Summary of the invention
In view of this, the invention provides a kind of wireless messages Secure Equipment System and method.
According to the present invention, a kind of wireless messages Secure Equipment System is provided, described system comprises information safety devices, wireless transmitting-receiving equipments, wherein,
Described information safety devices, has safety protection function, also comprises:
Wireless communication unit, for main frame or wireless transmitting-receiving equipments radio communication, by wireless transmitting-receiving equipments or directly and main frame carry out the mutual transmission of data;
Power supply unit, is used to described information safety devices power supply;
Processing unit, for carrying out corresponding calculating, processing to message or the instruction of transmitting-receiving;
Memory cell, the related data information during for storing device information and/or storage use;
Communication switch unit, switches for automatically carrying out the state of wireless communications mode and second communication pattern;
Described wireless transmitting-receiving equipments, has embedded micro-processor chip, and described wireless transmitting-receiving equipments also further comprises:
Wireless communication module, for described information safety devices radio communication, carry out the mutual transmission of data;
Processing module, carries out data interaction with described information safety devices and described main frame respectively by wireless mode, for the treatment of message or the instruction of transmission.
According to an aspect of the present invention, described information safety devices also comprises: confirmation unit, mates when setting up wireless connections and confirms to operate and send confirmation.
According to an aspect of the present invention, described information safety devices also comprises: switch, and for the opening of control information safety means, closed condition.
According to an aspect of the present invention, described wireless communication module also comprises detection module, for detection of the wireless device signal message in wireless signal coverage.
According to an aspect of the present invention, described wireless transmitting-receiving equipments also comprises memory module, for storing the data messages such as enciphering and deciphering algorithm key, facility information.
According to an aspect of the present invention, described system also comprises cable, and described cable is connected with described information safety devices for one end, and the other end is used for being connected with host interface, and transmits by the data interaction that cable carries out information safety devices and main frame.
According to an aspect of the present invention, described cable is also used to described information safety devices charging.
According to an aspect of the present invention, in the described wireless communication module of described wireless transmitting-receiving equipments and the described wireless communication unit in described information safety devices, contain respectively controlled in wireless chip and the antenna of carrying out wireless communication protocol, for establishing a communications link according to radio communication standard and other Wireless Telecom Equipments.
According to an aspect of the present invention, described controlled in wireless chip is bluetooth.
According to an aspect of the present invention, when described information safety devices is electrically connected to host interface by cable, the second communication mode switching signal of the controlled in wireless chip detection main frame second communication pattern interface in described wireless communication unit, if second communication mode switching signal detected, close the power supply of described power supply unit to described information safety devices;
Described controlled in wireless chip is controlled pin by the pattern of described information safety devices self and is configured to second communication pattern, then by main frame, by cable, powered, described information safety devices can be controlled pin according to pattern and enter second communication pattern, communicates with main frame.
According to an aspect of the present invention, when described information safety devices disconnection is electrically connected to host interface by cable,
The second communication mode switching signal of the controlled in wireless chip detection main frame second communication pattern interface in described wireless communication unit, if can't detect second communication mode switching signal, the power supply of Shutdown Hosts to described information safety devices;
Described controlled in wireless chip is configured to wireless communications mode by described information safety devices, then again recovers described power supply unit power supply, and described information safety devices enters wireless communications mode, communicates with main frame.
According to an aspect of the present invention, described power supply unit can be powered to information safety devices by battery.
According to an aspect of the present invention, described power supply unit is lithium battery.
According to an aspect of the present invention, the wireless communication components that described main frame carries or the detection module of wireless transmitting-receiving equipments detect wireless signal around automatically.
According to an aspect of the present invention, described information safety devices and wireless transmitting-receiving equipments communication are bluetooth.
According to an aspect of the present invention, described information safety devices is encryption lock.
According to an aspect of the present invention, described switch is the switch for control information safety means power supply, and when powered-down, information safety devices is closed.
According to an aspect of the present invention, described confirmation unit and switch at least comprise button, side slip key.
According to an aspect of the present invention, provide a kind of method of carrying out safety data transmission by wireless messages safety means, described method comprises:
Step 1: check whether main frame possesses wireless communication components, if had, opens radio communication function, if do not had, wireless transmitting-receiving equipments is electrically connected to main frame by host interface;
Step 2: the wireless signal around the wireless communication components that main frame carries or the detecting unit of wireless transmitting-receiving equipments detect automatically in certain limit;
Step 3: when information safety devices enters described wireless signal coverage, described wireless communication components or wireless transmitting-receiving equipments are automatically and information safety devices wireless connections;
Step 4: press the confirmation unit button on information safety devices, carry out wireless coupling and set up wireless communication link;
Step 5: while using information safety devices, carry out authentication, authentication is passed through, and carries out follow-up data interactive operation; Otherwise prompting authentification failure, authenticates or bans use of information safety devices again.
According to an aspect of the present invention, described method also comprises:
Step 6: when information safety devices departs from wireless transmitting-receiving equipments signal cover, the automatic disconnection of the wireless communication components of main frame or wireless transmitting-receiving equipments is connected with information safety devices, forbids that main frame uses information safety devices function;
Step 7: when information safety devices enters wireless signal coverage again, repeat above-mentioned steps.
According to an aspect of the present invention, described method also comprises:
Step 8: information safety devices is electrically connected to main frame by cable, information safety devices automatically switches to second communication pattern, by second communication pattern and main frame, carries out data interaction, and cable charges to information safety devices by second communication pattern mode simultaneously.
According to an aspect of the present invention, described method also comprises: when disconnecting cable connection, information safety devices switches to wireless communications mode from second communication pattern automatically, with wireless mode and main frame, carries out data communication.
According to an aspect of the present invention, described method also comprises: in above-mentioned steps 5, authentication comprises input password.
According to an aspect of the present invention, described method also comprises: when leaving the scope of application or not re-using information safety devices, by information safety devices switch closing information safety means power supply.
According to an aspect of the present invention, described method also comprises: the form by cryptographic algorithm or Custom Encryption mode, transcoding is encrypted, changes the data of transmission, when receiving terminal receives after enciphered data, is decrypted, and then continues to carry out.
According to an aspect of the present invention, described method also comprises: described cryptographic algorithm comprises symmetry or rivest, shamir, adelman, and wherein, symmetric encipherment algorithm comprises AES, DES, TDES; Rivest, shamir, adelman comprises RSA, ECC.
According to an aspect of the present invention, described method also comprises: described information safety devices by described cable with second communication pattern directly and main frame carry out data interaction.
The present invention detects information safety devices whether in effective range automatically by wireless mode, and carry out accordingly corresponding be certainly dynamically connected or automatically disconnect waiting to process and operate, without artificial plug, and provide radio communication (to comprise that wired cable is connected the communication pattern that transmits data with second communication pattern, according to one embodiment of present invention, be usb communication pattern) automatic switchover, under the prerequisite of safety, promote greatly the convenience that user uses, there is higher practical value.
Embodiment
For making object of the present invention, technical scheme and advantage clearer, referring to the accompanying drawing embodiment that develops simultaneously, the present invention is described in more detail.
According to a specific embodiment of the present invention, described second communication pattern is for to communicate by USB cable.
Those skilled in the art can know, second communication pattern can communicate for the cable by other form.Owing to not being core main points of the present invention by cable communication, therefore in specification of the present invention, no longer the concrete mode of cable communication is described in detail.But those skilled in the art obviously can be transformed to easily the cable communication mode of other form on the basis of specification of the present invention, therefore the mode of the cable communication of various other forms all belongs to scope of the present invention.
According to a specific embodiment of the present invention, a kind of wireless messages Secure Equipment System, described system comprises information safety devices, wireless transmitting-receiving equipments and cable; wherein; described information safety devices, except having the safety protection function of existing information safety means, also comprises:
Wireless communication unit, for main frame or wireless transmitting-receiving equipments radio communication, by wireless transmitting-receiving equipments or directly and main frame carry out the mutual transmission of data;
Power supply unit, is used to information safety devices power supply, the normal use that provides electric power support to ensure information security equipment;
Processing unit, for message or the instruction of transmitting-receiving are carried out to corresponding calculating, processing, such as operations such as authentication, data encrypting and decipherings;
Memory cell, for facility informations such as storage key, certificate and device ids, can also store the related data information while using;
Confirmation unit, mates when setting up wireless connections and confirms to operate and send confirmation;
Switch, for the opening of control information safety means, closed condition;
Communication switch unit, for automatically carrying out the state switching of wireless communications mode and usb communication pattern according to the access of cable and disconnection.
Described wireless transmitting-receiving equipments, is to have embedded micro-processor chip, the hardware device connecting by host interface and main frame, and wireless transmitting-receiving equipments also further comprises:
Wireless communication module, for information safety devices radio communication, carry out the mutual transmission of data;
Processing module, carries out data interaction with information safety devices and main frame respectively by wireless mode, for the treatment of message or the instruction of transmission.
Described wireless communication module also comprises detection module, for detection of the wireless device signal message in wireless signal coverage.
Described wireless transmitting-receiving equipments also comprises memory module, for storing the data messages such as enciphering and deciphering algorithm key, facility information.
Described cable, one end is connected with information safety devices, and the other end is connected with host interface, can be used for for information safety devices charging, and transmits by the data interaction that cable carries out information safety devices and main frame.
In the wireless communication module of wireless transmitting-receiving equipments and the wireless communication unit in information safety devices, contain respectively controlled in wireless chip and the antenna of carrying out wireless communication protocol, can establish a communications link according to radio communication standard and other Wireless Telecom Equipments.According to an embodiment, described controlled in wireless chip is bluetooth.
The concrete handoff procedure of described communication switch unit is: when information safety devices is electrically connected to host interface by cable, controlled in wireless chip detection in wireless communication unit is to the voltage signal of main frame USB interface, afterwards, closing information safety means power supply, controlled in wireless chip is controlled pin by the pattern of information safety devices self and is configured to usb communication pattern, then reopen information safety devices power supply, information safety devices can be controlled pin according to pattern and enter usb communication pattern, communicate with main frame, then complete the interactive operation of data.Otherwise when disconnecting the access of cable, controlled in wireless chip detection is less than voltage signal, identical with above-mentioned switching mode, information safety devices pattern is controlled to pin and be configured to wireless communications mode, from usb communication pattern, be switched to wireless communications mode.
According to an embodiment of the invention, described power supply unit can be powered to information safety devices by battery.According to an embodiment, described power supply unit is lithium battery.
According to an embodiment of the invention, the wireless communication components that described main frame carries or the detection module of wireless transmitting-receiving equipments detect wireless signal around automatically.
According to an embodiment of the invention, described wireless transmitting-receiving equipments adopts identical wireless communication protocol with information safety devices.According to an embodiment, wireless communication protocol is Bluetooth protocol.
According to an embodiment of the invention, described information safety devices and wireless transmitting-receiving equipments communication are bluetooth.
According to an embodiment of the invention, described information safety devices includes but not limited to encryption lock.
According to an embodiment of the invention, described switch is the switch for control information safety means power supply, and when powered-down, information safety devices is closed completely, saves electric weight.
According to an embodiment of the invention, described confirmation unit and switch, include but not limited to the forms such as button, side slip.
A wireless messages safety means method, specifically comprises:
Step 1: check whether main frame possesses wireless communication components, if had, opens radio communication function, if do not had, wireless transmitting-receiving equipments is electrically connected to main frame by host interface;
Step 2: the wireless signal around the wireless communication components that main frame carries or the detecting unit of wireless transmitting-receiving equipments detect automatically in certain limit;
Step 3: when information safety devices enters described wireless signal coverage, wireless communication components or wireless transmitting-receiving equipments are automatically and information safety devices wireless connections;
Step 4: press the confirmation unit button on information safety devices, carry out wireless coupling (pairing) and set up wireless communication link;
Step 5: while using information safety devices, carry out authentication, authentication is passed through, and carries out follow-up data interactive operation; Otherwise prompting authentification failure, authenticates or bans use of information safety devices again;
Step 6: when information safety devices departs from wireless transmitting-receiving equipments signal cover, the automatic disconnection of the wireless communication components of main frame or wireless transmitting-receiving equipments is connected with information safety devices, forbids that main frame uses information safety devices function;
Step 7: when information safety devices enters wireless signal coverage again, repeat above-mentioned steps;
Step 8: when information safety devices is electrically connected to main frame by cable, information safety devices automatically switches to usb communication pattern, carries out data interaction by USB pattern and main frame, and cable charges to information safety devices by USB mode simultaneously; When disconnecting cable connection, information safety devices switches to wireless communications mode from usb communication pattern automatically, with wireless mode and main frame, carries out data communication.
According to an embodiment of the invention, in above-mentioned steps 5, authentication comprises input password (being PIN code) form.
According to an embodiment of the invention, when leaving or do not re-use information safety devices, by information safety devices switch closing information safety means power supply, when needs are used, then open switch, to save electric weight.
According to an embodiment of the invention, for guaranteeing the fail safe in data transmission procedure, can the data of transmission be encrypted, be changed by forms such as cryptographic algorithm or Custom Encryption mode, transcodings, receiving terminal receives after enciphered data, be decrypted, then continue to carry out.According to an embodiment, described cryptographic algorithm comprises symmetry or rivest, shamir, adelman, and wherein, symmetric encipherment algorithm comprises AES, DES, TDES; Rivest, shamir, adelman comprises RSA, ECC.
According to an embodiment of the invention, described information safety devices can by cable with usb communication pattern directly and main frame carry out data interaction.
As shown in Figure 1, 2, demonstrate the structural representation of a kind of wireless messages Secure Equipment System of the present invention.In Fig. 1, between main frame and information safety devices, do not adopt cable mode to be connected, but carry out transfer of data by wireless mode.In Fig. 2, main frame is connected with information safety devices by cable.
Fig. 1 and Fig. 2 have provided the embodiment of a kind of wireless messages Secure Equipment System of the present invention.This system at least comprises information safety devices, wireless transmitting-receiving equipments and cable.Wherein,
Described information safety devices, except having the safety protection function of existing information safety means, also comprises:
Wireless communication unit, for main frame or wireless transmitting-receiving equipments radio communication, by wireless transmitting-receiving equipments or directly and main frame carry out the mutual transmission of data;
Power supply unit, is used to information safety devices power supply, the normal use that provides electric power support to ensure information security equipment.
Processing unit, for message or the instruction of transmitting-receiving are carried out to corresponding calculating, processing, such as operations such as authentication, data encrypting and decipherings.
Memory cell, for facility informations such as storage key, certificate and device ids, can also store the related data information while using.
Confirmation unit, mates when setting up wireless connections and confirms to operate and send confirmation;
Switch, for the opening of control information safety means, closed condition;
Communication switch unit, for automatically carrying out the state switching of wireless communications mode and usb communication pattern according to the access of cable and disconnection.
Described wireless transmitting-receiving equipments, is to have embedded micro-processor chip, and the hardware device connecting by host interface and main frame, also comprises:
Wireless communication module, for information safety devices radio communication, carry out the mutual transmission of data.
Processing module, carries out data interaction with information safety devices and main frame respectively by wireless mode, for the treatment of message or the instruction of transmission.
Described wireless communication module also comprises detection module, for detection of the wireless device signal message in wireless signal coverage.
Described wireless transmitting-receiving equipments also comprises memory module, for storing the data messages such as enciphering and deciphering algorithm key, facility information.
Described cable, one end is connected with information safety devices, and the other end is connected with host interface, can be used for for information safety devices charging, and the data interaction of carrying out information safety devices and main frame by usb communication pattern by cable is transmitted.
In the wireless communication module of wireless transmitting-receiving equipments and the wireless communication unit in information safety devices, contain respectively controlled in wireless chip and the antenna of carrying out wireless communication protocol, can establish a communications link according to radio communication standard and other Wireless Telecom Equipments.According to an embodiment, described controlled in wireless chip is bluetooth.
The concrete handoff procedure of described communication switch unit is: when information safety devices is electrically connected to host interface by cable, controlled in wireless chip detection in wireless communication unit is to the voltage signal of main frame USB interface, afterwards, closing information safety means power supply, controlled in wireless chip is controlled pin by the pattern of information safety devices self and is configured to usb communication pattern, then reopen information safety devices power supply, information safety devices can be controlled pin according to pattern and enter usb communication pattern, communicate with main frame, then complete the interactive operation of data.Otherwise when disconnecting the access of cable, controlled in wireless chip detection is less than voltage signal, identical with above-mentioned switching mode, information safety devices pattern is controlled to pin and be configured to wireless communications mode, from usb communication pattern, be switched to wireless communications mode.
Wireless signal around the wireless communication components that described main frame carries or the detection module of wireless transmitting-receiving equipments detect automatically in certain limit.
Described power supply unit can be powered to information safety devices by battery.According to an embodiment, described power supply unit is lithium battery.
Described wireless transmitting-receiving equipments adopts identical wireless communication protocol with information safety devices.According to an embodiment, wireless communication protocol is Bluetooth protocol.
Described information safety devices and wireless transmitting-receiving equipments communication are bluetooth.
Described information safety devices includes but not limited to encryption lock.
Described switch is the switch for control information safety means power supply, and when powered-down, information safety devices is closed completely, to save electric weight.
Described confirmation unit and switch, include but not limited to the forms such as button, side slip, is positioned at one side or two sides of information safety devices.
According to an aspect of the present invention, described information safety devices can by cable with usb communication pattern directly and main frame carry out data interaction.
As shown in Figure 3, it is a kind of by the method for wireless messages safety means safety-oriented data transfer that the present invention also provides, and the method concrete steps comprise:
Step 1: check whether main frame possesses wireless communication components;
Step 2: if had, open radio communication function; If no, wireless transmitting-receiving equipments is electrically connected to main frame by host interface;
Step 3: the wireless signal around the wireless communication components that main frame carries or the detecting unit of wireless transmitting-receiving equipments detect automatically in certain limit;
Step 4: when information safety devices enters described wireless signal coverage, wireless communication components or wireless transmitting-receiving equipments are automatically and information safety devices wireless connections;
Step 5: press the confirmation unit button on information safety devices, carry out wireless coupling (pairing) and set up wireless communication link;
Step 6: while using information safety devices, carry out authentication, authentication is passed through, and carries out follow-up data interactive operation; Otherwise prompting authentification failure, authenticates or bans use of information safety devices again;
Step 7: when information safety devices departs from wireless transmitting-receiving equipments signal cover, the automatic disconnection of the wireless communication components of main frame or wireless transmitting-receiving equipments is connected with information safety devices, forbids that main frame uses information safety devices function;
Step 8: when information safety devices enters wireless signal coverage again, repeat above-mentioned steps.
Step 9: when information safety devices is electrically connected to main frame by cable, information safety devices switches to wireless communications mode usb communication pattern automatically, carries out data interaction by USB pattern and main frame, cable charges to information safety devices by USB mode simultaneously; When disconnecting cable connection, information safety devices switches to wireless communications mode from usb communication pattern automatically, with wireless mode and main frame, carries out data communication.
In above-mentioned steps 6, identity identifying method includes but not limited to input password (being PIN code) form, certainly, those skilled in the art can also authenticate by other identification authentication mode, and it does not belong to core of the present invention, and concrete authentication mode will not be described in detail.
According to an aspect of the present invention, when not re-using information safety devices when rest (as come off duty), by information safety devices switch closing information safety means power supply, when needs are used, then open switch, to save electric weight.
According to an aspect of the present invention, for guaranteeing the fail safe in data transmission procedure, can the data of transmission be encrypted, be changed by forms such as cryptographic algorithm or Custom Encryption mode, transcodings, receiving terminal receives after enciphered data, be decrypted, then continue to carry out.According to an embodiment, described cryptographic algorithm comprises symmetry or rivest, shamir, adelman, and wherein, symmetric encipherment algorithm comprises AES, DES, TDES; Rivest, shamir, adelman comprises RSA, ECC.
specific embodiment 1
In the present embodiment, main frame is association's (ThinkPad) notebook computer, there is wireless switching, radio communication is bluetooth, information safety devices is encryption lock, in encryption lock, wireless communication unit is Bluetooth communication assembly, and encryption lock switch is defaulted as open mode, and encryption lock confirmation unit and switch are button form.According to a specific embodiment of the present invention, the method by wireless messages safety means safety-oriented data transfer comprises concrete steps:
1. open the wireless switching of notebook computer, open Bluetooth function;
2. the bluetooth module of notebook automatically detects the wireless signal in certain limit around;
3. when encryption lock enters notebook Bluetooth signal coverage, notebook bluetooth module is connected with the Bluetooth communication assembly of encryption lock inside automatically;
4. user presses the confirmation unit button on encryption lock, carries out wireless coupling (pairing), and the match is successful, sets up wireless communication link;
5. while using encryption lock, by input PIN code, carry out authentication, authentication is passed through, and by communication, carries out the data interaction of main frame and encryption lock; Authentication is not passed through, and prompting authentification failure, authenticates or ban use of encryption lock again;
6., when encryption lock departs from notebook computer Bluetooth signal coverage, notebook computer bluetooth module disconnects the wireless connections with encryption lock automatically, bans use of encryption lock function;
7., when encryption lock enters notebook computer Bluetooth signal coverage again, repeat above-mentioned steps.
In the present embodiment, when not using encryption lock, close the switch of encryption lock, to save electric weight.
The present embodiment carries out wireless coupling by the confirmation button of encryption lock, by wireless mode, automatically detects encryption lock whether in effective range, and carries out accordingly corresponding be certainly dynamically connected or automatically disconnect waiting to process and operate, without artificial plug.Greatly improved the convenience that user uses.
specific embodiment 2
The present embodiment and embodiment 1 operating procedure are similar, difference is, main frame in the present embodiment is not for possessing the computer of wireless communication components, information safety devices is encryption lock, encryption lock embedded with bluetooth wireless communication unit, wireless transmitting-receiving equipments is the USB receiver (calling USB transceiver in the following text) of the similar wireless mouse of profile, and according to an embodiment of the invention, wireless messages safety means method step comprises:
1. USB transceiver is electrically connected to host interface;
2. the detection module of USB transceiver automatically detects the wireless signal in certain limit around;
3. when encryption lock enters described wireless signal scope, USB transceiver is connected with the Bluetooth wireless communication unit of encryption lock automatically;
4. by the ACK button on encryption lock, carry out wireless coupling (pairing), the match is successful, sets up wireless communication link;
5. while using encryption lock, by input PIN code, carry out authentication, authentication is passed through, and by USB transceiver, with communication, carries out the data interaction of main frame and encryption lock; Authentication is not passed through, and prompting authentification failure, authenticates or ban use of encryption lock again;
6. when encryption lock departs from USB transceiver signal coverage, USB transceiver disconnects the wireless connections with encryption lock automatically, forbids that main frame uses encryption lock function;
7., when encryption lock enters USB transceiver signal coverage again, repeat above-mentioned steps.
specific embodiment 3
The present embodiment and embodiment 1,2 are similar, and difference is that the present embodiment has been used cable, and the wireless messages safety means method step that the present embodiment provides is:
1., when information safety devices is carried wireless communication components or wireless transmitting-receiving equipments and carried out data interaction with communication and main frame by main frame, cable is electrically connected to information safety devices and main frame;
2. information safety devices communication switch unit switches to communication usb communication pattern automatically, and cable is information safety devices charging simultaneously;
3. when cable disconnection is connected with main frame, information safety devices communication switch unit switches to wireless communications mode by usb communication pattern automatically, and information safety devices and main frame carry out data interaction with communication.
The state that the present invention carries out wireless communications mode and usb communication pattern automatically by access and the disconnection of cable switches, when being wireless communications mode, by wireless mode, automatically detect information safety devices whether in effective range, and carry out accordingly corresponding be certainly dynamically connected or automatically disconnect waiting to process and operate, without artificial plug; When being usb communication pattern, by cable, carry out the mutual of data.By method provided by the invention, under the prerequisite of safety, promoted greatly the convenience that user uses, there is high practical value.
The foregoing is only preferred embodiment of the present invention, be not intended to limit protection scope of the present invention.Within the spirit and principles in the present invention all, any modification of doing, be equal to and replace and improvement etc., within all should being included in protection scope of the present invention.