelligent code key is widely used in activities such as Web bank, E-Government as a kind of authentication product, is to use the most general personal information security instrument that commercial encryption product requires that meets at present.
In order to strengthen card and the versatility of two kinds of products of intelligent code key and the dirigibility of use, a lot of multi-form cards and intelligent code key have appearred on the market, for example: the IC-card that has USB interface, this IC-card is owing to have USB interface, make as long as can both use IC-card, expanded the application of IC-card in personal computer place with USB interface; Contact/contactless smart cryptographic key, this intelligent code key inside has added the contactless smart card chip and has been connected to antenna on the contactless smart card chip respective pins, make this intelligent code key not only can be operated under the contactless communication mode but also can be operated under the contact communication mode, strengthened the versatility of intelligent code key.
Above-mentioned application for expansion card and intelligent code key, all realized a kind ofly can being used for the multifunctional equipment that USB interface can be used for card reader equipment again, and present needs along with practical application, many application apparatuss become the emphasis of smart card industry development gradually, but multi-application smart card equipment all is to realize (being generally two application) of using by an independent intelligent card chip more at present, this just causes a very serious safe drawback: because the shared intelligent card chip of a plurality of application, authority between each is used when this chip internal is created file and write data can not be separate, file and data are easy to accessed or distort, and have serious potential safety hazard.
Summary of the invention
In order to solve existing many application apparatuss in realizing many application processes, between using, each, the present invention proposes a kind of encrypting and authenticating equipment with dual safety chips owing to the not independent security hidden trouble that exists of authority.
Described equipment specifically comprises the USB plug of housing, outside and first safety chip, second safety chip and the radio-frequency antenna of enclosure interior sealing; Described first safety chip connects described USB plug, and is connected with the external system main frame by described USB plug; Described first safety chip connects described second safety chip simultaneously, and described second safety chip links to each other with radio-frequency antenna, and is connected with the radio frequency receiving terminal by described radio-frequency antenna; The intelligent card embedded software system is all contained in described first safety chip and the second safety chip inside, and described first safety chip and second safety chip carry out communication by the I/O interface.
Described first safety chip comprises usb interface module, first control module and first communication module; Described usb interface module is used to realize described first safety chip and USB plug being connected by the USB communications protocol; Described first communication module is supported expansion I/O interface, and by the safety communication of communications protocol realization with described second safety chip; The embedded intelligent card embedded software of described first control module system, described intelligent card embedded software system controls the inside and outside communication of described first safety chip.
Described second safety chip comprises second communication module, second control module and radio-frequency communication module; Described second communication module is supported expansion I/O interface, and by the safety communication of communications protocol realization with described first safety chip; The embedded intelligent card embedded software of described second control module system, described intelligent card embedded software system controls the inside and outside communication of described second safety chip; Described radio-frequency communication module is the A that meets the ISO14443 agreement, the radio-frequency communication module of B compatibility.
Adopt identical communications protocol to carry out communication between described second communication module and first communication module.
Described equipment also comprises memory module, and described memory module links to each other with first safety chip, realizes the memory function of application data.
Beneficial effect: encrypting and authenticating equipment with dual safety chips provided by the invention is by using two safety chips, and embed the intelligent card embedded software system in the inside of two safety chips respectively, each intelligent card embedded software system follows a using standard, realize corresponding a kind of application, two safety chips are separate, do not disturb mutually, realized many application forms of safe and convenient.In addition, under the separate situation of authority, can pass through I/O interface realization safety communication between the two between two safety chips.
Description of drawings
Fig. 1 is the structural representation of embodiment of the invention encrypting and authenticating equipment with dual safety chips;
Fig. 2 is the high-level schematic functional block diagram of embodiment of the invention USB Key safety chip;
Fig. 3 is the high-level schematic functional block diagram of embodiment of the invention double-interface card safety chip;
Fig. 4 is the principle of work structural representation of embodiment of the invention encrypting and authenticating equipment with dual safety chips.
Embodiment
For making the purpose, technical solutions and advantages of the present invention clearer, embodiment of the present invention is described further in detail below in conjunction with accompanying drawing.
The embodiment of the invention has proposed a kind of encrypting and authenticating equipment with dual safety chips, this equipment includes two safety chips: USB Key safety chip 101 and double-interface card safety chip 102, and each safety chip all has oneself independently software systems, can support different application respectively, and is independent mutually; Connect by the I/O interface between two safety chips simultaneously, realize the safe transmission of data between the two.
Present embodiment has proposed the encrypting and authenticating equipment with dual safety chips of a kind of USB Key and double-interface card formation after effective combination, this equipment is externally supported USB (universal serial bus) and two kinds of communication modes of non-contact type wireless, can carry out communication by ISO7816 standard communications protocol between inner USBKey safety chip and the double-interface card safety chip simultaneously.The user can visit USB Key safety chip by USB (universal serial bus), also can transmit through USB Key safety chip by USB (universal serial bus) and visit the double-interface card safety chip; Simultaneously also can read and write facility, directly double-interface card be conducted interviews by non-contact IC card.
Referring to Fig. 1, the encrypting and authenticating equipment with dual safety chips that present embodiment proposes specifically comprises: USB Key safety chip 101, double-interface card safety chip 102 and the radio-frequency antenna 103 of the USB plug 105 of housing 1, outside and enclosure interior sealing; Wherein the USB Key safety chip 101 of enclosure interior sealing is realized and being connected of the USB plug 105 of outside by its inner usb interface module 1011, and links to each other with the external system main frame by USB plug 105 realizations; The USB Key safety chip 101 of enclosure interior links to each other with double-interface card safety chip 102 simultaneously, and double-interface card safety chip 102 links to each other with radio-frequency antenna 103, and links to each other with the radio frequency receiving terminal by radio-frequency antenna 103.USB Key safety chip 101 all contains the intelligent card embedded software system with double-interface card safety chip 102 inside, and USB Key safety chip 101 can carry out communication by ISO7816 standard communications protocol with double-interface card safety chip 102.
Wherein, USB Key safety chip 101 comprises usb interface module 1011, control module 1012 and communication module 1013, as shown in Figure 2; The embedded intelligent card embedded software of control module 1012 system, the inside and outside communication of the control USB Key of intelligent card embedded software system safety chip 101.This intelligent card embedded software system, can support the corresponding intelligent card using standard according to actual needs, intelligent code key using standard for example, and the identity authentication function of realizing the PKI system by the digital certificate and the key of described USBKey safety chip 101 storage inside.Usb interface module 1011 is used to realize USB Key safety chip 101 and USB plug 105 being connected by the USB communications protocol; Communication module 1013 is supported expansion I/O interface, and by ISO7816, UART or SPI communications protocol, realizes the safety communication with double-interface card safety chip 102.In actual applications, when the user passes through USB plug 105 through USB Key safety chip 101 visit double-interface card safety chips 102, USB Key safety chip 101 carries out communication with double-interface card safety chip 102 by I/O interface (for example ISO7816 standard communications protocol), access rights between USB Key safety chip 101 and the double-interface card safety chip 102 are controlled by inner separately intelligent card embedded software system, independent fully, be independent of each other.
Wherein, double-interface card safety chip 102 comprises communication module 1021, control module 1022 and radio-frequency communication module 1023, as shown in Figure 3; The embedded intelligent card embedded software of control module 1022 system, the inside and outside communication of intelligent card embedded software system control double-interface card safety chip 102.This intelligent card embedded software system can support the corresponding intelligent card using standard according to actual needs, for example PBOC standard etc.Communication module 1021 is supported expansion I/O interface, and by ISO7816, UART or SPI communications protocol, realizes the safety communication with USB Key safety chip 101.Radio-frequency communication module 1023 is for meeting the A of ISO14443 agreement, the radio-frequency communication module of B compatibility.
In actual applications, adopt identical communications protocol to carry out communication between communication module 1013 and the communication module 1021, finish the two-way communication between USB Key safety chip 101 and the double-interface card safety chip 102, communications protocol can be ISO7816, UART or SPI etc.
USB Key safety chip 101 adopts the big electronics CIU96S192UFB chip of China in the present embodiment, and double-interface card safety chip 102 adopts port core UT83RNC128 chip.
Fig. 4 shows the principle of work structural representation of the encrypting and authenticating equipment with dual safety chips that present embodiment provides, external system main frame 104 links to each other with USB Key safety chip 101 by USB plug 105, realize and the communicating by letter of external system main frame 104 that external system main frame 104 can or have the mobile phone of USB interface for PC, PDA; USB Key safety chip 101 links to each other with double-interface card safety chip 102 by ISO7816 standard interface 106, and double-interface card safety chip 102 utilizes built-in radio-frequency antenna to carry out communicating by letter of non-contact card form by induction region 107 with non-contact IC card read-write facility 108.The intelligent card embedded software system is contained in USB Key safety chip 101 inside, these software systems are supported the intelligent code key using standard, utilize the digital certificate of USB Key safety chip 101 storage inside and the identity authentication function that key is realized the PKI system, constitute the form of intelligent code key.Double-interface card safety chip 102 is by inner radio-frequency communication module and radio-frequency antenna, realize reading and writing communicating by letter of facility with non-contact IC card, the intelligent card embedded software system is contained in its inside, and these software systems are supported to use based on the wallet bankbook of PBOC2.0 standard.Between USB Key safety chip 101 and the double-interface card safety chip 102, can connect by the I/O interface, the I/O interface of present embodiment is the ISO7816 standard communication interface.
In order more clearly to describe the technical scheme of present embodiment, enumerate the main application of several present embodiment encrypting and authenticating equipment with dual safety chips below, specifically comprise:
1. intelligent code key is used
When the encrypting and authenticating equipment with dual safety chips of present embodiment was connected with the external system main process equipment by USB plug, the client software by the external system main process equipment carried out application choice; When selecting to realize identity authentication function, realize the intelligent code key function by USB Key safety chip 101, this moment, this encrypting and authenticating equipment with dual safety chips was identical with common intelligent code key working method;
2. by USB interface the double-interface card safety chip is realized the application of wallet bankbook
When the encrypting and authenticating equipment with dual safety chips of present embodiment was connected with the external system main process equipment by USB plug, the client software by the external system main process equipment carried out application choice; If select wallet bankbook function, then be connected with the application corresponding system interface, and by USB Key safety chip 101 and USB plug 105 as data transmission channel, realize the data communication between PC and the double-interface card safety chip 102; Can realize supplementing with money, inquiring about and function such as consumption by this mode to double-interface card safety chip 102;
3. realize the application of wallet bankbook by the noncontact card-reading machine
When the encrypting and authenticating equipment with dual safety chips of present embodiment enters the induction region of noncontact card-reading machine, double-interface card safety chip 102 is realized the non-contact card communication function by radio-frequency antenna and noncontact card-reading machine that this equipment is built-in; For example, can realize supplementing with money, inquiring about and function such as consumption by this mode to double-interface card safety chip 102.
This shows that the encrypting and authenticating equipment with dual safety chips that present embodiment provides is externally supported USB (universal serial bus) and two kinds of communication modes of non-contact type wireless; Simultaneously, can carry out data transmission by the communications protocol of appointment between two safety chips, and the intelligent card embedded software system of each built-in chip type guaranteed each use between the independence of authority, realized many application forms of safe and convenient.
In addition, the encrypting and authenticating equipment with dual safety chips that present embodiment provides can also comprise memory module 109, and memory module 109 links to each other with USB Key safety chip 101, realizes having the safe U disc form of identity authentication function, realizes the storage of application data.
The encrypting and authenticating equipment with dual safety chips that the embodiment of the invention provides is by using two safety chips, and embed the intelligent card embedded software system in the inside of two safety chips respectively, each intelligent card embedded software system follows a using standard, realize corresponding a kind of application, guaranteed the independence of each safety chip, guarantee application safety, realized many application forms of safe and convenient.In addition, under the separate situation of authority, can pass through the safety communication between two safety chips of I/O interface realization between two safety chips.
The above only is preferred embodiment of the present invention, and is in order to restriction the present invention, within the spirit and principles in the present invention not all, any modification of being done, is equal to replacement, improvement etc., all should be included within protection scope of the present invention.

Claims (5)

1. encrypting and authenticating equipment with dual safety chips is characterized in that: described equipment specifically comprises the USB plug of housing, outside and first safety chip, second safety chip and the radio-frequency antenna of enclosure interior sealing; Described first safety chip connects described USB plug, and is connected with the external system main frame by described USB plug; Described first safety chip connects described second safety chip simultaneously, and described second safety chip links to each other with radio-frequency antenna, and is connected with the radio frequency receiving terminal by described radio-frequency antenna; The intelligent card embedded software system is all contained in described first safety chip and the second safety chip inside, and described first safety chip and second safety chip carry out communication by the I/O interface.
2. encrypting and authenticating equipment with dual safety chips as claimed in claim 1 is characterized in that, described first safety chip comprises usb interface module, first control module and first communication module; Described usb interface module is used to realize described first safety chip and USB plug being connected by the USB communications protocol; Described first communication module is supported expansion I/O interface, and by the safety communication of communications protocol realization with described second safety chip; The embedded intelligent card embedded software of described first control module system, described intelligent card embedded software system controls the inside and outside communication of described first safety chip.
3. encrypting and authenticating equipment with dual safety chips as claimed in claim 2 is characterized in that, described second safety chip comprises second communication module, second control module and radio-frequency communication module; Described second communication module is supported expansion I/O interface, and by the safety communication of communications protocol realization with described first safety chip; The embedded intelligent card embedded software of described second control module system, described intelligent card embedded software system controls the inside and outside communication of described second safety chip; Described radio-frequency communication module is the A that meets the ISO14443 agreement, the radio-frequency communication module of B compatibility.
4. encrypting and authenticating equipment with dual safety chips as claimed in claim 3 is characterized in that, adopts identical communications protocol to carry out communication between described second communication module and first communication module.
5. as arbitrary described encrypting and authenticating equipment with dual safety chips among the claim 1-4, it is characterized in that described equipment also comprises memory module, described memory module links to each other with first safety chip, realizes the memory function of application data.
CN200910235548A 2009-10-19 2009-10-19 Encrypting and authenticating equipment with dual safety chips Pending CN101667163A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200910235548A CN101667163A (en) 2009-10-19 2009-10-19 Encrypting and authenticating equipment with dual safety chips

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200910235548A CN101667163A (en) 2009-10-19 2009-10-19 Encrypting and authenticating equipment with dual safety chips

Publications (1)

Publication Number Publication Date
CN101667163A true CN101667163A (en) 2010-03-10

Family

ID=41803785

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200910235548A Pending CN101667163A (en) 2009-10-19 2009-10-19 Encrypting and authenticating equipment with dual safety chips

Country Status (1)

Country Link
CN (1) CN101667163A (en)

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102662874A (en) * 2012-04-06 2012-09-12 中国科学院数据与通信保护研究教育中心 Double-interface encryption memory card and management method and system of data in double-interface encryption memory card
CN103532598A (en) * 2013-10-10 2014-01-22 刘宏伟 Multifunctional near field communication integrated system and method
CN104143996A (en) * 2013-05-09 2014-11-12 英特尔公司 Radio communication devices and methods for controlling a radio communication device
US9319088B2 (en) 2013-05-09 2016-04-19 Intel Corporation Radio communication devices and methods for controlling a radio communication device
CN105654168A (en) * 2015-12-25 2016-06-08 金邦达有限公司 Embedded intelligent safety module, safety hardware device, safe data processing system and operation method of embedded intelligent safety module
CN105825263A (en) * 2016-03-09 2016-08-03 深圳市文鼎创数据科技有限公司 PBOC smart card
CN105989398A (en) * 2014-09-22 2016-10-05 天地融科技股份有限公司 Simulation card
CN105989397A (en) * 2014-09-22 2016-10-05 天地融科技股份有限公司 Simulation card
CN108307388A (en) * 2018-02-01 2018-07-20 北京华大智宝电子系统有限公司 A kind of wireless security terminal and data ciphering method
US10181117B2 (en) 2013-09-12 2019-01-15 Intel Corporation Methods and arrangements for a personal point of sale device
US10592890B2 (en) 2014-09-03 2020-03-17 Intel Corporation Methods and arrangements to complete online transactions
CN111475430A (en) * 2019-01-24 2020-07-31 深圳市文鼎创数据科技有限公司 Java card chip communication equipment and communication method
CN114590041A (en) * 2021-11-02 2022-06-07 珠海艾派克微电子有限公司 Chip, device and data transmission method

Cited By (16)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102662874A (en) * 2012-04-06 2012-09-12 中国科学院数据与通信保护研究教育中心 Double-interface encryption memory card and management method and system of data in double-interface encryption memory card
CN102662874B (en) * 2012-04-06 2015-06-10 中国科学院数据与通信保护研究教育中心 Double-interface encryption memory card and management method and system of data in double-interface encryption memory card
CN104143996A (en) * 2013-05-09 2014-11-12 英特尔公司 Radio communication devices and methods for controlling a radio communication device
US9319088B2 (en) 2013-05-09 2016-04-19 Intel Corporation Radio communication devices and methods for controlling a radio communication device
US10181117B2 (en) 2013-09-12 2019-01-15 Intel Corporation Methods and arrangements for a personal point of sale device
CN103532598A (en) * 2013-10-10 2014-01-22 刘宏伟 Multifunctional near field communication integrated system and method
US10592890B2 (en) 2014-09-03 2020-03-17 Intel Corporation Methods and arrangements to complete online transactions
CN105989397A (en) * 2014-09-22 2016-10-05 天地融科技股份有限公司 Simulation card
CN105989398A (en) * 2014-09-22 2016-10-05 天地融科技股份有限公司 Simulation card
CN105654168B (en) * 2015-12-25 2019-05-03 金邦达有限公司 Embedded intelligence security module, secure hardware device, system and working method
CN105654168A (en) * 2015-12-25 2016-06-08 金邦达有限公司 Embedded intelligent safety module, safety hardware device, safe data processing system and operation method of embedded intelligent safety module
CN105825263B (en) * 2016-03-09 2018-11-02 深圳市文鼎创数据科技有限公司 A kind of PBOC smart cards
CN105825263A (en) * 2016-03-09 2016-08-03 深圳市文鼎创数据科技有限公司 PBOC smart card
CN108307388A (en) * 2018-02-01 2018-07-20 北京华大智宝电子系统有限公司 A kind of wireless security terminal and data ciphering method
CN111475430A (en) * 2019-01-24 2020-07-31 深圳市文鼎创数据科技有限公司 Java card chip communication equipment and communication method
CN114590041A (en) * 2021-11-02 2022-06-07 珠海艾派克微电子有限公司 Chip, device and data transmission method

Similar Documents

Publication Publication Date Title
CN101667163A (en) Encrypting and authenticating equipment with dual safety chips
CN103562937B (en) Smartcard performance intensifier circuit and system
CN201732388U (en) Credible intelligent card
CN100547606C (en) Strengthen active radio frequency identification system information safety and compatible method and device
US20100181377A1 (en) Card reader with near field communication function and near field communication device thereof
CN100498851C (en) Multiple uses KEY device with NFC function
EP2809054B1 (en) Mobile electronic device with transceiver for wireless data exchange
CN201387639Y (en) Card reader and mobile payment terminal
US20130092740A1 (en) Smart card capable of independently displaying information
CN203287939U (en) Mobile payment full-card supporting single-wire transport protocol
CN101719211B (en) IC card reader and method for safely reading and writing IC card
CN101237690A (en) Dual interface SIM card
CN105205663A (en) Chip card and password-free authentication method based on chip card
KR101546071B1 (en) Chip card with contact and contactless modes and operating method of the same
CN201594276U (en) Double-security chip encryption and authentication device
CN101216899B (en) SIM card chip compatible with non-contact logic encryption card
CN105303228A (en) Mobile payment chip, terminal and method
US20120235789A1 (en) Ic card, ic card manufacturing method, ic card issuing method, and communication method
CN105512716A (en) Multifunctional IC card
CN102750567A (en) Secure digital (SD) card supporting multiple accounts and capable of being used for remote mobile payment and short range communication
CN202142082U (en) Financial IC card reader-writer
CN205354084U (en) Multi -function IC card
CN105809231A (en) Multi-frequency multi-purpose electronic tag and using method thereof
CN201974819U (en) Electronic signature tool
CN104809420A (en) Device having storage function

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Open date: 20100310