CN103036876B - A kind of Integral computer equipment and application thereof realizing unified operation under Network Isolation state - Google Patents

A kind of Integral computer equipment and application thereof realizing unified operation under Network Isolation state Download PDF

Info

Publication number
CN103036876B
CN103036876B CN201210522346.9A CN201210522346A CN103036876B CN 103036876 B CN103036876 B CN 103036876B CN 201210522346 A CN201210522346 A CN 201210522346A CN 103036876 B CN103036876 B CN 103036876B
Authority
CN
China
Prior art keywords
module
network
intranet
private network
processing module
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201210522346.9A
Other languages
Chinese (zh)
Other versions
CN103036876A (en
Inventor
吕江波
郑禧
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
FUZHOU HEDA ELECTRONIC TECHNOLOGY Co Ltd
Original Assignee
FUZHOU HEDA ELECTRONIC TECHNOLOGY Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by FUZHOU HEDA ELECTRONIC TECHNOLOGY Co Ltd filed Critical FUZHOU HEDA ELECTRONIC TECHNOLOGY Co Ltd
Priority to CN201210522346.9A priority Critical patent/CN103036876B/en
Publication of CN103036876A publication Critical patent/CN103036876A/en
Application granted granted Critical
Publication of CN103036876B publication Critical patent/CN103036876B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

The invention discloses a kind of Integral computer equipment realizing unified operation under Network Isolation state, it is provided with four mixed-media network modules mixed-medias, be respectively private network processing module, Intranet processing module, control isolation module and man-machine interface sharing module, private network processing module, Intranet processing module are corresponding with private network, Intranet respectively, control the communication module that isolation module is the non-network form arranged at private network and Intranet intermodule, its structure is that both sides respectively arrange a Communications Processor Module, and each connection parallel port communication module, both sides parallel port communication intermodule is Phototube Coupling.The invention has the advantages that: possess the access of multiple network pattern, can while not affecting private network and these two major networks application of Intranet, the independence realizing Controling network and operation net uses, make the control of equipment and the operation of man-machine interface and main business Network Isolation, be independent of each other, can operate simultaneously.

Description

A kind of Integral computer equipment and application thereof realizing unified operation under Network Isolation state
Technical field
Patent of the present invention relates to network security and field of human-computer interaction, is specifically related to a kind of Integral computer equipment and the application thereof that can realize two net application interface unified operation under the environment needing Network Isolation.
Background technology
According to national relevant regulations, the computer equipment possessing network physical isolation characteristic must be used, with the needs that ensure information security in institutional settings such as the Party, government and army with security requirements.
Existing computer network xegregating unit mostly is with Types Below, the network service isolation gateway equipment that adopts is realized more, the erection of this type of scheme is complicated, exchanges data is still had between intranet and extranet, but although exchanging contents can control not to be physical isolation completely, network security depends on management to equipment and configuration in a way, and operating personnel need higher usage level, harsh requirement cannot be met, be also not suitable for being simple and easy to required for desktop device and use characteristic.
And one of most widely used general, the most ripe network security technology of people is fire compartment wall, configures proper fire compartment wall and can stop attack greatly.Network is played a very good protection.But if mis-arrange, fire compartment wall just performs practically no function and do not have the effect of protection calculation machine, the invasion that fire compartment wall just can prevent improper program is to a certain extent installed.Fire compartment wall, because of the defect of himself, makes it can not become the final solution of network security.
Isolation for desktop application at present more adopts the realization of network switch card equipment, network switch card is for being installed at computer-internal function card, while switching intranet and extranet, memory device is also switched, achieve the physical isolation of intranet and extranet to a certain extent, but still there is leak in such device, although have switched the external memorys such as hard disk and network when two net switches, but the internal memory of computer still has data remanence, can be obtained by certain technological means, harm system safety, and this kind of isolation method uses complicated, need to restart computer while switching, be not suitable for needing the frequent office switched, service efficiency is low.
As number of patent application 201010131604.1 invention relates to a kind of network isolation communication method, two or more terminal is set, and programmable control module is set between this terminal, the connection of this programmable control module is arranged on any two to need to set up between this terminal of communication relation, Signal transmissions is realized by bus bar between this terminal and this programmable control module, this programmable control module comprises programmable control module circuit, this programmable control module circuit is used for storage and the forwarding of sequencing control and data, in order to realize the storage forwarding function of this programmable control module, memory module is opened up in this programmable control module circuit, its mode adopted is isolated to a certain extent and is protected and receives and sends messages, but its programmable control module adopted, because it still will arrange memory module in inside modules, and use software to open up, the risk that content is stolen can be improved.
In addition, (the normally meeting room of leading Party group's meeting room or specialty in the momentous conference room of the industry such as government bodies, army at present, as: the Judicial Committee of law court), conventional information construction just deploys audio-visual system, convention table, elevation type display, middle control etc. usually, or has built net meeting system according to the requirement of industry higher level.These systems can only provide man-machine interaction capabilities substantially, and the interactive form of information does not break away from the communicative mode of host, reporter unidirectional " I says that you listen ", " spoon-feed ", all can not support teamwork significantly.
HD-CMSS cooperating meeting back-up system (security type) is for army, security department, public security organs, the industries such as government bodies, specialize in towards man-machine interaction, the new generation network multimedia conferencing management system of colony's multidimensional cooperation, with its application model flexibly, succinctly, reliably, the effect of safety, for national government bodies, the industries such as army are started novel, the meeting management system of the group collaboration type of new generation of environmental protection, it belongs to CSCW(computer supported cooperative work) important branch---the cooperation scientific research category of research field: by the communication technology, the fusion of computer technology and network technology, set up the cooperative working environment of multidimensional, improve the mode of participant's information interchange in meeting room, common coordination and cooperation completes meeting task, thus save the time and efforts of staff, improve teamwork quality and efficiency.But, the technological means realizing HD-CMSS cooperating meeting back-up system (security type) at present falls behind, function singleness: existing conferencing information system, it is mostly design and establishing many years ago, can only be distributed in display or projection screen by unidirectional for electronic document, one man operation, there is the problems such as function singleness, intelligence degree are not high with readding in everybody:
1. link up unidirectional, limited alternately: in concrete application, when every participant needs to propose review comment, the electronic document material that cannot independently browse provides is considered, the link needing emphasis to prove is difficult to multidimensional and shares, shows comprehensively, mutual upper impersonality;
With no paper meeting cannot be realized: by the limitation of traditional conferencing information system, cause and really cannot realize with no paper and need to distribute a large amount of paper materials, not only cause waste, also not environmentally;
2. confidentiality is limited: some similar conference system is not effectively isolated with unit Intranet or do not take effective and safe means, leaves hidden danger all to the leakage of conference content; And a large amount of paper material provide also because of carrying, keeping is inconvenient, and is difficult to the safety management of guarantee information;
3. system Construction is not enough: the network multimedia conference management system of in the past attempting construction, mostly exists the easy expenditure of system not high, all deficiencies such as function is simple, business specific aim is poor, software and hardware system framework fragility, poor stability.
Summary of the invention
The present invention is directed to the deficiencies in the prior art and a kind of under Network Isolation state, realize unified operation Integral computer equipment and application thereof are provided.
An object of the present invention is achieved through the following technical solutions: a kind of Integral computer equipment realizing unified operation under Network Isolation state, it is provided with four mixed-media network modules mixed-medias, be respectively private network processing module, Intranet processing module, control isolation module and man-machine interface sharing module, private network processing module, Intranet processing module respectively with private network, Intranet is corresponding, private network processing module and Intranet processing module are all connected with control isolation module and carry out double-direction control command communication, private network processing module and Intranet processing module are also connected with man-machine interface sharing module respectively and carry out audio frequency and video and equipment interface Signal transmissions, control the communication module that isolation module is the non-network form arranged at private network and Intranet intermodule, its structure is that both sides respectively arrange a Communications Processor Module, and each connection parallel port communication module, both sides parallel port communication intermodule is Phototube Coupling.
The effect of the Communications Processor Module of described control isolation module is: 1, resolve the instruction that serial ports sends, the parameter met in the instruction of call format is carried out reading and preserving, pass through serial ports return instruction reception result to transmitting terminal simultaneously, realize once complete communication process; 2, carry out instructions parse according to set communication format, only allow the data meeting call format to carry out communication, fundamentally avoid existing various attack pattern and perform; 3, realize watchdog function, house dog is fed dog instruction and is received by serial ports, and after house dog is overflowed, in the communication of notice isolation at once, the main frame of the other end, is processed by another main frame.
The effect of the parallel port communication module of described control isolation module is: the order parameter after 1, being resolved by communication module is undertaken sending and receiving by parallel port, and ensures the integrality of data; 2, synchronization only allows the transfer of data in a direction, carries out one-way transmission isolation to data, improves fail safe.
The effect of the Phototube Coupling of described control isolation module is: convert the electrical signal to light signal and carry out communication, realize electrical isolation thoroughly.The non-Ethernet communication module possessing photoelectric isolation technology is applied to and controls isolation module and the physical isolation being used for realizing inside and outside private network is the whole new set of applications of Phototube Coupling in computer realm, this application controls isolation module to realize the physically-isolated key technology scheme of internal, external network, namely communication data adopt photoelectricity physical isolation solve people want for a long time to solve but unsolved internal, external network transforms always time data confidentiality problem, there is outstanding technique effect and significant technological progress, there is very high or even epoch-making creativeness.
The effect of described control isolation module is: 1. cut off receiving terminal by hardware and transmit data to transmitting terminal; 2. do not use Ethernet to transmit data, immunity is attacked to disparate networks; 3. use custom protocol conversion between sending and receiving, ensure that attack cannot directly penetrate; 4. do not carry out direct transfer of data, trojan horse was lost efficacy.
The Advantageous Effects of described control isolation module is: 1. control isolation module and be used for controlling in Intranet and the transmission of private network intermodule and synchronously waiting instruction, the error correction and the auto repeat require that realize instruction are machine-processed; 2. control the isolation conversion that isolation module realizes instruction, ensure that Intranet or any one end of private network module all cannot be carried out arbitrary instruction by this path to an other side and be penetrated, ensure the independence of two net isolation; 3. adopt devices at full hardware to realize, participate in functional realiey without software, avoid being attacked in running software or being rewritten; 4. adopt photoelectric isolation communication after communications protocol conversion, without electrical connection, ensure that electric physically-isolated requirement; 5. realize the watchdog function respectively for Intranet and private network module, can notify the opposing party, and carry out the operations such as system reset by the opposing party when either party breaks down, the high-reliability realizing system runs.
Described private network processing module setting is connected with Controling network module and carries out double-direction control command communication, under private network operational mode or Intranet operational mode, pattern change is by Controling network module, this operation is independent of outside private network and Intranet, a dedicated network being specifically designed to Systematical control can be provided, improve the fail safe of equipment use.
Described man-machine interface sharing module arranges with operation net module interconnected, is issued by man-machine interface signal current for man-machine interface sharing module, achieve the remote operation of man-machine interface by operation net.
Described private network processing module is arranged to be transmitted with acquisition module unidirectional connection, for gathering Intranet audio signal and extraneous audio signals.Acquisition module, by directly to access and the mode processing audio frequency and video analog signal carries out work, does not relate to the digitized operator schemes such as network, therefore there is not information-leakage problem.
Described private network and Intranet processing module are provided with independently secure storage module all separately, ensure that the fail safe that data store.
Described secure storage module uses volatile memory to replace the conventional memory device such as disk, and all data after device looses power in this memory disappear at once, unreducible, for depositing the high data of security requirements, realize higher service security degree.
A kind of course of work realizing the Integral computer equipment of unified operation under Network Isolation state of the present invention is: opening device, private network processing module and Intranet processing module start simultaneously, enter operating state simultaneously, now computer equipment acquiescence is in private network operational mode, the operation of private network application can be carried out, when user needs to be switched to Intranet operational mode, switch by the software push buttons on click display screen or the button on equipment, switch forms can be changed according to specific requirement, the handover request instruction of Intranet processing module is delivered to private network processing module by controlling isolation module by this switching action, control man-machine interface sharing module simultaneously and carry out signal switching, realize the function in use switched at any time.Otherwise, when user needs to be switched to private network operational mode from Intranet operational mode, handover request is sent by Intranet processing module and is delivered to private network operation module via control isolation module, controls man-machine interface sharing module simultaneously and switches, complete the conversion between two net two kinds of operational modes.
In technique scheme, private network: refer to the network that network security requirement is high, or refer to the network that sets up for a certain specialized application.
Intranet: refer to the network that network security requirement is lower or application type is different.
Controling network: pointer carries out the dedicated network of the peculiar function control beyond network to the equipment that this patent describes.
Operation net: pointer carries out the dedicated network of man-machine interface operation support to the equipment that this patent describes.
Private network processing module: the computing module of process private network application.
Intranet processing module: the computing module of process Intranet application.
The invention has the advantages that: possess the access of multiple network pattern, can while not affecting private network and these two major networks application of Intranet, the independence realizing Controling network and operation net uses, make the control of equipment and the operation of man-machine interface and main business Network Isolation, be independent of each other, can operate simultaneously
Compared with legacy network xegregating unit, the present invention when complete realize Network Isolation operation, its equipment volume is less, and integrated level is higher, and cost is more reasonable, is more applicable to desktop application and special sector application.
Compared with traditional xegregating unit, the present invention's operation is more convenient, without the need to restarting equipment, or change the physical connection of network line, two net operations that just can realize at any time switch, and possess unified man machine operation interface, really realize the application that the two net of process is simultaneously separate separately under a set of man machine operation interface.
Compared with tradition personalized pair of net xegregating unit, the present invention has more fail safe, Intranet and private network module possess completely independently arithmetic facility and memory device, do not share mutually, under synchronization only has a module to be in user operation, cannot be obtained the data in another module by any one module, fail safe is high.
Compared with traditional computer equipment, the present invention possesses remote manipulating ability and the multioperation people interoperability of man-machine interface, therefore limitations has been broken away from the use of equipment, more extensive and wider deployment can be carried out, greatly extend use flexibility ratio, and the Remote Expansion of man-machine interface does not rely on main business network, and fail safe is high.
Traditional magnetic disk memory is after deleted file, if do not carry out erase operation for use thoroughly to corresponding memory sector, the fileinfo then deleted very easily is reduced, and the equipment that the present invention describes possesses independently secure storage module, information in this module is fallen a little and has not namely been existed, do not have the possibility that technology is reduced, safe coefficient is high.
Another object of the present invention is to provide a kind of application realizing the Integral computer equipment of unified operation under Network Isolation state, namely a kind of Integral computer equipment realizing unified operation under Network Isolation state is in the application of HD-CMSS cooperating meeting back-up system, embody rule method is: using the manipulator of Integral computer equipment (hereinafter referred to as main process equipment) as each participant and the management host of conference management personnel, Intranet module in main process equipment and unit Intranet corresponding to private network module and meeting private network are carried out application divide, meeting private network applies as carrying out conference content the network supported, for the information interaction needed for conference flow, need to be keep secret and other Network Isolation, unit Intranet is as the access way of network open in unit, the relevant information inquiry beyond meeting or office system operation is provided to support.
Terminal equipment and the operation net of described integrated main process equipment directly access, and use operation net access way, realize the remote transmission of each participant's man-machine interface.
The described control link of integrated main process equipment using Controling network as meeting back-up system, it is right to realize
The remote on-off function of conference host.
According to the application needs of conference system, the Controling network described in employing carries out elaboration configuration to each participant's main process equipment, realizes when two net isolation, is undertaken unifying configuration by separate network outside this two net of Controling network.
Described Controling network, also for receiving switching command, realizes the handoff functionality to man-machine interface sharing module, and compounding practice net, realize the switching at remote human-machine interface.
In conference system application, using the introducing functional module of the acquisition module of described main process equipment as outside non-network signal, the audio-video signal of acquisition module collection Intranet processing module and the audio-video signal of acquisition module to internal, external network is used to input respectively, realize the audio/video information checking Intranet when not handover network on private network processing module application interface, the content of Intranet application can be taken into account while not interrupting private network application, strengthen the flexibility ratio of conference system practical application.
Under the application of confidentiality conference system requires, confidential document is stored in the private network of main process equipment and the secure storage module of Intranet processing module, secure storage module has the application interface of same generic diskette systems compliant, the exploitation of convenient application, when meeting adjourned, after Host Shutdown, the file stored in it is destroyed immediately, and there is not the possibility of technology recovery.
Terminal equipment and operation net terminal equipment such as liquid crystal display screen, mouse, the keyboard etc. of integration main process equipment can be arranged flexibly, the role of each main process equipment carries out the operation of subscribing according to setting, as: more than the 9 kinds application models such as the application of super keeper's control desk, conference administrator's control desk, president's seat, expert's seat, reporter's seat, seat Intranet, Migrant women access, magic lantern access, projector's access, along with the role that deeply will produce more refinements applied and function definition.
Keeper is freely switched by conference administrator's control desk screen interface that can realize between each seat, share, the meeting realizing multidimensional is shared alternately, greatly improves the quality of communication.Described conference system can provide nearly 24 kinds of screens switch modes, as:
1. control desk → projection screen, appointment seat, seat group, total agent
2. projection screen → appointment seat, seat group, total agent
3. specify seat machine → projection screen, specify seat, seat group, total agent
4. specify Intranet machine → projection screen, specify seat, seat group, total agent
5. external portable computer → projection screen, appointment seat, seat group, total agent
6. slide projector → projection screen, appointment seat, seat group, total agent
And can coexist the signal source of more than 1 simultaneously.
The present invention is by disposing the dual network system of meeting room private network and connection unit Intranet; realize Network Isolation; realize higher level meeting secret protection; this Network Isolation mode not adopts the equipment such as fire compartment wall to dispose; and be similar to physical isolation; data network and instruction Network Isolation is adopted at meeting room private network; namely transfer of data passes through Ethernet; command operating passes through industrial-controlled general line; not only further increase the protective capability of meeting secret, also substantially increase the high-responsivity of operations.
Accompanying drawing explanation
Below in conjunction with drawings and Examples, the invention will be further described:
Fig. 1 is apparatus of the present invention system principle block diagram;
Fig. 2 is that apparatus of the present invention control isolation module schematic block diagram;
Fig. 3 is a kind of execution mode schematic diagrames of apparatus of the present invention.
Embodiment
As shown in Fig. 1 ~ Fig. 2, a kind of Integral computer equipment realizing unified operation under Network Isolation state, it is provided with four mixed-media network modules mixed-medias, be respectively private network processing module, Intranet processing module, control isolation module and man-machine interface sharing module, its corresponding private network and Intranet, private network processing module and Intranet processing module are all connected with control isolation module and carry out double-direction control command communication, private network processing module and Intranet processing module are also connected with man-machine interface sharing module respectively and carry out audio frequency and video and equipment interface Signal transmissions, control the communication module that isolation module is the non-network form arranged at private network and Intranet intermodule, its structure is that both sides respectively arrange a Communications Processor Module, and each connection parallel port communication module, both sides parallel port communication intermodule is Phototube Coupling.
Described Controling network module installation is connected with private network processing module and carries out double-direction control command communication, under private network operational mode or Intranet operational mode, pattern change is by Controling network module, this operation is independent of outside private network and Intranet, a dedicated network being specifically designed to Systematical control can be provided, improve the fail safe of equipment use.
Described operation net module installation and man-machine interface sharing module interconnected, man-machine interface signal current for man-machine interface sharing module is issued by operation net, achieves the remote operation of man-machine interface.
Described acquisition module arranges and transmits with private network processing module unidirectional connection, for gathering Intranet audio signal and extraneous audio signals.Acquisition module, by directly to access and the mode processing audio frequency and video analog signal carries out work, does not relate to the digitized operator schemes such as network, therefore there is not information-leakage problem.
Described private network and Intranet processing module are provided with independently secure storage module, ensure that the fail safe that data store.
Described secure storage module uses volatile memory to replace the conventional memory device such as disk, and all data after device looses power in this memory disappear at once, unreducible, for depositing the high data of security requirements, realize higher service security degree.
After opening of device, private network processing module and Intranet processing module start simultaneously, enter operating state simultaneously, but now computer equipment acquiescence is in private network operational mode, the operation of private network application can be carried out, when user needs to be switched to Intranet operational mode, switch by the software push buttons on click display screen or the button on equipment, switch forms can be changed according to specific requirement, the handover request instruction of Intranet processing module is delivered to private network processing module by controlling isolation module by this switching action, control man-machine interface sharing module simultaneously and carry out signal switching, realize the function in use switched at any time.Otherwise, when user needs to be switched to private network operational mode from Intranet operational mode, handover request is sent by Intranet processing module and is delivered to private network operation module via control isolation module, controls man-machine interface sharing module simultaneously and switches, complete the conversion between two net two kinds of operational modes.
As shown in Figure 3, a kind of application realizing the Integral computer equipment of unified operation under Network Isolation state, namely a kind of Integral computer equipment realizing unified operation under Network Isolation state is in the application of HD-CMSS cooperating meeting back-up system, embody rule method is: using Integral computer equipment 5(hereinafter referred to as main process equipment) as the manipulator of each participant and the management host of conference management personnel, Intranet module in main process equipment and unit Intranet 2 corresponding to private network module and meeting private network 1 are carried out application divide, and be connected with main process equipment 5 with private network switch 3 by corresponding Intra-Network switch 4, meeting private network 1 applies as carrying out conference content the network supported, for the information interaction needed for conference flow, need to be keep secret and other Network Isolation, unit Intranet makes the access way that 2 are open network in unit, the relevant information inquiry beyond meeting or office system operation is provided to support.
Terminal equipment 5 and the operation net of described integrated main frame directly access, and use operation net access way, realize the remote transmission of each participant's man-machine interface.
Described integrated main process equipment 5 passes through the control link of Controling network switch 7 using Controling network 6 as meeting back-up system, realizes the remote on-off function to conference host.
According to the application needs of conference system, the Controling network described in employing carries out elaboration configuration to each participant's main process equipment 5, realizes when two net isolation, is undertaken unifying configuration by separate network outside this two net of Controling network.
Described Controling network 6, also for receiving switching command, realizes the handoff functionality to man-machine interface sharing module, and compounding practice net, realize the switching at remote human-machine interface.
In conference system application, using the introducing functional module of the acquisition module of described main process equipment 5 as outside non-network signal, the audio-video signal of acquisition module collection Intranet processing module and the audio-video signal of acquisition module to internal, external network is used to input respectively, realize the audio/video information checking Intranet when not handover network on private network processing module application interface, the content of Intranet application can be taken into account while not interrupting private network application, strengthen the flexibility ratio of conference system practical application.
Under the application of confidentiality conference system requires, confidential document is stored in the private network of main process equipment and the secure storage module of Intranet processing module, secure storage module has the application interface of same generic diskette systems compliant, the exploitation of convenient application, when meeting adjourned, after Host Shutdown, the file stored in it is destroyed immediately, and there is not the possibility of technology recovery.
Operation net terminal equipment and liquid crystal display screen, mouse, keyboard etc. can be arranged flexibly, the role of each main process equipment carries out the operation of subscribing according to setting, as: more than the 9 kinds application models such as the application of super keeper's control desk, conference administrator's control desk, president's seat, expert's seat, reporter's seat, seat Intranet, Migrant women access, magic lantern access, projector's access, along with the role that deeply will produce more refinements applied and function definition.
Keeper is freely switched by the Conference control platform screen interface that can realize between each seat, share, the meeting realizing multidimensional is shared alternately, greatly improves the quality of communication.Affiliated conference system can provide nearly 24 kinds of screens switch modes, as:
1. control desk → projection screen, appointment seat, seat group, total agent
2. projection screen → appointment seat, seat group, total agent
3. specify seat machine → projection screen, specify seat, seat group, total agent
4. specify Intranet machine → projection screen, specify seat, seat group, total agent
5. external portable computer → projection screen, appointment seat, seat group, total agent
6. slide projector → projection screen, appointment seat, seat group, total agent
And can coexist the signal source of more than 1 simultaneously.
The present invention is by disposing the dual network system of meeting room private network and connection unit Intranet, realize Network Isolation, realize higher level meeting secret protection, this Network Isolation mode not adopts the equipment such as fire compartment wall to dispose, and be similar to physical isolation, data network and instruction Network Isolation is adopted at meeting room private network, namely transfer of data passes through Ethernet, command operating passes through industrial-controlled general line, not only further increase the protective capability of meeting secret, also the high-responsivity of operations is substantially increased, role's setting flexibly can be carried out to operating terminal simultaneously, the mutual of multidimensional is shared, strengthen practicality and flexibility greatly.

Claims (10)

1. one kind realizes the Integral computer equipment of unified operation under Network Isolation state, it is characterized in that, this equipment is provided with four mixed-media network modules mixed-medias, be respectively private network processing module, Intranet processing module, control isolation module and man-machine interface sharing module, private network processing module, Intranet processing module respectively with private network, Intranet is corresponding, private network processing module and Intranet processing module are all connected with control isolation module and carry out double-direction control command communication, private network processing module and Intranet processing module are also connected with man-machine interface sharing module respectively and carry out audio frequency and video and equipment interface Signal transmissions, control the communication module that isolation module is the non-network form arranged at private network and Intranet intermodule, its structure is that both sides respectively arrange a Communications Processor Module, and each connection parallel port communication module, both sides parallel port communication intermodule is Phototube Coupling.
2. a kind of Integral computer equipment realizing unified operation under Network Isolation state according to claim 1, it is characterized in that, described private network processing module setting is connected with Controling network module and carries out double-direction control command communication, and under private network operational mode or Intranet operational mode, pattern change is completed by Controling network module.
3. a kind of Integral computer equipment realizing unified operation under Network Isolation state according to claim 1, it is characterized in that, described man-machine interface sharing module arranges with operation net module interconnected, and the current man-machine interface signal of man-machine interface sharing module is issued by operation net.
4. a kind of Integral computer equipment realizing unified operation under Network Isolation state according to claim 1, it is characterized in that, described private network processing module is arranged to be transmitted with acquisition module unidirectional connection, and acquisition module is for gathering Intranet audio signal and extraneous audio signals.
5. a kind of Integral computer equipment realizing unified operation under Network Isolation state according to claim 1, it is characterized in that, described private network and Intranet processing module are provided with independently secure storage module all separately, and its secure storage module uses volatile memory to replace conventional memory device.
6. a kind of application realizing the Integral computer equipment of unified operation under Network Isolation state according to claim 1, namely a kind of Integral computer equipment realizing unified operation under Network Isolation state is in the application of HD-CMSS cooperating meeting back-up system, its embody rule method is: using the manipulator of Integral computer equipment as each participant and the management host of conference management personnel, Intranet module in main process equipment and unit Intranet corresponding to private network module and meeting private network are carried out application divide, meeting private network applies as carrying out conference content the network supported, unit Intranet is as the access way of network open in unit, the relevant information inquiry beyond meeting or office system operation is provided to support.
7. a kind of application realizing the Integral computer equipment of unified operation under Network Isolation state according to claim 6, it is characterized in that, terminal equipment and the operation net of described integrated main process equipment directly access, use operation net access way, realize the remote transmission of each participant's man-machine interface.
8. a kind of application realizing the Integral computer equipment of unified operation under Network Isolation state according to claim 6, it is characterized in that, the described control link of integrated main process equipment using Controling network as meeting back-up system, described Controling network carries out elaboration configuration to each participant's main process equipment.
9. a kind of application realizing the Integral computer equipment of unified operation under Network Isolation state according to claim 6, it is characterized in that, confidential document is stored in the private network of main process equipment and the secure storage module of Intranet processing module, and secure storage module has the application interface of same generic diskette systems compliant.
10. a kind of application realizing the Integral computer equipment of unified operation under Network Isolation state according to claim 7, it is characterized in that, operation net terminal equipment is arranged flexibly, the role of each main process equipment carries out the operation of subscribing according to setting, application model include but not limited to following any one: the application of super keeper's control desk, conference administrator's control desk, president's seat, expert's seat, reporter's seat, seat Intranet, Migrant women access, magic lantern access or projector's access.
CN201210522346.9A 2012-12-07 2012-12-07 A kind of Integral computer equipment and application thereof realizing unified operation under Network Isolation state Active CN103036876B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210522346.9A CN103036876B (en) 2012-12-07 2012-12-07 A kind of Integral computer equipment and application thereof realizing unified operation under Network Isolation state

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210522346.9A CN103036876B (en) 2012-12-07 2012-12-07 A kind of Integral computer equipment and application thereof realizing unified operation under Network Isolation state

Publications (2)

Publication Number Publication Date
CN103036876A CN103036876A (en) 2013-04-10
CN103036876B true CN103036876B (en) 2016-03-23

Family

ID=48023359

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210522346.9A Active CN103036876B (en) 2012-12-07 2012-12-07 A kind of Integral computer equipment and application thereof realizing unified operation under Network Isolation state

Country Status (1)

Country Link
CN (1) CN103036876B (en)

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103929417A (en) * 2014-03-27 2014-07-16 中国科学院长春光学精密机械与物理研究所 Security data interaction structure and method based on optical isolation technology
CN107360134B (en) * 2017-06-08 2020-04-17 杭州谷逸网络科技有限公司 Method for realizing safety remote control terminal and safety system thereof
CN107731230A (en) * 2017-11-10 2018-02-23 北京联华博创科技有限公司 A kind of court's trial writing-record system and method
CN108710548A (en) * 2018-05-17 2018-10-26 上海昆涞生物科技有限公司 Data processing method and device
CN112637936B (en) * 2019-09-24 2023-04-07 青岛海信移动通信技术股份有限公司 Mobile terminal and method for registering private network frequency band
CN112565161A (en) * 2019-09-25 2021-03-26 北京桔智物联科技有限责任公司 Isolated communication equipment and method based on serial port

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN201854302U (en) * 2010-11-09 2011-06-01 福州宙斯盾信息技术有限公司 Active anti-disclosure based network security system
US8234705B1 (en) * 2004-09-27 2012-07-31 Radix Holdings, Llc Contagion isolation and inoculation
CN101355484B (en) * 2008-09-08 2012-11-07 石家庄科林电气股份有限公司 Communication isolation device using unidirection analog transmission
CN203119941U (en) * 2012-12-07 2013-08-07 福州和达电子科技有限公司 An integrated computer device capable of achieving unified operations under a network isolation state

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8234705B1 (en) * 2004-09-27 2012-07-31 Radix Holdings, Llc Contagion isolation and inoculation
CN101355484B (en) * 2008-09-08 2012-11-07 石家庄科林电气股份有限公司 Communication isolation device using unidirection analog transmission
CN201854302U (en) * 2010-11-09 2011-06-01 福州宙斯盾信息技术有限公司 Active anti-disclosure based network security system
CN203119941U (en) * 2012-12-07 2013-08-07 福州和达电子科技有限公司 An integrated computer device capable of achieving unified operations under a network isolation state

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
网络隔离技术分析;谷涛;《微处理机》;20070228;全文 *

Also Published As

Publication number Publication date
CN103036876A (en) 2013-04-10

Similar Documents

Publication Publication Date Title
CN103036876B (en) A kind of Integral computer equipment and application thereof realizing unified operation under Network Isolation state
CN103731645A (en) Law enforcement and case handling system based on wireless video transmission technology
CN204350029U (en) Data interaction system
CN101291343B (en) Remote controlling method and system based on transparent proxy equipment
CN101986638A (en) Gigabit one-way network isolation device
CN206541277U (en) Distributed KVM attends a banquet cooperation management system
CN203734701U (en) Security zone crossing enterprise service bus transmission system
CN201742498U (en) Visual dispatching system
CN203492134U (en) Android operating system based intelligent monitor visual intercom terminal
CN113076009A (en) Network-based distributed KVM (keyboard video mouse) seat management control system
CN103683506B (en) Comprehensively-integrated linkage safety system of power system transformer substations
CN204129933U (en) A kind of internet of things intelligent household control device of wireless
WO2016197594A2 (en) Kvm extender receiving end provided with switching device
CN203119941U (en) An integrated computer device capable of achieving unified operations under a network isolation state
CN103974022A (en) SIP-based building visual intercom method and system
CN203313298U (en) Signal switching apparatus
CN105302334A (en) KVM extender receiving end having switching device
CN202652270U (en) Database audit system
CN205092922U (en) Multi -functional video unit
CN102281308A (en) Intelligent device remote service system and method thereof, and remote service access box
CN202033821U (en) Multifunctional voter with voting backup function
CN204680011U (en) A kind of host signal interface extended device of computer
CN116069443A (en) Working method of virtual terminal
CN103095940B (en) Based on dispatching method and the system thereof of touch-screen manipulation
CN2435881Y (en) Network safety switching device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant