Summary of the invention
In view of this, the invention provides a kind of information security treating apparatus of double-core double end, by the double end pattern, can set up very easily two communication channels, strengthen security and the dirigibility of information channel, ability to communicate can be increased exponentially; Coordinate two information security microprocessors, can realize synchronous and asynchronous solution flexibly, in the processing of information security, owing to being two independent microprocessors, can realize that a processor carries out computing, the another one processor carries out other to be processed, and does not have the state of obstruction, and the computing of information security and processing power all can have obvious lifting.
According to an aspect of the present invention, provide a kind of information safety protector, comprise housing, at least two aerial lugs, at least two information security microprocessors, peripheral circuit and circuit board carriers; The outermost layer of described housing in described information safety protector, for encapsulating described information safety protector;
Described aerial lug is separately fixed on described circuit board carrier, and carries out circuit with described information security microprocessor respectively and be connected, for communicating by letter between external unit and described information security microprocessor;
Described information security microprocessor is for being processed and stored security information, and there is default processing capacity, by to described information safety protector, sending request to call corresponding function, and the request of sending according to external unit, different mode of operations entered;
Described peripheral circuit is for guaranteeing described information security microprocessor normal operation, for described information safety protector provides clock frequency or guarantees that power work is stable.
Described circuit board carrier is for carrying described housing, aerial lug, information security microprocessor and peripheral circuit.
According to an aspect of the present invention, one of it is any that the material that described housing adopts is following material or combination in any: PVC, rubber, metal, alloy, synthetic resin.
According to an aspect of the present invention, described aerial lug is USB connector, DOCK connector, mini USB connector.
According to an aspect of the present invention, described aerial lug is fixed to described circuit board carrier by welding manner.
According to an aspect of the present invention, can carry out direct communication between described information security microprocessor.
According to an aspect of the present invention, described mode of operation comprises synchronous mode and asynchronous mode.
According to an aspect of the present invention, serial communication between described information security microprocessor.
According to an aspect of the present invention; described information security microprocessor is with the general purpose microprocessor of communication interface function or professional microprocessor; for realize communication, the security algorithm of communication interface, storage and the defencive function of information security by programmable logic functions, and for the protection of the safety of information security microprocessor internal firmware and information security.
According to an aspect of the present invention, described circuit board carrier is electronic circuit board.
According to an aspect of the present invention, the material of described circuit board carrier comprises the FR4 material.
According to an aspect of the present invention, described peripheral circuit comprises running clock circuit, filtering circuit, reference circuit.
The obtained positive effect by the present invention: information safety protector has two connecting interfaces, communication can be carried out by two communication ports and information safety protector in main frame or request end simultaneously, the communication data amount can be multiplied, simultaneously, two information security microprocessors of information safety protector inside are connected with two aerial lugs respectively, two information security microprocessors can be operated in synchronous or asynchronous mode of operation, and can directly carry out communication between two information security microprocessors, these flexibly mode of operation increased the difficulty cracked, strengthened security, and in the situation that some resource requirement is higher, two secure microprocessors can well be finished dealing with, thereby realize security, dirigibility, the encryption solution that performance requirement is higher.
Embodiment
For making purpose of the present invention, technical scheme and advantage clearer, referring to the accompanying drawing embodiment that develops simultaneously, the present invention is described in more detail.
Information safety protector comprises: the circuit board carrier of housing, two aerial lugs, two information security microprocessors, peripheral circuit and carrying circuit and devices.Wherein, according to one embodiment of present invention, described device comprises the device in two aerial lugs, two information security microprocessors and peripheral circuit.
Described peripheral circuit comprises running clock circuit, filtering circuit, reference circuit, and peripheral circuit is as the described information safety protector necessary adjunct circuit that works.The device of two information security microprocessors and related peripheral circuit all is carried on circuit board carrier, and links together through oversampling circuit, the processor that ensures information security normal operation.
Two aerial lugs also are separately fixed on circuit board carrier, and with two information security microcontroller circuits, are connected respectively, realize the communication between the information security microprocessor of information safety protector external unit and information safety protector inside.
Two aerial lugs are the inner passages that carry out communication with external unit of information safety protector.By two aerial lugs; but information safety protector externally PC main frame or other client (client also can be described as the communication request end or referred to as request end; it is the client of communication request; as clients such as panel computer, smart mobile phones) connect, aerial lug connects with corresponding information security microcontroller circuit respectively in information safety protector inside.Two aerial lugs are fixed on circuit board carrier, guarantee the stability connected.
Two processing and storage unit that the information security microprocessor is information security; and through the preset good function of relevant design of design; by to the information safety protector outside, sending request and can call corresponding function; the funcall request of sending according to main frame (such as; realize the funcall request of encryption and decryption functions or information safety protection); synchronous or asynchronous mode of operation can be operated in, and communication can be directly carried out between two information security processors.Hereinafter about synchronous, asynchronous work mode etc., there is detailed introduction.According to an aspect of the present invention, can carry out connecting communication by serial mode between two microprocessors.
Circuit board carrier by insulativity and hardness preferably material make, the above has been carried circuit and whole devices, and is fixed together with aerial lug.According to an embodiment of the invention, the material of described circuit board carrier comprises the FR4 material.
According to an aspect of the present invention, described synchronous or asynchronous mode of operation, be after main frame or request end request, information safety protector response request, the mode of operation of two inner information security microprocessors;
According to an aspect of the present invention, the synchronous working pattern is the state of mutual relationship, the work that influences each other between the processing procedure of two information security microprocessors; Under the synchronous working pattern, one of them information security microprocessor is in the process of carrying out a certain processing, depend on response or the request of another one information security processor, this response or request can be brought in forwarding by external host or communication request, perhaps two information security processor parts directly carry out communication, finally complete certain request of external host or communication request end; If the another one information security processor is response or request not, external host or the request of communication request end will be failed.
According to an aspect of the present invention, asynchronous work mode is there is no direct relation between the processing procedure of two information security microprocessors, is the state of relatively independent operating process; Under asynchronous work mode; two information security microprocessors carry out communication with external host or request end respectively; there is no relation of interdependence between communication; two relatively independent parallel processing procedures; the result of one of them information security microprocessor can not affect the processing of another one information security microprocessor; under this pattern, information safety protector can be regarded two independently part compositions as.
Embodiment 1
As shown in Figure 1, a kind of information safety protector with dual processor twin connectors of the present invention comprises:
Housing 1, for the protection of internal circuit, device and circuit board section.According to an embodiment of the invention, described housing 1 is made by materials such as PVC, rubber, metal or alloy.
According to an embodiment of the invention, aerial lug 2,3, weld together by 4 pins and internal circuit board carrier 4 respectively, and be weldingly fixed on circuit board carrier 4 by two other pin respectively.Wherein, aerial lug 2, aerial lug 3 all have 4 pins, and 4 pins of connector 2 are with 4 pins welding of circuit board carrier 4 connections, connector 2.
Certainly, those skilled in the art can adopt according to the difference of hardware interface different connectors fully, such as, according to an embodiment of the invention, for example, hardware device (being such as but not limited to iMac main frame, iPAD panel computer, iPhone smart mobile phone etc.) for Apple adopts corresponding connector (such as the Dock interface in apple equipment); Perhaps, according to an embodiment of the invention, for the mini USB interface, adopt corresponding mini USB connector; Perhaps, according to an embodiment of the invention, for specific hardware device, adopt corresponding connector.Due to the connector improvements that not the present invention focuses on itself, therefore its principle of work and implementation are repeated no more.Therefore, pin and the welding relation of corresponding connector should be determined according to concrete connecting interface and connected mode, those skilled in the art according to the instruction of content of the present invention, is easy to realize, does not repeat them here pin and the welding manner of other connector.
By the circuit on circuit board carrier 4, information security microprocessor 5 and aerial lug 2 are connected, realize information security microprocessor 5 and the outside passage that carries out communication.Equally, by the circuit on circuit board carrier 4, information security microprocessor 6 and aerial lug 3 are connected, realize information security microprocessor 6 and the outside passage that carries out communication.
Between information security microprocessor 5,6 also by the connection on circuit board carrier 4 together.According to an embodiment of the invention, described aerial lug 3 is general USB connector, and the circuit on described circuit board is all the copper cash on the common circuit plate, and what between two information security microprocessors, use is the SPI serial communication.
Peripheral circuit the 7, the 8th, the necessary circuit of information security microprocessor 5,6 normal operations, peripheral circuit links together by circuit and secure microprocessor, and what in this embodiment, use is running clock circuit, filtering circuit, reference circuit. Peripheral circuit 7,8 meetings can be slightly different according to the difference of security information microprocessor. Peripheral circuit 7,8 is not emphasis of the present invention, and those skilled in the art is in the situation that need to spend performing creative labour and can realize according to concrete application scenarios, so peripheral circuit 7,8 itself is not carried out to finer description in this instructions.And, because peripheral circuit 7,8 can carry out various modifications according to the difference of security information microprocessor, this modification does not obviously break away from invention scope of the present invention.
Circuit board carrier 4 is carriers of information security processor, circuit and other whole devices.All device all is welded on circuit board carrier; Circuit board carrier 4 is fixed together with aerial lug 2 and aerial lug 3; According to an embodiment of the invention, circuit board carrier 4 is common electronic circuit boards.According to an embodiment of the invention, the material of described circuit board carrier comprises the FR4 material.
Information security microprocessor the 5, the 6th, with general purpose microprocessor or the specialized information secure microprocessor of communication interface function; can pass through programmable logic functions; realize the functions such as the storage of communication, security algorithm, information security of communication interface and protection, and the security of processor internal firmware and information security is provided by the security feature provided itself.According to an embodiment of the invention, described communication interface is USB interface.
Between information security microprocessor 5,6 also by the connection on circuit board carrier 4 together.According to an embodiment of the invention, described aerial lug 3 is general USB connector, and the circuit on described circuit board is all the copper cash on the common circuit plate, and what between two information security microprocessors, use is the SPI serial communication." certainly; those skilled in the art can adopt according to the difference of hardware interface different connectors fully; such as; according to an embodiment of the invention; the hardware device (such as Mac main frame, iPAD, iPhone etc.) for Apple adopts corresponding connector; or according to an embodiment of the invention, adopt corresponding mini USB connector for the mini USB interface, perhaps according to an embodiment of the invention, adopt corresponding connector for specific hardware device, include but not limited to Dock interface or the USB interface of apple.Due to the connector improvements that not the present invention focuses on itself, therefore its principle of work and implementation are repeated no more.In addition, also can adopt other serial communication mode between two information security microprocessors, those skilled in the art can be according to actual user demand, carry out in accordance with the teachings of the present invention corresponding the improvement and obtain similar technique effect, it is not important innovations part of the present invention, therefore repeats no more.
The principle of work of the present embodiment:
Housing 1 combines with aerial lug 2,3 respectively, and circuit board carrier 4 and device are protected.
Aerial lug 2,3 respectively with circuit board carrier 4 on pad weld together, and with information security microprocessor 5,6, link together respectively by the circuit on circuit board carrier 4, form two passages with external communication.
Information security microprocessor 5,6 is all the microprocessor with programmability, and the Programming internal firmware is to the information security microprocessor in advance.The information security microprocessor itself has certain security feature, can protect the security of internal firmware programming firmware and data.Two information security microprocessor internals also by the connection on circuit board carrier 4 together, according to external request and pre-designed function, can directly carry out communication between two information security microprocessors. Peripheral circuit 7,8 comprises running clock circuit, filtering circuit, reference circuit, and each circuit links together with information security microprocessor 5,6 respectively by circuit, and the microprocessor that ensures information security normally moves.
Communication can be carried out with information security microprocessor 5,6 respectively by two passages in the main frame of external unit or request end; Perhaps only by any one passage wherein, with an inner information security microprocessor, carry out communication; Also can pass through a passage, through with information security microprocessor and the another one secure microprocessor of external communication, carrying out communication.
According to the request of external unit, information security microprocessor 5,6 can be operated in synchronous or asynchronous mode.
Under synchronous mode, information security microprocessor 5,6 can by two aerial lugs, (wherein information security microprocessor 5 be corresponding one by one with aerial lug 2, information security is that processor 6 and aerial lug 3 are one to one) carry out communication with outside equipment, thereby realize synchronous by host side or request end, perhaps between two information security microprocessors, directly carry out communication, realize synchronous.
Under asynchronous mode, information security microprocessor device 5,6 carries out communication with external unit respectively by aerial lug 2,3, perhaps information security microprocessor 5 carries out communication through information security microprocessor 6 and external unit, perhaps information security microprocessor 6 carries out communication through information security microprocessors 5 and external unit, and now the communication between two information security processors and main frame or request end is relatively independent.
In addition, above-described embodiment only adopts two information security microprocessors to realize.For a person skilled in the art, can adopt a plurality of information security microprocessors, increase a plurality of communication interfaces, thereby realize more complicated encryption solution.The content of the variation on sort circuit, improvement, replacement, merging is apparent for a person skilled in the art, and these contents all belong to protection scope of the present invention.The various distortion of these circuit all are easy to expect, this instructions will not enumerate.
The foregoing is only preferred embodiment of the present invention, be not intended to limit protection scope of the present invention.Within the spirit and principles in the present invention all, any modification of doing, be equal to and replace and improvement etc., within all should being included in protection scope of the present invention.