CN101945177A - Telephone-card separated mail encryption telephone system - Google Patents

Telephone-card separated mail encryption telephone system Download PDF

Info

Publication number
CN101945177A
CN101945177A CN2010102964535A CN201010296453A CN101945177A CN 101945177 A CN101945177 A CN 101945177A CN 2010102964535 A CN2010102964535 A CN 2010102964535A CN 201010296453 A CN201010296453 A CN 201010296453A CN 101945177 A CN101945177 A CN 101945177A
Authority
CN
China
Prior art keywords
card
machine
postal delivery
telephone
telephone set
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN2010102964535A
Other languages
Chinese (zh)
Inventor
张丽艳
徐斗勋
王平
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Bing Gang Technology Development Co Ltd
Original Assignee
Beijing Bing Gang Technology Development Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Bing Gang Technology Development Co Ltd filed Critical Beijing Bing Gang Technology Development Co Ltd
Priority to CN2010102964535A priority Critical patent/CN101945177A/en
Publication of CN101945177A publication Critical patent/CN101945177A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Telephonic Communication Services (AREA)

Abstract

The invention aims to provide a telephone-card separated mail encryption telephone system. The telephone-card separated mail encryption telephone system realizes comprehensive secret communication equipment with multiple functions in one machine and realizes encrypted transmission functions of comprehensive services of voice, U disk data, computer data, paperless fax data and the like on a PSTN network. The invention adopts the following technical scheme that: the telephone-card separated mail encryption telephone system consists of a certificate key management center, a UK secret card and a mail transmission telephone. The certificate key management center is a key management center for authorized certificate generation, distribution center, centralized management and off-line work. The UK secret card is connected with the mail transmission telephone through a UK secret card interface. The system has the advantages that the telephone-card separated mail encryption telephone solves the problem of simultaneously realizing encrypted transmission of the voice, the U disk data, the computer data and the fax data with one machine type, and can form various data encryption application model.

Description

A kind of separation between machine and card formula postal delivery scrambler phone machine system
Technical field
The present invention relates to a kind of communication security equipment, relate in particular to a kind of separation between machine and card formula postal delivery scrambler phone machine system.
Background technology
Telecommunications development in the world today is maked rapid progress, and the various communication technologys emerge in an endless stream, and along with the appearance of Internet technology, data transfer task is made way for the Internet basically, at the PSTN(public switch telephone network) to transmit data on the net fewer and feweri.
But realize on the net that at PSTN the safe transmission of data has its unique advantage, because the PSTN net is a point-to-point communication, can all not be placed on the public server as data that the Internet passes, everyone can visit, at the PSTN net is point-to-point communication, and information can only be transmitted between receiving-transmitting sides, and other people can't read its data, thereby fail safe is higher, and the probability of wooden horse, virus infections and assault exists hardly.The patent No. is that the patent of invention of CN101729641 discloses a kind of machine card separated acoustic code encryption telephone set system, described invention is intended to the communication security device that has authentication that the PSTN net provides a kind of separation between machine and card, accomplished that technically each conversation encrypts at every turn, key disappears with the back, can not decipher once communication data even take postal delivery scrambler phone machine.
But up to the present, a kind of equipment of on a telephone set, realizing functions such as voice encryption, USB flash disk data encryption, computer data enciphering and facsimile encryption also do not occur, the professional encryption device of separation between machine and card formula integrated data more do not occur.
Summary of the invention
In order to address the above problem, the object of the present invention is to provide a multi-functional synthesis security communication equipment of telephone set, realize the encrypted transmission function of integrated services such as voice, USB flash disk data, computer data, facsimile data and the no paper facsimile function of not encrypting at PSTN on the net.
For achieving the above object, the present invention is achieved through the following technical solutions: described a kind of separation between machine and card formula postal delivery scrambler phone machine system is made up of certificate KMC, the close card of UK and postal delivery telephone set.Certificate KMC is authoritative certificate generation, distribution and KMC, and the close cartoon of UK is crossed the close card of UK-and is connected with the postal delivery telephone set, and the encryption equipment that is system also is the authentication pass.
Wherein, certificate KMC is made up of data backup server, certificate and KMC's server, user data server, operator terminal PC, the close card of center UK and related software module.
Operator terminal is finished the generation and the distribution of certificate, will be to data such as the digital certificate of the unique label of the close card of the UK of each telephone set of sending by post configuration the whole network, keys, and described storage makes the close jig of its UK that encryption and decryption functions such as authentication be arranged in the close card internal memory of UK.
1) service that key material is produced, registers, authenticates, distributes, installs, stores, files, cancels is also used in wherein said data certificate and KMC's server implementation.
2) wherein digital certificate format is pressed GB/T 20518-2006/X.509 V3 design, the user certificate structure comprises version number, certificate serial number, signature algorithm identifier symbol, issuer title, the term of validity, principal name, main body public key information, the key identification of issuing organization, main body key identifier, certificate rise time, CRL(certificate revocation list) content such as point of departure; It is inner that the certificate content not only disperses to be stored in the close card of UK, also is stored in certificate KMC.
3) user should get certificate to the certificate and the KMC of regulation by " system of real name " when buying separation between machine and card formula postal delivery scrambler phone machine, and certificate data is stored in user UK Mi Kanei.Authority and the certificate of having guaranteed the close card internal data of UK thus can not distort, counterfeit.After the user obtains the close card of UK, the telephone set encryption function of can sending by post.Name and user data table content can be upgraded by authenticate key administrative center in the certificate, and when upgrading the close card of UK, the data of certificate KMC user data server will be upgraded synchronously.
Wherein, the close card of described UK is made up of CPU, encryption chip and storage chip, the close card of UK, LCD display and Chinese character memory chip.Wherein, the close card of UK, encryption chip and storage chip, LCD display and Chinese character memory chip are connected CPU respectively.The close card of described UK be encryption equipment be again the authentication pass, be the core key modules of present device; Close card storage is subjected to the protection of encryption chip in encryption chip and storage chip, the stranger can't read; When using, the user inserts the close card of UK, the time spent does not extract, can carry, rely on the interior certificate of card to carry out authentication, digital signature and functions such as liquid crystal display screen Chinese character, english name demonstration, guarantee scrambler phone user's true identity, LCD display can show 16 Chinese characters or 64 English alphabet/numerals (can increase/reduce the demonstration number of words as required).
Further, the close jig of described UK has two types: a kind of is the close card of clique UK-1; Another kind is the close card of the UK-2 of social pattern, and the close card of clique UK-1 is realized coded communication between a certain group internal user, and the user can't insert this group outside the group; Communicate between the UK-2 of social pattern realization and the close card of any social pattern; Clique user and the user's of social pattern character is determined by the close card of UK.
Further, the close card display screen of user UK shows our owner's name and identity ID number when on-hook, when confirming that the other side's identity enters close attitude state, then shows the other side people's name and identity ID number.
Further, the close card of UK belongs to inactive component, and power supply is provided by postal delivery scrambler phone machine, therefore can both insert and both pull out use.The close card of UK does not have corresponding relation with telephone set.
Further, receiving-transmitting sides reaches authentication by digital signature, and hashings such as SHA-1 or SM3 carry out data integrity, authenticity verification.The close card stored of UK user's main information and key management information are digital certificate information, and this information bank is provided with encipherment protection mechanism and the anti-tamper measure of information, to guarantee the safe and reliable of the close card internal information of centre data and UK.The close jig of UK has secret key encryption and information encryption algorithm such as RSA, ECC, AES, DES, 3DES, SM1, SM2, SM3, SM4 scheduling algorithm.
Wherein, described postal delivery telephone set comprises the telephone set network subsystem, and the bright circuit that changes closely, speech digit are handled and speech data compression subsystem, USB flash disk data, computer data transmission process subsystem, the fax processing subsystem, ARM master control subsystem, PSTN/IP network interface subsystem, transfer of data MODEM subsystem, the keyboard subsystem, LCD shows subsystem, circuit such as caller identification subsystem, power subsystem and video image module subsystem are formed.
Further, described keyboard subsystem comprises encryption key, removes operating key, navigation keys such as close key, deletion, affirmation.
Further, described LCD shows that subsystem comprises touch-screen and Minigui or QT Chinese character, kinds of words editor's software for display bag.
When the needs coded communication, insert the close card of UK, call peer and put through after, either party press encryption key, receiving-transmitting sides will enter digitize voice, U coils the data encryption state, at this moment system forwards the digital processing operating state to.
Described separation between machine and card formula postal delivery scrambler phone machine can be realized following function:
1) voice encryption transmission:
Show our address name and id number on the close card of UK during the off-hook dialing, can carry out unencryped word communication behind the call peer, enter the digital communication state by receiving-transmitting sides behind the encryption key.In order to realize the digital encryption system of voice, at first must carry out the digitized processing of voice, analog voice is become audio digital signals, voice signal is carried out A/D, the D/A conversion.Analog voice signal leads by U and carries out pcm encoder, becomes the 64KBPS speed data, and promptly analog voice signal becomes speech digit information without distortion, again speech digit information is carried out compressed and decompressed processing, so as on the narrowband telephone circuit transmitting audio data.
In like manner the 64KBPS speech digit information behind the decompress(ion) of Jie Shouing becomes and can understand analog voice signal.
ARM CPU sets up data channel as the master control chip by receiving-transmitting sides behind the encryption key; Carry out the read-write of speech data; In the presence of the close card of UK, carry out both sides' authentication; Carry out key, cryptosync, show the other side's name and id number after cryptosync is finished on the UK screen; Packed data is carried out encrypting and decrypting; Control MODEM carries out work such as the transmission of enciphered data and reception.As required to the dialog context after the deciphering record, function such as playback.
2) USB flash disk data, computer data enciphering send:
The a lot of document copyings that send are to USB, this USB flash disk is inserted separation between machine and card formula postal delivery scrambler phone machine, and be stored under the specified file catalogue, described separation between machine and card formula postal delivery scrambler phone facility have the 8G memory space, and big file also can be encrypted by separation between machine and card formula postal delivery scrambler phone machine and transmit; It is also similar that computer data enciphering sends, and the document that Computerized Editing is good or deposited the memory space that file is deposited separation between machine and card formula postal delivery scrambler phone machine also can be by computer to carrying out data communication between the computer.
At first press encryption key behind the call peer, enter and encrypt the attitude working stage, specify this to send behind file by sending acknowledgement key, this document can be encrypted transmission automatically, record the other side telephone number, filename, date of shipping, time etc. are in order to log management during transmission, and show the process of transmitting progress bar, according to circumstances continue to give a file or because other incidents are stopped paying out and sent file, this incident finishes the file that follow-up supervention did not distribute last time.
3) no paper facsimile function:
(1) facsimile transmission
On PC, formatted files such as word, excel, ppt, png, jpg are converted to facsimile format (g3 compression standard) file with software, with u dish this facsimile format file is inserted into the present invention then and sends by post on the scrambler phone machine, through PSTN above-mentioned file is sent to Common Facsimile Machine or the other side scrambler phone machine (encrypting transmission) of sending by post again.The innovation of this process is: having skipped over document must print, and utilizes facsimile machine the process of hard copy fax then, has realized facsimile transmission without paper, has realized sending the function of fax paper without facsimile machine.
(2) fax receives
Described separation between machine and card formula postal delivery scrambler phone machine can receive the fax (encrypt and transmit) that Common Facsimile Machine or present device are sent.When facsimile machine or present device sent fax for the other side's separation between machine and card formula postal delivery scrambler phone machine, the separation between machine and card formula postal delivery scrambler phone machine back of receiving faxes generated the facsimile format file and leaves under the specified file catalogue.For the fax that receives, if need to send once more, then do not need the software conversion, can directly be sent to Common Facsimile Machine or present device (encrypt and transmit); If need check, can be inserted on the PC with USB flash disk and check; If need to print, can print the fax that receives, the fax of printing and the fax that receives with Common Facsimile Machine are without any difference.The innovation of this process is: can save as the electronic edition fax after receiving faxes, deposit conveniently, can directly check on PC, and need not to print, realize that facsimile machine receives the low-carbon (LC) function of file without facsimile transmission paper and facsimile machine.
4) realize above-mentioned professional encrypted transmission function on the Internet:
Above-mentioned all functions all can realize on the internet.
5) screen displaying and note sending function:
Utilize touch-screen and Minigui/QT function to carry out the input of Chinese character, English alphabet and copy editor's function, comprise that file, character additions and deletions change, storage copy, deleted file etc.; The note of being write on screen is directly encrypted and is sent to the other side;
6) two-way demonstration of video image and image information encrypted transmission function:
The image of local camera being photographed by the video image module is encrypted after compression and is sent to the other side, and the other side decompresses, be presented on the lcd screen after the deciphering, also local video image can be simultaneously displayed on the local lcd screen;
7) other functions:
(1) journal function;
(2) time is adjusted and calendar function;
(3) phonebook function;
According to PSTN, IP network environmental quality, following six safe practice strategies have been proposed in system design:
1. research and develop certificate KMC, authority issues licence, the telephone encryption field is introduced in authentication first.
For the science safety management of present device certificate in application, native system sets up certificate KMC to be the unique digital certificate of the close card distribution the whole network of each user UK.The service that key material is produced, registers, authenticates, distributes, stores, destroys is implemented and used in this center according to security strategy.Certificate Distribution Center gives the close card distributing certificates of user UK data, UK is close snap fits into certificate after, just can carry out coded communication.
2. design digital certificate, content comprehensively, format standard.
For realizing authentication and cryptosecurity, designed digital certificate, its form is pressed GB/T 20518-2006/X.509 V3 design, the user certificate structure comprises version number, certificate serial number, signature algorithm identifier symbol, issuer title, the term of validity, principal name, main body public key information, the key identification of issuing organization, main body key identifier, certificate rise time, CRL(certificate revocation list) content such as point of departure.
Digital certificate disperses to be stored in each user UK Mi Kanei, and the certificate content not can read, can not distort.
3. the separation between machine and card application form has been developed encrypted word, USB flash disk data, computer data enciphering, facsimile encryption application technology first, is convenient to promote on a large scale.
On encryption handling mechanism, adopt " machine, card separate " technology." machine " is present device postal delivery telephone set, and " card " is the close card of UK.This card internal memory contains this user's certificate and key information.
Key differentiate, authentication, solved the identification of making a show of anti-voice first, development LCD demonstration the other side name Display Technique
The non-public and private key cryptographic system of RSA/ECC/SM2 is adopted in authentication, to being distributed to each user after the digital certificate signature, guarantees both call sides certificate legitimacy, validity, the credibility of identity and the safety of data encryption key.When intercommunication, except sound discriminates one's identification, can also on the close card of UK, show the other side's name according to the other side's identity code.Described digital certificate is used for receiving-transmitting sides user's authentication, with the center private key to all user certificates sign, territory group's management information, legitimacy, validity and the authenticity of key management information such as download user digital certificate data and communications and liaison table to guarantee user certificate.
5. the protection of cipher key delivery.
The cipher key delivery of native system adopts non-cryptographic algorithm of RSA/ECC/SM2 and SHA-1 hashing algorithm, guarantee the safety of key and integrality, can not distorting property.With PKIs such as RSA/ECC/SM2 to encryption key such as SM1, SM4, DES, 3DES carries out the hash computing to symmetric key again with SHA-1/SM3 when symmetric keys such as AES carry out encrypted transmission, with the protection key can not distorting property and data integrity.
6. described key management comprises that three kinds of key kinds and function thereof are: i.e. digital certificate key RSA/ECC/SM2 public private key pair to being distributed to each user after the certificate signature, guarantees the legitimacy validity of digital certificate and the authenticity of identity; The protection key of symmetric cryptographic key, the encryption of symmetric key can not be distorted the hash algorithm with integrality cryptographic algorithm SHA-1/SM3 with RSA/ECC/SM2 cryptographic algorithm and symmetric key; Symmetric key such as SM1, SM4, SM9, ASE, DES, random numbers such as 3DES are used for the encryption and decryption of voice/USB flash disk data, computer data/facsimile data.
The basic effect of this security strategy is to comprise strick precaution that the senior hacker's identity of third party is pretended to be: anti-man-in-the-middle attack, and anti-impersonation attack and anti-replay-attack, present device has solved above-mentioned safety precaution problem well.
The invention has the advantages that: separation between machine and card formula postal delivery scrambler phone machine has solved a type and has realized that simultaneously voice, USB flash disk data, computer data, facsimile data encrypted transmission problem and video image show and the encrypted transmission problem, and can form various data encryption application model.
Description of drawings
Accompanying drawing 1 is a certificate of the present invention KMC schematic block diagram;
Accompanying drawing 2 is that the close card of UK of the present invention is formed schematic block diagram;
Accompanying drawing 3 is a PSTN net postal delivery telephone principle schematic diagram of the present invention;
Accompanying drawing 4 is PSTN net unencryped word of the present invention, data encryption type postal delivery telephone principle block diagram;
Accompanying drawing 5 is a PSTN/IP net type postal delivery telephone principle schematic block diagram of the present invention.
Wherein, the 101-data backup server, 102-certificate and KMC's server, the 103-user data server, 104-operator terminal PC, the close card of 105-center UK, the close card of 201-UK-, 202-encrypts and storage chip, 203-CPU, the 204-Chinese character base, the 205-display screen, the 301-Telephone handset, the control of 302-circuit, 303-plain old telephone machine circuit, 305-voice A/D, the D/A conversion, compressed and decompressed module, the 306-keyboard, the 307-ARM central processing unit, 308-MODEM, the 309-facsimile machine, 310-facsimile data protocol conversion module, 311-U coils interface, the 312-U dish, the computer data district, 313-sends, receive control module, the close card of 314-telephone set end UK-, the 315-RS232 serial ports, the 316-PC machine, the 317-LCD display, 320-PSTN telephone office, 401-LCD and keyboard, the control of 501-IP network switching, the 502-network interface, the 503-INTER net.
Embodiment
A kind of separation between machine and card formula postal delivery scrambler phone machine of the present invention system is described in further detail to coming below in conjunction with the drawings and specific embodiments, but not as the qualification to invention.
Embodiment 1:
Described a kind of separation between machine and card formula postal delivery scrambler phone machine system is made of certificate KMC, the close card of UK and postal delivery telephone set.Certificate KMC is authoritative certificate and KDC, manages concentratedly, works offline; , the close cartoon of UK is crossed the close card of UK-and is connected with the postal delivery telephone set.
Wherein, described certificate KMC is connected to form successively by user data backup server 101, certificate and KMC's server 102, user data server 103, operator terminal PC 104, the close card 105 of center UK, as shown in Figure 1.
Wherein, certificate and KMC's server 102 are finished the generation and the distribution of certificate by operator terminal PC 104, will be to data such as the digital certificate of the unique label of the close card of each telephone set UK that sends by post configuration the whole network, keys, and be stored in the close card internal memory of UK, make the close jig of its UK that authentication and encryption and decryption functions be arranged.
Wherein, user data server 103 storage all customer datas, the digital certificate, user that comprises user historical data, user's blacklist, certificate revocation list etc. in the past.User data backup server 101 is a backup server, in case the usefulness of other servers emergent backup when being out of order.UK close card 105 the whole networks in center have only one, are authoritative Distribution Center to each user's the authentication close card of the needed superlative degree of signing.Operator terminal PC 104 is authenticate key management center server 102 man-machine terminal equipment, has operator audit, goes up measure such as machine permission, can not altered data to guarantee the safety of centre data.
The close card of described UK is referring to shown in Figure 2, comprise the close card 201 of UK-, encryption and storage chip 202, CPU 203, Chinese character base 204 and display screen 205, wherein CPU 203 is in the center, links to each other with the close card 201 of UK-, encryption and storage chip 202, Chinese character base 204 and display screen 205 respectively.
The close card of UK divides two types, close card of clique UK-1 and the close card of the UK-2 of social pattern, and difference is that the former is furnished with contact contingency table and the latter does not have.The close card of described user UK be encryption equipment be again the authentication pass, close card storage encrypt and storage chip 202 in, be subjected to the protection of encryption chip, the stranger can't read.
Insert the close card of UK when the user uses encryption function, rely on the interior certificate of card to carry out authentication, digital signature and functions such as liquid crystal display screen Chinese character, english name demonstration, guarantee scrambler phone user's true identity.
The close card display screen 205 of user UK shows our owner's name and identity ID number when on-hook, when confirming that the other side's identity enters close attitude state, then show the other side people's name and identity ID number.
Referring to shown in Figure 3, described postal delivery telephone set adopts PSTN net type digital telephone set, by telephone handle 301, circuit control 302, plain old telephone circuit 303, voice signal A/D, D/A conversion and compression/decompression device 305, keyboard 306, ARM central processing unit 307, modem 308, facsimile machine 309, facsimile data protocol conversion module 310, U coils interface 311, USB flash disk and computer data district 312, send and receive control module 313, the close card 314 of telephone set end UK-, RS232 serial ports 315, PC 316, LCD display 317 and video image module (not shown) are formed.ARM central processing unit 307 is in middle position, respectively with circuit control 302, voice signal A/D, D/A conversion and compression/decompression device 305, keyboard 306, modem 308, facsimile data protocol conversion module 310, U dish interface 311, USB flash disk and computer data district 312, send and receive control module 313, the close card 314 of telephone set end UK-, RS232 serial ports 315, LCD display 317 and be connected with video image module (not shown), the telephone set of wherein sending by post is connected pstn telephone office 320 by circuit control 302 with MODEM308.
After inserting, calls out by the close card of UK, cry logical called back either party press encryption key, receiving-transmitting sides carries out the cryptosync process, and send " encrypting; please after a while ", about about 20 seconds, receiving-transmitting sides entered encrypted state, can carry out the cryptographic operation of voice, USB flash disk data, computer data, facsimile data and view data.
1) voice encryption processing procedure: by voice A/D, D/A and compressed and decompressed 305, voice signal is carried out digitized processing, and encrypt by close card of UK and ARM central processing unit 307 the compression back, enciphered message sends to pstn telephone office 320 through MODEM 308 again, and the recipient carries out demodulation, deciphering, decompression, D/A and changes and obtain understanding that voice signal send receiver.
2) USB flash disk data, computer data transmission course:
Insert USB flash disk from USB flash disk interface 311,312 select the file that will send from USB flash disk and computer data district, navigation key and operating key by keypad 306, and by file transmission, reception control 313, after the close Cavan of UK event data is encrypted, encrypt file is sent to MODEM 308 and pstn telephone office 320, on LCD display 317, show in the process of transmitting to receive, send telephone number, filename, transmission time of reception and progress bar; Usefulness in order to log query.
3) facsimile data transmission course:
(1) no paper facsimile transmission:
The fax paper that will send with no paper fax software on PC 316 converts the fax compressed file to, and copying USB flash disk to, the postal delivery telephone set is sent to file on the other side's Common Facsimile Machine (fax is not encrypted) or the postal delivery scrambler phone machine (facsimile encryption) by pstn telephone office 320 by USB flash disk interface 311, USB flash disk and computer data district 312, transmission reception control module 313, ARM central processing unit 307, MODEM 308.Realized facsimile transmission without paper, sent fax paper without facsimile function.
(2) no paper fax receives:
The postal delivery telephone set is received faxes behind machine 309 files, generates the facsimile format files at facsimile data protocol conversion software 310, and leaves under the specified file catalogue.If need check or print, can check or print all that the fax of printing and the fax that receives with Common Facsimile Machine are without any difference by computer.The part of having realized receiving faxes can save as the electronic edition fax paper, and fax receives the low-carbon (LC) function without facsimile transmission paper and facsimile machine.
4) screen displaying and SMS encryption process of transmitting:
Import Chinese character, English alphabet and symbol with the Minigui/QT software kit on touch-screen, the style of writing of going forward side by side word editor is with the formation note, and encryption sends.
5) video image shows and image information encrypted transmission process:
Video image with local camera shooting carries out encrypting transmission by the ARM central processing unit after the image compression through video image module (not shown), and the other side is presented at image on the screen after decompressing, deciphering.
Embodiment 2:
Described a kind of separation between machine and card formula postal delivery scrambler phone machine system is made of certificate KMC, the close card of UK and postal delivery telephone set.Under the situation that does not change certificate KMC, the close card of UK, present embodiment is PSTN net unencryped word, data encryption type digital phone set.Referring to shown in Figure 4, described PSTN net unencryped word, data encryption type digital phone set are connected to form by telephone handle 301, circuit control 302, plain old telephone circuit 303, ARM central processing unit 307, MODEM 308, facsimile machine 309, facsimile data protocol conversion 310, U dish interface 311, USB flash disk and computer data district 312, the close card 314 of UK-, RS232 serial ports 315, PC 316 and LCD and keyboard 401.Embodiment 2 is with the difference of embodiment 1, described PSTN net unencryped word, data encryption type digital phone set do not have speech digit processing section and compress speech decompression circuit part, thereby can not realize the voice encryption function, remainder and postal delivery scrambler phone machine are identical; Can beat unencryped word and data encryption transfer function; The application that is present device is primarily aimed at data encryption transmission application, has functions such as abundant touch-screen file editor, Chinese character input, short message encrypted transmission, computer data enciphering transmission.
Embodiment 3:
Referring to shown in Figure 5, present embodiment 3 is a PSTN/IP type postal delivery telephone set; Present embodiment 3 is that with the difference of embodiment 1 described postal delivery telephone set is a PSTN/IP net type postal delivery scrambler phone machine, and the circuit of PSTN/IP net type digital-code encryption type machine is compared with PSTN type digital-code encryption type machine, has increased IP network interface controlled function part; As shown in Figure 5, PSTN/IP net type digital-code encryption machine connects pstn telephone office 320 and Yin Te P net respectively; And on the postal delivery telephone set, increase IP network control switch 501 and network interface 502; Be transferred to the Internet 503 by manual control switch's IP network 503, then all business functions are all realized by the Internet, wherein above-mentioned three kinds of business datums enter before the Internet 503, convert the ICP/IP protocol packet to through LAN network interface 502 again after at first all business datums are encrypted by ARM central processing unit 307, the close card 314 of UK-and send into the Internet; Increase as realizing image encryption transmission and video display function on 7 cun screens by broadband internet.
The invention is not restricted to the foregoing description; to those skilled in the art, any conspicuous improvement that the above embodiment of the present invention is made can not exceed the embodiments of the invention that only illustrate by way of example and the protection range of claims.

Claims (10)

1. separation between machine and card formula postal delivery scrambler phone machine system, comprise the close card of certificate KMC and UK, it is characterized in that: described separation between machine and card formula postal delivery scrambler phone machine system also comprises the postal delivery telephone set, described postal delivery telephone set is provided with ARM central processing unit (307), described ARM central processing unit (307) connects facsimile data protocol conversion module (310), and described certificate KMC links to each other with the postal delivery telephone set by operator terminal PC (104), and the close cartoon of UK is crossed the close card of UK-(201) and is connected with the postal delivery telephone set.
2. according to the described a kind of separation between machine and card formula postal delivery scrambler phone machine of claim 1 system, it is characterized in that: described certificate KMC is connected to form with the close card of center UK (105) successively by user data backup server (101), certificate and KMC's server (102), user data server (103), operator terminal PC (104).
3. a kind of separation between machine and card formula postal delivery scrambler phone machine according to claim 1 system, it is characterized in that: the close card of described UK comprises the close card of UK-(201), encryption and storage chip (202), CPU (203), Chinese character base (204) and display screen (205), wherein CPU (203) is in the center, links to each other with the close card of UK-(201), encryption and storage chip (202), Chinese character base (204) and display screen (205) respectively.
4. a kind of separation between machine and card formula postal delivery scrambler phone machine according to claim 1 system, it is characterized in that: described postal delivery telephone set also comprises voice signal A/D, D/A conversion and compression/decompression device (305), and described voice signal A/D, D/A conversion and compression/decompression device (305) are connected with described ARM central processing unit (307).
5. according to the described a kind of separation between machine and card formula postal delivery scrambler phone machine of claim 4 system, it is characterized in that: described postal delivery telephone set also comprises IP network control switch (501) and network interface (502), and IP network control switch (501) is connected ARM central processing unit (307) respectively with network interface (502), and network interface (502) is connected with INTER net (503).
6. according to described any separation between machine and card formula postal delivery scrambler phone machine system of claim 3 to 5, it is characterized in that: described postal delivery telephone set also comprises USB flash disk interface (311) and USB flash disk, computer data district (312), and described USB flash disk interface (311) is connected with ARM central processing unit (307) by USB flash disk, computer data district (312), MODEM.
7. according to described any separation between machine and card formula postal delivery scrambler phone machine system of claim 1 to 5, it is characterized in that: described postal delivery telephone set also comprises the close card of telephone set end UK (314), and the close cartoon of described UK is crossed the close card of telephone set end UK (314) and is connected with ARM central processing unit (307).
8. according to described any separation between machine and card formula postal delivery scrambler phone machine system of claim 1 to 5, it is characterized in that: described postal delivery telephone set also comprises LCD display (317), and described LCD display (317) is connected with ARM central processing unit (307).
9. according to described any separation between machine and card formula postal delivery scrambler phone machine system of claim 1 to 5, it is characterized in that: described postal delivery telephone set also comprises the video image module, and described video image module is connected with ARM central processing unit (307).
10. a kind of separation between machine and card formula postal delivery scrambler phone machine according to claim 2 system is characterized in that: the digital certificate format that described certificate KMC provides press GB/T 20518-2006/X.509 V3 and is designed.
CN2010102964535A 2010-09-29 2010-09-29 Telephone-card separated mail encryption telephone system Pending CN101945177A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2010102964535A CN101945177A (en) 2010-09-29 2010-09-29 Telephone-card separated mail encryption telephone system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2010102964535A CN101945177A (en) 2010-09-29 2010-09-29 Telephone-card separated mail encryption telephone system

Publications (1)

Publication Number Publication Date
CN101945177A true CN101945177A (en) 2011-01-12

Family

ID=43436938

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2010102964535A Pending CN101945177A (en) 2010-09-29 2010-09-29 Telephone-card separated mail encryption telephone system

Country Status (1)

Country Link
CN (1) CN101945177A (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102130770A (en) * 2011-01-17 2011-07-20 北京虎符科技有限公司 Method for encrypting voice of ultrashort wave (USW) radio station
CN103051444A (en) * 2012-12-31 2013-04-17 安徽问天量子科技股份有限公司 Quantum security digital terminal applied to PSTN (Public Switched Telephone Network)

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040100648A1 (en) * 1995-09-15 2004-05-27 Kulakowski Robert T. System for communicating facsimile and audio information in standard e-mail attachment format
CN2731845Y (en) * 2004-09-15 2005-10-05 北京公达数码科技有限公司 Dual-mode telephone terminal
CN101212639A (en) * 2006-12-29 2008-07-02 爱普拉斯通信技术(北京)有限公司 Visual telephone terminal
CN101453538A (en) * 2007-12-01 2009-06-10 齐宇庆 Switching system for electronic document fax
CN101729641A (en) * 2009-11-27 2010-06-09 北京兵港科技发展有限公司 Machine card separated acoustic code encryption telephone set system
CN202121658U (en) * 2010-09-29 2012-01-18 北京兵港科技发展有限公司 Mail encryption telephone set system of set-card separation type

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040100648A1 (en) * 1995-09-15 2004-05-27 Kulakowski Robert T. System for communicating facsimile and audio information in standard e-mail attachment format
CN2731845Y (en) * 2004-09-15 2005-10-05 北京公达数码科技有限公司 Dual-mode telephone terminal
CN101212639A (en) * 2006-12-29 2008-07-02 爱普拉斯通信技术(北京)有限公司 Visual telephone terminal
CN101453538A (en) * 2007-12-01 2009-06-10 齐宇庆 Switching system for electronic document fax
CN101729641A (en) * 2009-11-27 2010-06-09 北京兵港科技发展有限公司 Machine card separated acoustic code encryption telephone set system
CN202121658U (en) * 2010-09-29 2012-01-18 北京兵港科技发展有限公司 Mail encryption telephone set system of set-card separation type

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
《信息技术与标准化》 20070531 罗锋盈等 《GB/T 20518-2006《数字证书格式》简介》 18-19,28 10 第27卷, 第5期 *
罗锋盈等: "《GB/T 20518-2006《数字证书格式》简介》", 《信息技术与标准化》, vol. 27, no. 5, 31 May 2007 (2007-05-31) *

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102130770A (en) * 2011-01-17 2011-07-20 北京虎符科技有限公司 Method for encrypting voice of ultrashort wave (USW) radio station
CN103051444A (en) * 2012-12-31 2013-04-17 安徽问天量子科技股份有限公司 Quantum security digital terminal applied to PSTN (Public Switched Telephone Network)

Similar Documents

Publication Publication Date Title
CN101197674B (en) Encrypted communication method, server and encrypted communication system
CN100533456C (en) Security code production method and methods of using the same, and programmable device therefor
TW494667B (en) Data transmission system and recording device there for
EP1279249B1 (en) One-time-pad encryption with central key service and keyable characters
US7340055B2 (en) Memory card and data distribution system using it
US7738660B2 (en) Cryptographic key split binding process and apparatus
CN100464549C (en) Method for realizing data safety storing business
CN1889419B (en) Method and apparatus for realizing encrypting
US20110145576A1 (en) Secure method of data transmission and encryption and decryption system allowing such transmission
CN109257180A (en) A kind of method and device for depositing card based on the intellectual property file of block chain
CN101399666A (en) Safety control method and system for digital certificate of file
JPWO2005024645A1 (en) Information processing server and information processing method
CN101359989A (en) Method, apparatus and mobile communication terminal generating safe digital photograph
CN101216923A (en) A system and method to enhance the data security of e-bank dealings
CN101335627B (en) Network facsimile system and using method thereof
CN101101660A (en) Bill false-proof method and its system
CN112347493A (en) Encryption, decryption and graying method for OFD (office file)
CN110222809B (en) Information combination and encryption method of two-dimensional code and two-dimensional code encryption machine
CN101945177A (en) Telephone-card separated mail encryption telephone system
CN202121658U (en) Mail encryption telephone set system of set-card separation type
WO2009064002A1 (en) System for safely transmitting and/or managing file
CN202978979U (en) Password security keypad device and password security pad system
CN1422034A (en) Utilization of symmetrical cipher for network digital signature
CN114861232A (en) Electronic seal system, electronic seal and electronic signature method
CN111539032B (en) Electronic signature application system resistant to quantum computing disruption and implementation method thereof

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C02 Deemed withdrawal of patent application after publication (patent law 2001)
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20110112